Search CVE reports


Toggle filters

1 – 10 of 33859 results

Status is adjusted based on your filters.


CVE-2025-61915

Medium priority
Fixed

Local denial-of-service via cupsd.conf update and related issues

1 affected package

cups

Package 22.04 LTS
cups Fixed
Show less packages

CVE-2025-58436

Medium priority
Needs evaluation

Slow client communication leads to a possible DoS attack

1 affected package

cups

Package 22.04 LTS
cups Needs evaluation
Show less packages

CVE-2025-66270

Medium priority
Needs evaluation

security update

1 affected package

kdeconnect

Package 22.04 LTS
kdeconnect Needs evaluation
Show less packages

CVE-2025-66040

Medium priority

Not in release

Spotipy is a Python library for the Spotify Web API. Prior to version 2.25.2, there is a cross-site scripting (XSS) vulnerability in the OAuth callback server that allows for JavaScript injection through the unsanitized error...

1 affected package

spotipy

Package 22.04 LTS
spotipy Not in release
Show less packages

CVE-2025-66035

Medium priority
Needs evaluation

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage...

1 affected package

angular.js

Package 22.04 LTS
angular.js Needs evaluation
Show less packages

CVE-2025-66031

Medium priority
Needs evaluation

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to...

1 affected package

node-node-forge

Package 22.04 LTS
node-node-forge Needs evaluation
Show less packages

CVE-2025-66030

Medium priority
Needs evaluation

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft...

1 affected package

node-node-forge

Package 22.04 LTS
node-node-forge Needs evaluation
Show less packages

CVE-2025-64344

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a...

1 affected package

suricata

Package 22.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64335

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword...

1 affected package

suricata

Package 22.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64334

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, compressed HTTP data can lead to unbounded memory...

1 affected package

suricata

Package 22.04 LTS
suricata Needs evaluation
Show less packages