Search CVE reports


Toggle filters

1501 – 1510 of 38020 results

Status is adjusted based on your filters.


CVE-2026-69806

Medium priority
Fixed

Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.

4 affected packages

dotnet6, dotnet7, dotnet8, dotnet10

Package 26.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet10 Fixed
Show less packages

CVE-2026-69522

Medium priority
Not affected

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

4 affected packages

dotnet6, dotnet7, dotnet8, dotnet10

Package 26.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet10 Not affected
Show less packages

CVE-2026-69439

Medium priority
Not affected

Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network.

4 affected packages

dotnet6, dotnet7, dotnet8, dotnet10

Package 26.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet10 Not affected
Show less packages

CVE-2026-69304

Medium priority
Not affected

Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.

4 affected packages

dotnet6, dotnet7, dotnet8, dotnet10

Package 26.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet10 Not affected
Show less packages

CVE-2026-58649

Medium priority
Fixed

Origin validation error in .NET allows an unauthorized attacker to disclose information over a network.

4 affected packages

dotnet6, dotnet7, dotnet8, dotnet10

Package 26.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet10 Fixed
Show less packages

CVE-2026-16028

Medium priority
Needs evaluation

Protocol::HTTP2 versions before 1.14 for Perl allow memory exhaustion via closed streams that stream_state never removes from the connection stream table. When a stream reaches the CLOSED state, stream_state returns...

1 affected package

libprotocol-http2-perl

Package 26.04 LTS
libprotocol-http2-perl Needs evaluation
Show less packages

CVE-2026-86469

Medium priority
Needs evaluation

A flaw was found in GLib2. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION and creating the .goutputstream-XXXXXX temporary file fails, the library unlinks the destination and recreates it without exclusive...

1 affected package

glib2.0

Package 26.04 LTS
glib2.0 Needs evaluation
Show less packages

CVE-2026-86317

Medium priority
Needs evaluation

A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserialize_tensor of the file ggml/src/ggml-rpc/ggml-rpc.cpp of the component RPC Server. Performing a manipulation of the...

1 affected package

llama.cpp

Package 26.04 LTS
llama.cpp Needs evaluation
Show less packages

CVE-2026-19843

Medium priority
Needs evaluation

A flaw was found in 389-ds-base. The Cockpit 389 Console's LDAP editor constructs an ldapsearch command by embedding an LDAP entry's distinguished name (DN) into a shell command string without proper escaping. An LDAP user with...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages

CVE-2026-18922

Medium priority
Needs evaluation

A flaw was found in 389 Directory Server. During SASL PLAIN authentication, a stale identity carried in a Cyrus SASL auxiliary property from a prior failed bind attempt can be installed on a connection following a subsequent,...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages