Search CVE reports


Toggle filters

151 – 160 of 35777 results

Status is adjusted based on your filters.


CVE-2026-1200

Medium priority

Not in release

[Unknown description]

1 affected package

liblivemedia

Package 22.04 LTS
liblivemedia Not in release
Show less packages

CVE-2026-0775

Medium priority
Needs evaluation

npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of npm cli. An attacker must first obtain the ability to...

1 affected package

npm

Package 22.04 LTS
npm Needs evaluation
Show less packages

CVE-2025-15059

Medium priority
Needs evaluation

GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...

1 affected package

gimp

Package 22.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-24117

Medium priority

Not in release

Rekor is a software supply chain transparency log. In versions 1.4.3 and below, attackers can trigger SSRF to arbitrary internal services because /api/v1/index/retrieve supports retrieving a public key via user-provided URL. Since...

1 affected package

rekor

Package 22.04 LTS
rekor Not in release
Show less packages

CVE-2026-23954

Medium priority

Not in release

Incus is a system container and virtual machine manager. Versions 6.21.0 and below allow a user with the ability to launch a container with a custom image (e.g a member of the ‘incus’ group) to use directory traversal or symbolic...

2 affected packages

incus, lxd

Package 22.04 LTS
incus Not in release
lxd Not in release
Show less packages

CVE-2026-23953

Medium priority

Not in release

Incus is a system container and virtual machine manager. In versions 6.20.0 and below, a user with the ability to launch a container with a custom YAML configuration (e.g a member of the ‘incus’ group) can create an...

2 affected packages

incus, lxd

Package 22.04 LTS
incus Not in release
lxd Not in release
Show less packages

CVE-2026-23831

Medium priority

Not in release

Rekor is a software supply chain transparency log. In versions 1.4.3 and below, the entry implementation can panic on attacker-controlled input when canonicalizing a proposed entry with an empty spec.message, causing nil Pointer...

1 affected package

rekor

Package 22.04 LTS
rekor Not in release
Show less packages

CVE-2026-1102

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.3 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that could have allowed an unauthenticated user to create a denial of service condition by...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2026-0723

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that could have allowed an individual with existing knowledge of a victim's credential ID to...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2025-15523

Medium priority
Needs evaluation

MacOS version of Inkscape bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this...

1 affected package

inkscape

Package 22.04 LTS
inkscape Needs evaluation
Show less packages