Search CVE reports


Toggle filters

511 – 520 of 42345 results

Status is adjusted based on your filters.


CVE-2026-18739

Medium priority
Needs evaluation

A flaw was found in popt, a command-line option parsing library. An off-by-one error in the poptStuffArgs function, when repeatedly called by a host application or through deep alias nesting, can lead to corruption of internal...

1 affected package

popt

Package 24.04 LTS
popt Needs evaluation
Show less packages

CVE-2026-42169

Medium priority
Needs evaluation

A heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the `fcTL` width exceeds the `IHDR` width, leading to pixel data being written past the end of a heap allocation....

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-58045

Medium priority
Needs evaluation

A flaw in Node.js allows a spoofed `TypedArray` `byteLength` to trigger a reachable assertion in the synchronous `node:zlib` APIs, causing the entire process to crash. All 11 synchronous zlib functions are affected. Repeated...

1 affected package

nodejs

Package 24.04 LTS
nodejs Needs evaluation
Show less packages

CVE-2026-58044

Medium priority
Needs evaluation

A flaw in Node.js HTTP client can cause a request desynchronization for Node.js-based forwarding proxies that rebuild outbound headers from the visible `IncomingMessage` headers while piping the original body to a reused backend...

1 affected package

nodejs

Package 24.04 LTS
nodejs Needs evaluation
Show less packages

CVE-2026-58042

Medium priority
Needs evaluation

A flaw in Node.js can cause dns.resolveAny() Aborts the Node.js Process When a DNS Response Contains More Than 256 A Records. Repeated triggering of this condition can lead to denial of service. This vulnerability affects Node.js...

1 affected package

nodejs

Package 24.04 LTS
nodejs Needs evaluation
Show less packages

CVE-2026-58041

Medium priority
Needs evaluation

A flaw in Node.js node:sqlite allows a stale StatementSyncIterator created through DatabaseSync#createTagStore() to continue executing a cached prepared statement after it has been reset and rebound with new...

1 affected package

nodejs

Package 24.04 LTS
nodejs Needs evaluation
Show less packages

CVE-2026-56846

Medium priority
Needs evaluation

A flaw in Node.js HTTP/2 handling can cause HTTP/2 retained header blocks evade maxSessionMemory and enable remote memory exhaustion. This vulnerability affects Node.js **24.x** and **22.x**.

1 affected package

nodejs

Package 24.04 LTS
nodejs Needs evaluation
Show less packages

CVE-2026-63343

Medium priority
Needs evaluation

security update

1 affected package

incus

Package 24.04 LTS
incus Needs evaluation
Show less packages

CVE-2026-63125

Medium priority
Needs evaluation

security update

1 affected package

incus

Package 24.04 LTS
incus Needs evaluation
Show less packages

CVE-2026-62941

Medium priority
Needs evaluation

security update

1 affected package

incus

Package 24.04 LTS
incus Needs evaluation
Show less packages