Search CVE reports


Toggle filters

871 – 880 of 45011 results

Status is adjusted based on your filters.


CVE-2026-66402

Medium priority
Needs evaluation

FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weaknesses in tls_verify_certificate(), tls_match_hostname(), and x509_utils_get_dns_names(). Because FreeRDP performs...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages

CVE-2026-66401

Medium priority
Needs evaluation

FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fails to validate descriptor length before accessing the GUID field. A local attacker with a malicious USB video...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages

CVE-2026-18536

Medium priority
Needs evaluation

Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP. The Data::Entropy::RawSource::RandomOrg and Data::Entropy::RawSource::RandomnumbersInfo remote sources are accessed over plain HTTP. The...

1 affected package

libdata-entropy-perl

Package 20.04 LTS
libdata-entropy-perl Needs evaluation
Show less packages

CVE-2026-65981

Medium priority
Needs evaluation

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, a server using --mobility authenticates a resumed REFRESH request with the resuming user's credentials but does not verify that identity against...

1 affected package

coturn

Package 20.04 LTS
coturn Needs evaluation
Show less packages

CVE-2026-62959

Medium priority
Needs evaluation

Coturn is a free open source implementation of TURN and STUN Server. From 4.5.2 through 4.14.0, when Coturn is started with --acme-redirect <URL> and exposes a plaintext-TCP listener, an unauthenticated remote client can send a...

1 affected package

coturn

Package 20.04 LTS
coturn Needs evaluation
Show less packages

CVE-2026-18321

Medium priority
Needs evaluation

Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd

1 affected package

ntpsec

Package 20.04 LTS
ntpsec Needs evaluation
Show less packages

CVE-2026-54707

Medium priority
Needs evaluation

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to 2.6.4, OnionShare CLI/Desktop does not enforce the Receive...

1 affected package

onionshare

Package 20.04 LTS
onionshare Needs evaluation
Show less packages

CVE-2026-54706

Medium priority
Needs evaluation

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to 2.6.4, OnionShare CLI/Desktop follows symbolic links...

1 affected package

onionshare

Package 20.04 LTS
onionshare Needs evaluation
Show less packages

CVE-2026-18446

Medium priority
Needs evaluation

fast-uri before 4.1.2, 3.1.5, and 2.4.4 requires a literal double forward slash to recognize a URI authority, so a reference that uses a backslash based introducer in place of it (backslash backslash, forward slash backslash, or...

1 affected package

node-ajv

Package 20.04 LTS
node-ajv Needs evaluation
Show less packages

CVE-2026-18358

Medium priority
Needs evaluation

A flaw was found in gnome-remote-desktop as shipped in Red Hat Enterprise Linux. When the daemon is running in system mode with RDP enabled, the incoming connection handler bypasses the connection throttler, allowing...

1 affected package

gnome-remote-desktop

Package 20.04 LTS
gnome-remote-desktop Needs evaluation
Show less packages