Search CVE reports


Toggle filters

581 – 590 of 53354 results

Status is adjusted based on your filters.


CVE-2026-20346

Medium priority
Needs evaluation

A vulnerability in the PDF file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...

1 affected package

clamav

Package 16.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20345

Medium priority
Needs evaluation

A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...

1 affected package

clamav

Package 16.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20339

Medium priority
Needs evaluation

A vulnerability in the PESpin file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an...

1 affected package

clamav

Package 16.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20338

Medium priority
Needs evaluation

A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper memory handling when processing content in...

1 affected package

clamav

Package 16.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20337

Medium priority
Needs evaluation

A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper boundary checks for content in zip files...

1 affected package

clamav

Package 16.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-64638

Medium priority
Needs evaluation

WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malicious third-party website hosted by an attacker, it is possible for this to be escalated to an RCE...

1 affected package

wordpress

Package 16.04 LTS
wordpress Needs evaluation
Show less packages

CVE-2026-61477

Medium priority
Vulnerable

An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record value attributes and SRV record domain/target attributes. These values are...

1 affected package

libvirt

Package 16.04 LTS
libvirt Vulnerable
Show less packages

CVE-2026-18938

Medium priority
Needs evaluation

A flaw was found in p11-kit. A local attacker, or one with equivalent access to a reachable RPC channel, could exploit an integer overflow vulnerability. By sending specially crafted messages, the attacker can cause the system to...

1 affected package

p11-kit

Package 16.04 LTS
p11-kit Needs evaluation
Show less packages

CVE-2026-71497

Medium priority
Needs evaluation

jsoup is a Java library for working with real-world HTML. From 1.14.3 until 1.23.1, jsoup's HTML parser could incorrectly handle a malformed tag name ending in a control character, causing the tag to acquire the parsing behavior...

1 affected package

jsoup

Package 16.04 LTS
jsoup Needs evaluation
Show less packages

CVE-2026-71488

Medium priority
Needs evaluation

league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 0.6.0 until 2.9.0, specially crafted Markdown lines can cause the parser to have quadratic time complexity when converting, because several...

2 affected packages

commonmark, markdown

Package 16.04 LTS
commonmark
markdown Needs evaluation
Show less packages