Search CVE reports


Toggle filters

21 – 30 of 32835 results

Status is adjusted based on your filters.


CVE-2026-32710

Medium priority
Needs evaluation

MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might...

1 affected package

mariadb

Package 24.04 LTS
mariadb Needs evaluation
Show less packages

CVE-2025-71276

Medium priority

Not in release

SOGo before 5.12.5 is prone to a XSS vulnerability with events, tasks, and contacts categories.

1 affected package

sogo

Package 24.04 LTS
sogo Not in release
Show less packages

CVE-2025-63261

Medium priority
Needs evaluation

AWStats 8.0 is vulnerable to Command Injection via the open function

1 affected package

awstats

Package 24.04 LTS
awstats Needs evaluation
Show less packages

CVE-2019-25591

Medium priority
Needs evaluation

DNSS Domain Name Search Software 2.1.8 contains a buffer overflow vulnerability in the registration code input field that allows local attackers to crash the application by submitting an excessively long string. Attackers can...

1 affected package

dnss

Package 24.04 LTS
dnss Needs evaluation
Show less packages

CVE-2019-25586

Medium priority
Needs evaluation

Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From...

1 affected package

deluge

Package 24.04 LTS
deluge Needs evaluation
Show less packages

CVE-2019-25585

Medium priority
Needs evaluation

Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Webseeds field. Attackers can paste a buffer of 5000 bytes into...

1 affected package

deluge

Package 24.04 LTS
deluge Needs evaluation
Show less packages

CVE-2019-25544

Medium priority
Needs evaluation

Pidgin 2.13.0 contains a denial of service vulnerability that allows local attackers to crash the application by providing an excessively long username string during account creation. Attackers can input a buffer of 1000...

1 affected package

pidgin

Package 24.04 LTS
pidgin Needs evaluation
Show less packages

CVE-2026-29111

Medium priority
Fixed

Local unprivileged user can trigger an assert in systemd

1 affected package

systemd

Package 24.04 LTS
systemd Fixed
Show less packages

CVE-2026-25075

Medium priority
Fixed

Integer Underflow When Handling EAP-TTLS AVP. A vulnerability in the eap-ttls plugin related to processing EAP-TTLS AVPs was discovered in strongSwan that can result in resource exhaustion or a crash. All versions since 4.5.0 are affected.

1 affected package

strongswan

Package 24.04 LTS
strongswan Fixed
Show less packages

CVE-2023-26920

Medium priority
Needs evaluation

(fast-xml-parser before 4.1.2 allows __proto__ for Prototype Pollution.)

1 affected package

node-webfont

Package 24.04 LTS
node-webfont Needs evaluation
Show less packages