Search CVE reports


Toggle filters

21 – 30 of 60208 results

Status is adjusted based on your filters.


CVE-2026-92414

Medium priority
Needs evaluation

: Session Fixation / Session Reuse across Users vulnerability in Apache Jackrabbit. Jackrabbit WebDAV server attaches a cached authenticated session on any Lock-Token/TransactionId/SubscriptionId/If-header field token match...

1 affected package

jackrabbit

Package 16.04 LTS
jackrabbit Needs evaluation
Show less packages

CVE-2026-88964

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84790

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-56851

Medium priority
Needs evaluation

The Nickname profile can panic with an out-of-bounds slice error when transforming crafted input into a short destination buffer.

2 affected packages

golang-golang-x-text, golang-x-text

Package 16.04 LTS
golang-golang-x-text —
golang-x-text Needs evaluation
Show less packages

CVE-2026-107363

Medium priority
Needs evaluation

In OpenStack Zaqar before 23.0.1, the WebSocket transport fails to bind the project identifier in subsequent requests to the project authenticated by the Keystone token. An authenticated user with a valid token for one project may...

1 affected package

zaqar

Package 16.04 LTS
zaqar Needs evaluation
Show less packages

CVE-2026-107353

Medium priority
Needs evaluation

traverse (npm) versions 0.3.6 through 0.3.9, 0.4.0 through 0.4.6, 0.5.0 through 0.5.2, and 0.6.0 through 0.6.11 allow prototype pollution through set(). When the path passed to set() crosses a primitive value, the next path...

1 affected package

node-traverse

Package 16.04 LTS
node-traverse Needs evaluation
Show less packages

CVE-2026-107315

Medium priority
Needs evaluation

pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.4 through 42.7.13 pads a value that is shorter than its declared length with bytes left in its send buffer instead of zeros, and the server stores those bytes as part of the value....

1 affected package

libpgjava

Package 16.04 LTS
libpgjava Needs evaluation
Show less packages

CVE-2026-107314

Medium priority
Needs evaluation

pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.11 through 42.7.13 enforce no restriction when the requireAuth connection property excludes all six authentication methods the driver knows, for...

1 affected package

libpgjava

Package 16.04 LTS
libpgjava Needs evaluation
Show less packages

CVE-2026-107313

Medium priority
Needs evaluation

pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.4 and 42.7.5 can send the previous contents of the GSS send buffer in place of the first part of a value on a connection with GSS encryption (gssEncMode=prefer or require), and the...

1 affected package

libpgjava

Package 16.04 LTS
libpgjava Needs evaluation
Show less packages

CVE-2026-107285

Medium priority
Needs evaluation

The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. Prior to 3.0.12 and 2.16.1, a proxied ws request is carried through CONNECT,...

1 affected package

async-http-client

Package 16.04 LTS
async-http-client Needs evaluation
Show less packages