Search CVE reports


Toggle filters

21 – 30 of 490 results


CVE-2025-46150

Medium priority
Needs evaluation

In PyTorch before 2.7.0, when torch.compile is used, FractionalMaxPool2d has inconsistent results.

1 affected package

pytorch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pytorch Not in release Needs evaluation
Show less packages

CVE-2025-46149

Medium priority
Needs evaluation

In PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.

1 affected package

pytorch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pytorch Not in release Needs evaluation
Show less packages

CVE-2025-46148

Medium priority
Needs evaluation

In PyTorch through 2.6.0, when eager is used, nn.PairwiseDistance(p=2) produces incorrect results.

1 affected package

pytorch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pytorch Not in release Needs evaluation
Show less packages

CVE-2025-4444

Medium priority
Needs evaluation

A security flaw has been discovered in Tor up to 0.4.7.16/0.4.8.17. Impacted is an unknown function of the component Onion Service Descriptor Handler. Performing manipulation results in resource consumption. The attack may be...

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-54310

Medium priority
Needs evaluation

qBittorrent before 5.1.2 does not prevent access to a local file that is referenced in a link URL. This affects rsswidget.cpp and searchjobwidget.cpp.

1 affected package

qbittorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qbittorrent Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-49140

Medium priority
Needs evaluation

Pion Interceptor is a framework for building RTP/RTCP communication software. Versions v0.1.36 through v0.1.38 contain a bug in a RTP packet factory that can be exploited to trigger a panic with Pion based SFU via crafted RTP...

1 affected package

golang-github-pion-interceptor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
golang-github-pion-interceptor Needs evaluation Not in release
Show less packages

CVE-2025-35036

Medium priority
Needs evaluation

Hibernate Validator before 6.2.0 and 7.0.0, by default and depending how it is used, may interpolate user-supplied input in a constraint violation message with Expression Language. This could allow an attacker to access sensitive...

2 affected packages

libhibernate-validator-java, libhibernate-validator4-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libhibernate-validator-java Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libhibernate-validator4-java Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-47287

Medium priority

Some fixes available 5 of 8

Tornado is a Python web framework and asynchronous networking library. When Tornado's ``multipart/form-data`` parser encounters certain errors, it logs a warning but continues trying to parse the remainder of the data. This allows...

1 affected package

python-tornado

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-tornado Fixed Fixed Ignored Ignored
Show less packages

CVE-2025-4287

Medium priority
Needs evaluation

A vulnerability was found in PyTorch 2.6.0+cu124. It has been rated as problematic. Affected by this issue is the function torch.cuda.nccl.reduce of the file torch/cuda/nccl.py. The manipulation leads to denial of service. It is...

1 affected package

pytorch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pytorch Not in release Needs evaluation Not in release
Show less packages

CVE-2025-32434

Medium priority
Not affected

PyTorch is a Python package that provides tensor computation with strong GPU acceleration and deep neural networks built on a tape-based autograd system. In version 2.5.1 and prior, a Remote Command Execution (RCE) vulnerability...

1 affected package

pytorch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pytorch Not affected
Show less packages