Search CVE reports


Toggle filters

1331 – 1340 of 37501 results

Status is adjusted based on your filters.


CVE-2026-76176

Medium priority

Not in release

SQL injection vulnerability in the endpoint /ocsreports/index.php?function=admin_double due to improper processing of the values in the ID field included in the selected_grp_dupli[] parameter. An authenticated user with operator...

1 affected package

ocsinventory-server

Package 26.04 LTS
ocsinventory-server Not in release
Show less packages

CVE-2026-76175

Medium priority

Not in release

SQL injection vulnerability in the del_check parameter of the /ocsreports/?function=save_query_list endpoint. Input provided by an authenticated user with operator privileges is incorporated into an SQL query without proper...

1 affected package

ocsinventory-server

Package 26.04 LTS
ocsinventory-server Not in release
Show less packages

CVE-2026-76174

Medium priority

Not in release

Unrestricted file upload vulnerability in the CSV file upload functionality of the Ocsreports admin_info endpoint. The application validates files solely based on the name provided by the client, without properly checking their...

1 affected package

ocsinventory-server

Package 26.04 LTS
ocsinventory-server Not in release
Show less packages

CVE-2026-71224

Medium priority
Needs evaluation

A stack overflow vulnerability was found in gfs2-utils. The metadata walk code in metawalk.c uses alloca() with an untrusted inode height value from on-disk metadata without bounds validation, causing stack exhaustion and a denial...

1 affected package

gfs2-utils

Package 26.04 LTS
gfs2-utils Needs evaluation
Show less packages

CVE-2026-71222

Medium priority
Needs evaluation

A heap out-of-bounds read vulnerability was found in gfs2-utils. The ea_num_ptrs field from on-disk extended attribute metadata is consumed without bounds validation, causing a heap buffer over-read that may disclose sensitive...

1 affected package

gfs2-utils

Package 26.04 LTS
gfs2-utils Needs evaluation
Show less packages

CVE-2026-71221

Medium priority
Needs evaluation

A stack out-of-bounds write vulnerability was found in gfs2-utils. In savemeta, the height value from on-disk inode metadata is used as a loop bound without bounds checking, causing a stack buffer overflow that may lead to...

1 affected package

gfs2-utils

Package 26.04 LTS
gfs2-utils Needs evaluation
Show less packages

CVE-2026-71220

Medium priority
Needs evaluation

A stack out-of-bounds write vulnerability was found in gfs2-utils. In gfs2_edit, the di_height field from on-disk inode metadata is used as an array index without bounds checking, causing a stack buffer overflow that may lead to...

1 affected package

gfs2-utils

Package 26.04 LTS
gfs2-utils Needs evaluation
Show less packages

CVE-2026-71219

Medium priority
Needs evaluation

A stack overflow vulnerability was found in gfs2-utils. The hash table traversal code in metawalk.c uses alloca() with an exponentially-derived size from the untrusted on-disk di_depth field without bounds validation. A crafted...

1 affected package

gfs2-utils

Package 26.04 LTS
gfs2-utils Needs evaluation
Show less packages

CVE-2026-84394

Medium priority
Needs evaluation

fast-uri accepts a host that contains an unbalanced or misplaced authority bracket without reporting an error. A host that starts with an opening bracket but does not end with a closing bracket is neither validated as an IP...

1 affected package

node-ajv

Package 26.04 LTS
node-ajv Needs evaluation
Show less packages

CVE-2026-76642

Medium priority
Needs evaluation

util-linux versions through 2.41.5 and 2.42.2 fail to check mount helper exit status before running post-mount hooks, allowing unprivileged users to execute privileged operations on pre-existing filesystems. Attackers can exploit...

1 affected package

util-linux

Package 26.04 LTS
util-linux Needs evaluation
Show less packages