Search CVE reports


Toggle filters

271 – 280 of 35777 results

Status is adjusted based on your filters.


CVE-2025-51602

Medium priority
Needs evaluation

mmstu.c in VideoLAN VLC media player before 3.0.22 allows an out-of-bounds read and denial of service via a crafted 0x01 response from an MMS server.

1 affected package

vlc

Package 22.04 LTS
vlc Needs evaluation
Show less packages

CVE-2025-43904

Medium priority
Vulnerable

In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11, the accounting system can allow a Coordinator to promote a user to Administrator.

1 affected package

slurm-wlm

Package 22.04 LTS
slurm-wlm Vulnerable
Show less packages

CVE-2025-31510

Medium priority
Needs evaluation

In the portal in LemonLDAP::NG before 2.21.0, cross-site scripting (XSS) allows remote attackers to inject arbitrary web script or HTML (into the login page) via the tab parameter, for Choice authentication.

1 affected package

lemonldap-ng

Package 22.04 LTS
lemonldap-ng Needs evaluation
Show less packages

CVE-2026-23528

Medium priority
Needs evaluation

Dask distributed is a distributed task scheduler for Dask. Prior to 2026.1.0, when Jupyter Lab, jupyter-server-proxy, and Dask distributed are all run together, it is possible to craft a URL which will result in code being...

1 affected package

dask.distributed

Package 22.04 LTS
dask.distributed Needs evaluation
Show less packages

CVE-2026-0988

Medium priority
Fixed

A flaw was found in glib. Missing validation of offset and count parameters in the g_buffered_input_stream_peek() function can lead to an integer overflow during length calculation. When specially crafted values are provided, this...

1 affected package

glib2.0

Package 22.04 LTS
glib2.0 Fixed
Show less packages

CVE-2026-0858

Medium priority
Needs evaluation

Versions of the package net.sourceforge.plantuml:plantuml before 1.2026.0 are vulnerable to Stored XSS due to insufficient sanitization of interactive attributes in GraphViz diagrams. As a result, a crafted PlantUML diagram can...

1 affected package

plantuml

Package 22.04 LTS
plantuml Needs evaluation
Show less packages

CVE-2025-68121

Medium priority
Needs evaluation

[crypto/tls: Config.Clone copies automatically generated session ticket keys, session resumption does not account for the expiration of full certificate chain]

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 22.04 LTS
golang Not in release
golang-1.6 Not in release
golang-1.8 Not in release
golang-1.9 Not in release
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
golang-1.25 Not in release
Show all 16 packages Show less packages

CVE-2025-68119

Medium priority
Needs evaluation

[cmd/go: unexpected code execution when invoking toolchain]

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 22.04 LTS
golang Not in release
golang-1.6 Not in release
golang-1.8 Not in release
golang-1.9 Not in release
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
golang-1.25 Not in release
Show all 16 packages Show less packages

CVE-2025-61731

Medium priority
Needs evaluation

[cmd/go: bypass of flag sanitization can lead to arbitrary code execution]

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 22.04 LTS
golang Not in release
golang-1.6 Not in release
golang-1.8 Not in release
golang-1.9 Not in release
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
golang-1.25 Not in release
Show all 16 packages Show less packages

CVE-2025-61730

Medium priority
Needs evaluation

[crypto/tls: handshake messages may be processed at the incorrect encryption level]

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 22.04 LTS
golang Not in release
golang-1.6 Not in release
golang-1.8 Not in release
golang-1.9 Not in release
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
golang-1.25 Not in release
Show all 16 packages Show less packages