Search CVE reports


Toggle filters

91 – 100 of 49291 results

Status is adjusted based on your filters.


CVE-2026-61630

Medium priority
Not affected

nginx ignition is a user interface for the nginx web server. In versions 2.33.0 through 2.35.0, any user that has enabled the OTP 2FA can have their TOTP reused during the standard 30 second validity window. Version 2.35.1 patches...

1 affected package

nginx

Package 20.04 LTS
nginx Not affected
Show less packages

CVE-2026-61629

Medium priority
Not affected

nginx ignition is a user interface for the nginx web server. In versions 2.29.0 through 2.40.0, the gin i18n middleware in nginx-ignition's API server runs in front of every HTTP request and...

1 affected package

nginx

Package 20.04 LTS
nginx Not affected
Show less packages

CVE-2026-61628

Medium priority
Not affected

nginx ignition is a user interface for the nginx web server. Prior to version 2.41.1, `POST /api/users/onboarding/finish` is registered as anonymous (unauthenticated) and creates a user with full ReadWrite admin permissions....

1 affected package

nginx

Package 20.04 LTS
nginx Not affected
Show less packages

CVE-2026-55567

Medium priority
Not affected

BleachBit cleans files to free disk space and to maintain privacy. Prior to 6.0.1, privileged Windows cleaning does not lock and validate a target's parent directory before deletion. A local unprivileged user can replace that...

1 affected package

bleachbit

Package 20.04 LTS
bleachbit Not affected
Show less packages

CVE-2026-88807

Medium priority
Needs evaluation

A heap overflow in libXrender before 0.9.13 in RenderQueryPictFormats could be used by malicious X servers to inject code into attached X clients.

1 affected package

libxrender

Package 20.04 LTS
libxrender Needs evaluation
Show less packages

CVE-2026-88806

Medium priority
Needs evaluation

A malicious X server could exploit a buffer overflow in libX11 before 1.8.14 during handling of XkbGetMap overflowing the key_sym_map.

1 affected package

libx11

Package 20.04 LTS
libx11 Needs evaluation
Show less packages

CVE-2026-47321

Medium priority
Needs evaluation

The CompressionFilter class uses ZLib to deflate and inflate data sent and received. When we inflate incoming data, the filter does not control the resulting size, and create a buffer no matter what. Some compressed data may have...

2 affected packages

mina, mina2

Package 20.04 LTS
mina Needs evaluation
mina2 Needs evaluation
Show less packages

CVE-2026-92382

Medium priority
Needs evaluation

An out-of-bounds write flaw was found in usbredir. Starting an isochronous OUT stream with a transfer count of 1 leaves the stream's single transfer buffer permanently unsubmitted, defeating the bounds check...

1 affected package

usbredir

Package 20.04 LTS
usbredir Needs evaluation
Show less packages

CVE-2026-85495

Medium priority
Needs evaluation

[pre-authentication global buffer overflow]

1 affected package

ppp

Package 20.04 LTS
ppp Needs evaluation
Show less packages

CVE-2026-94108

Medium priority
Needs evaluation

getID3 through 1.9.26 contains an XML external entity injection vulnerability in the XML2array helper function that fails to properly disable entity loading on PHP before 8.0. Attackers can craft malicious XML metadata in media...

1 affected package

php-getid3

Package 20.04 LTS
php-getid3 Needs evaluation
Show less packages