Search CVE reports


Toggle filters

151 – 160 of 43843 results

Status is adjusted based on your filters.


CVE-2026-18724

Medium priority
Needs evaluation

[Unknown description]

1 affected package

open-iscsi

Package 24.04 LTS
open-iscsi Needs evaluation
Show less packages

CVE-2026-11817

Medium priority

Not in release

This vulnerability only affects Grafana stacks configured with multiple organizations; single-organization deployments are not impacted. In a multi-organization stack, a user who is an Org Admin of a single organization can call...

1 affected package

grafana

Package 24.04 LTS
grafana Not in release
Show less packages

CVE-2026-68765

Medium priority
Needs evaluation

hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePass AESKDF/KDBX v4 module (module 34301) that allows attackers to corrupt adjacent heap memory by supplying an oversized ninth hash...

1 affected package

hashcat

Package 24.04 LTS
hashcat Needs evaluation
Show less packages

CVE-2026-65976

Medium priority

Not in release

Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.300, a connected peer can send repeated DCLP DataChunk messages to ClipboardChunk::assemble() in src/lib/deskflow/ClipboardChunk.cpp, causing...

1 affected package

deskflow

Package 24.04 LTS
deskflow Not in release
Show less packages

CVE-2026-65832

Medium priority

Not in release

Deskflow is a keyboard and mouse sharing app. Prior to continuous build 1.26.0.299, a remote unauthenticated Deskflow server can send kMsgDSetOptions (DSOP) values to ServerProxy::setOptions() in src/lib/client/ServerProxy.cpp so...

1 affected package

deskflow

Package 24.04 LTS
deskflow Not in release
Show less packages

CVE-2026-65640

Medium priority
Needs evaluation

WordPress is vulnerable to a remote code execution vulnerability via malicious Postscript file upload by an Author level user or higher. Prerequisites: * Imagick and Ghostscript in use on the server * A malicious user with the...

1 affected package

wordpress

Package 24.04 LTS
wordpress Needs evaluation
Show less packages

CVE-2026-63409

Medium priority

Not in release

Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.296, a malicious Deskflow server can send an odd-length DSOP vector to ServerProxy::setOptions() in src/lib/client/ServerProxy.cpp, causing...

1 affected package

deskflow

Package 24.04 LTS
deskflow Not in release
Show less packages

CVE-2026-34789

Medium priority

Not in release

FreeCAD is a free and open-source multiplatform 3D parametric modeler. Prior to 1.1.2, src/App/PropertyPythonObject.cpp in PropertyPythonObject::Restore() passes the attacker-controlled module attribute from serialized...

1 affected package

freecad

Package 24.04 LTS
freecad Not in release
Show less packages

CVE-2026-34399

Medium priority

Not in release

FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, FreeCAD's BIM Workbench contains an eval() call on untrusted data from SVG template files. When a user creates a TechDraw page from a...

1 affected package

freecad

Package 24.04 LTS
freecad Not in release
Show less packages

CVE-2026-34398

Medium priority

Not in release

FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, src/Mod/BIM/bimcommands/BimProjectManager.py in the BIM Project Manager Load Template flow passes attacker-controlled FCStd...

1 affected package

freecad

Package 24.04 LTS
freecad Not in release
Show less packages