Search CVE reports


Toggle filters

1381 – 1390 of 26183 results

Status is adjusted based on your filters.


CVE-2026-40505

Medium priority
Needs evaluation

(MuPDF mutool does not sanitize PDF metadata fields before writing them ...)

1 affected package

mupdf

Package 26.04 LTS
mupdf Needs evaluation
Show less packages

CVE-2026-40260

Medium priority
Needs evaluation

(pypdf is a free and open-source pure-python PDF library. In versions p ...)

2 affected packages

pypdf, pypdf2

Package 26.04 LTS
pypdf Needs evaluation
pypdf2 Not in release
Show less packages

CVE-2026-40253

Medium priority
Needs evaluation

(openCryptoki is a PKCS#11 library and provides tooling for Linux and A ...)

1 affected package

opencryptoki

Package 26.04 LTS
opencryptoki Needs evaluation
Show less packages

CVE-2026-40192

Medium priority
Fixed

Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS...

2 affected packages

pillow, pillow-python2

Package 26.04 LTS
pillow Fixed
pillow-python2 Not in release
Show less packages

CVE-2026-40179

Medium priority
Needs evaluation

(Prometheus is an open-source monitoring system and time series databas ...)

1 affected package

prometheus

Package 26.04 LTS
prometheus Needs evaluation
Show less packages

CVE-2026-40170

Medium priority
Needs evaluation

(ngtcp2 is a C implementation of the IETF QUIC protocol. In versions pr ...)

1 affected package

ngtcp2

Package 26.04 LTS
ngtcp2 Needs evaluation
Show less packages

CVE-2026-3505

Medium priority
Needs evaluation

(Allocation of resources without limits or throttling vulnerability in ...)

1 affected package

bouncycastle

Package 26.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-30656

Medium priority
Needs evaluation

(A NULL pointer dereference vulnerability exists in fio (Flexible I/O T ...)

1 affected package

fio

Package 26.04 LTS
fio Needs evaluation
Show less packages

CVE-2026-27820

Medium priority
Needs evaluation

(zlib is a Ruby interface for the zlib compression/decompression librar ...)

7 affected packages

ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.2...

Package 26.04 LTS
ruby2.3 Not in release
ruby2.5 Not in release
ruby2.7 Not in release
ruby3.0 Not in release
ruby3.2 Not in release
ruby3.3 Needs evaluation
jruby Needs evaluation
Show all 7 packages Show less packages

CVE-2026-0636

Medium priority
Needs evaluation

(Improper neutralization of special elements used in an LDAP query ('LD ...)

1 affected package

bouncycastle

Package 26.04 LTS
bouncycastle Needs evaluation
Show less packages