Search CVE reports


Toggle filters

561 – 570 of 47099 results

Status is adjusted based on your filters.


CVE-2026-84445

Medium priority

Not in release

gRPC-Go is the Go language implementation of gRPC. Prior to 1.82.2 and 1.83.2, servers created with xds.NewGRPCServer() allow internal/transport/http2_server.go to accept an RPC containing neither the :authority header nor the...

1 affected package

golang-github-googlecloudplatform-grpc-gcp-go

Package 24.04 LTS
golang-github-googlecloudplatform-grpc-gcp-go Not in release
Show less packages

CVE-2026-55073

Medium priority
Needs evaluation

WeasyPrint helps web developers to create PDF documents. Prior to 70.0, server-side applications that configure a restrictive url_fetcher and pass attacker-influenced values to HTML.write_pdf() can have the restriction bypassed...

1 affected package

weasyprint

Package 24.04 LTS
weasyprint Needs evaluation
Show less packages

CVE-2026-90996

Medium priority
Needs evaluation

A flaw was found in sssd. A local unprivileged user could send a specially crafted request with a zero-length body to the Network Security Services (NSS) responder. This could lead to a denial-of-service condition, causing the NSS...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-90995

Medium priority
Needs evaluation

A flaw was found in SSSD (System Security Services Daemon). A local attacker with privileges to connect to the PAM (Pluggable Authentication Modules) responder socket can send a specially crafted protocol request. If the...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-90994

Medium priority
Needs evaluation

A flaw was found in sssd, specifically within the PAM (Pluggable Authentication Modules) responder's protocol v1 parser, pam_parse_in_data(). A local client with access to the PAM responder's UNIX socket can exploit this by...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-90947

Medium priority
Needs evaluation

A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can lead to an out-of-bounds write, corrupting memory. An...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-90794

Medium priority
Needs evaluation

A vulnerability was found in GPAC up to f1219cde. The affected element is the function gf_sg_script_load of the file scenegraph/vrml_tools.c of the component MP4Box. Performing a manipulation results in use after free. It is...

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90793

Medium priority
Needs evaluation

A vulnerability has been found in GPAC up to f1219cde. Impacted is the function gf_node_get_name of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to use after free. The attack may be...

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90792

Medium priority
Needs evaluation

A flaw has been found in GPAC up to f1219cde. This issue affects the function gf_node_list_get_child of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation of the argument Target causes null pointer...

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90463

Medium priority
Needs evaluation

A flaw was found in the sssd NSS responder. This input validation vulnerability allows a local attacker, by sending specially crafted service lookup requests to the NSS responder's UNIX socket, to cause an out-of-bounds read. This...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages