Search CVE reports


Toggle filters

1511 – 1520 of 38021 results

Status is adjusted based on your filters.


CVE-2026-18922

Medium priority
Needs evaluation

A flaw was found in 389 Directory Server. During SASL PLAIN authentication, a stale identity carried in a Cyrus SASL auxiliary property from a prior failed bind attempt can be installed on a connection following a subsequent,...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages

CVE-2026-18453

Medium priority
Needs evaluation

A flaw was found in 389 Directory Server. A missing NULL pointer check in the paged results handling of op_shared_search allows an unauthenticated remote attacker to crash the LDAP server by sending a crafted sequence of search...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages

CVE-2026-18355

Medium priority
Needs evaluation

A heap buffer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), the wrapped-record length read from the wire is validated only against an upper bound. A small wire...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages

CVE-2026-76560

Medium priority
Needs evaluation

A flaw was found in 389 Directory Server. The SELFDN ACI bind-rule evaluator incorrectly matches an anonymous LDAP client's empty bind DN against an empty stored attribute value, allowing an unauthenticated client to satisfy...

1 affected package

389-ds-base

Package 26.04 LTS
389-ds-base Needs evaluation
Show less packages

CVE-2026-86435

Medium priority
Needs evaluation

commonmark versions from 1.5.0 before 2.8.4 contain a denial of service vulnerability in the Footnote extension that fails to deduplicate footnote definitions. Attackers can craft documents with duplicate footnote definitions and...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages

CVE-2026-86434

Medium priority
Needs evaluation

league/commonmark versions >= 2.0.0 and < 2.8.4 (patched in 2.9.0) contain a denial of service vulnerability in UniqueSlugNormalizer::normalize(), which restarts its numeric-suffix search from 1 on every slug collision, resulting...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages

CVE-2026-86433

Medium priority
Needs evaluation

commonmark versions from 1.5.0 before 2.8.4 contain a denial of service vulnerability in the Attributes extension where AttributesListener::findTargetAndDirection() performs quadratic-time sibling list scanning. Unauthenticated...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages

CVE-2026-86432

Medium priority
Needs evaluation

commonmark versions from 2.0.0 before 2.8.4 contain a denial of service vulnerability in XmlRenderer that emits depth-proportional indentation for every XML tag. Attackers can provide deeply nested Markdown or AST structures to...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages

CVE-2026-86431

Medium priority
Needs evaluation

league/commonmark (thephpleague/commonmark) versions >= 2.7.0 and < 2.9.1 contain a cross-site scripting vulnerability in the AttributesExtension. Prefixing an attribute name with a single U+000C form feed byte...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages

CVE-2026-86430

Medium priority
Needs evaluation

league/commonmark versions before 2.9.1 contain multiple denial of service vulnerabilities in fenced code block detection, reference link label lookup, and emphasis delimiter processing that perform super-linear work on crafted...

1 affected package

php-league-commonmark

Package 26.04 LTS
php-league-commonmark Needs evaluation
Show less packages