Search CVE reports


Toggle filters

321 – 330 of 49237 results

Status is adjusted based on your filters.


CVE-2026-101278

Medium priority
Needs evaluation

A weakness has been identified in Trusted Domain Project OpenDMARC up to 1.4.2. This affects the function opendmarc_get_tld of the file libopendmarc/opendmarc_tld.c : of the component PSL Wildcard Handler. Executing a manipulation...

1 affected package

opendmarc

Package 24.04 LTS
opendmarc Needs evaluation
Show less packages

CVE-2026-101277

Medium priority
Needs evaluation

A security flaw has been discovered in Trusted Domain Project OpenDKIM up to 2.11.0. The impacted element is the function dkim_process_set of the file dkim.c of the component Tag Tokenizer. Performing a manipulation results in use...

1 affected package

opendkim

Package 24.04 LTS
opendkim Needs evaluation
Show less packages

CVE-2026-100395

Medium priority
Needs evaluation

[lxc-copy host-context hostname update follows symlink]

1 affected package

lxc

Package 24.04 LTS
lxc Needs evaluation
Show less packages

CVE-2026-102297

Medium priority
Needs evaluation

ZoneMinder before 1.38.4 fails to apply per-monitor access restrictions in the FramesController index endpoint. Authenticated users with Events view permission can call the frames API to list frame records from monitors they are...

1 affected package

zoneminder

Package 24.04 LTS
zoneminder Needs evaluation
Show less packages

CVE-2026-102296

Medium priority
Needs evaluation

ZoneMinder before 1.38.4 contains static buffer overflow vulnerabilities in RemoteCameraHttp::GetResponse() that allow malicious HTTP cameras or intercepting attackers to overflow fixed-size buffers by sending oversized response...

1 affected package

zoneminder

Package 24.04 LTS
zoneminder Needs evaluation
Show less packages

CVE-2024-58386

Medium priority
Needs evaluation

ZoneMinder versions 1.37.0 before 1.38.0 contain a path traversal vulnerability in the files view that allows authenticated users to read arbitrary files. The path parameter is not properly validated before being passed to...

1 affected package

zoneminder

Package 24.04 LTS
zoneminder Needs evaluation
Show less packages

CVE-2026-97027

Medium priority
Needs evaluation

Flatpak passes through arbitrary vendor-extension keys unmodified when exporting an application's Desktop Entry (.desktop) and D-Bus Service (.service) files, instead of validating against an allowlist. A malicious Flatpak app can...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-97026

Medium priority
Needs evaluation

Flatpak creates temporary child repository directories under the user cache with world-writable permissions (0777). On multi-user systems with a permissive umask, other local users could read or modify the temporary directory used...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-97025

Medium priority
Needs evaluation

Flatpak writes the OCI repository authentication token with world-readable permissions (0644) in the system-helper's cache directory, allowing other local users on a multi-user system to read the token and impersonate...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-102278

Medium priority
Needs evaluation

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.20, 2.1.6, 3.0.8, and 5.0.11, deeply nested brace groups cause expand_() to recurse once per nesting level at comma-member...

1 affected package

node-brace-expansion

Package 24.04 LTS
node-brace-expansion Needs evaluation
Show less packages