Search CVE reports


Toggle filters

3351 – 3360 of 39618 results

Status is adjusted based on your filters.


CVE-2026-0879

Medium priority
Ignored

Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 20.04 LTS
firefox
thunderbird
mozjs38
mozjs52 Ignored
mozjs68 Ignored
mozjs78
mozjs91
mozjs102
mozjs115
Show all 9 packages Show less packages

CVE-2026-0878

Medium priority
Ignored

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability affects Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 20.04 LTS
firefox
thunderbird
mozjs38
mozjs52 Ignored
mozjs68 Ignored
mozjs78
mozjs91
mozjs102
mozjs115
Show all 9 packages Show less packages

CVE-2026-0877

Medium priority
Ignored

Mitigation bypass in the DOM: Security component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 20.04 LTS
firefox
thunderbird
mozjs38
mozjs52 Ignored
mozjs68 Ignored
mozjs78
mozjs91
mozjs102
mozjs115
Show all 9 packages Show less packages

CVE-2026-22801

Medium priority
Fixed

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.26 to 1.6.53, there is an integer truncation in the libpng simplified write API...

5 affected packages

libpng, libpng1.6, firefox, thunderbird, chromium-browser

Package 20.04 LTS
libpng
libpng1.6 Fixed
firefox
thunderbird
chromium-browser
Show less packages

CVE-2026-22695

Medium priority
Fixed

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.51 to 1.6.53, there is a heap buffer over-read in the libpng simplified API...

5 affected packages

libpng, libpng1.6, firefox, chromium-browser, thunderbird

Package 20.04 LTS
libpng
libpng1.6 Fixed
firefox
chromium-browser
thunderbird
Show less packages

CVE-2026-22251

Medium priority
Fixed

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, wlc supported providing unscoped API keys in the setting. This practice was discouraged for years, but the code was never removed. This might cause...

1 affected package

wlc

Package 20.04 LTS
wlc Fixed
Show less packages

CVE-2026-22250

Medium priority
Fixed

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, the SSL verification would be skipped for some crafted URLs. This vulnerability is fixed in 1.17.0.

1 affected package

wlc

Package 20.04 LTS
wlc Fixed
Show less packages

CVE-2025-68471

Medium priority
Fixed

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending 2 unsolicited announcements with CNAME resource records 2...

1 affected package

avahi

Package 20.04 LTS
avahi Fixed
Show less packages

CVE-2025-68468

Medium priority
Fixed

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending unsolicited announcements containing CNAME resource...

1 affected package

avahi

Package 20.04 LTS
avahi Fixed
Show less packages

CVE-2025-68276

Medium priority
Fixed

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local users can crash avahi-daemon (with wide-area disabled) by creating record...

1 affected package

avahi

Package 20.04 LTS
avahi Fixed
Show less packages