Search CVE reports


Toggle filters

281 – 290 of 44612 results

Status is adjusted based on your filters.


CVE-2026-34502

Medium priority
Needs evaluation

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.

1 affected package

apr-util

Package 20.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-34501

Medium priority
Needs evaluation

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3. Users are recommended to upgrade to version 1.6.4, which fixes...

1 affected package

apr-util

Package 20.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-34191

Medium priority
Needs evaluation

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3

1 affected package

apr-util

Package 20.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-32327

Medium priority
Needs evaluation

A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources and uses theĀ apr_xml_quote_elem() function. Users are recommended to upgrade to...

1 affected package

apr-util

Package 20.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2025-49506

Medium priority
Needs evaluation

APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potentially leaking their content via a side channel timing attack particularly on...

1 affected package

apr-util

Package 20.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-18649

Medium priority
Needs evaluation

A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A...

1 affected package

gst-plugins-good1.0

Package 20.04 LTS
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2026-7867

Medium priority
Needs evaluation

security update

1 affected package

udisks2

Package 20.04 LTS
udisks2 Needs evaluation
Show less packages

CVE-2026-71313

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to...

1 affected package

rclone

Package 20.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-71312

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and...

1 affected package

rclone

Package 20.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-71311

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, a valid but nondefault FTP filename encoding in backend/ftp/ftp.go can restore raw CR/LF immediately...

1 affected package

rclone

Package 20.04 LTS
rclone Needs evaluation
Show less packages