Search CVE reports


Toggle filters

1441 – 1450 of 39983 results

Status is adjusted based on your filters.


CVE-2026-39378

Medium priority
Needs evaluation

The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. In versions 6.5 through 7.17.0, when `HTMLExporter.embed_images=True`, nbconvert's markdown renderer allows arbitrary...

1 affected package

nbconvert

Package 20.04 LTS
nbconvert Needs evaluation
Show less packages

CVE-2026-39377

Medium priority
Needs evaluation

The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. Versions 6.5 through 7.17.0 allow arbitrary file writes to locations outside the intended output directory when...

1 affected package

nbconvert

Package 20.04 LTS
nbconvert Needs evaluation
Show less packages

CVE-2026-35588

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, the Cassandra export module (`glances/exports/glances_cassandra/__init__.py`) interpolates `keyspace`, `table`, and `replication_factor`...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-35587

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, a Server-Side Request Forgery (SSRF) vulnerability exists in the Glances IP plugin due to improper validation of the public_api configuration...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-34839

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, the Glances web server exposes a REST API (`/api/4/*`) that is accessible without authentication and allows cross-origin requests from any...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-40372

Medium priority

Not in release

Improper verification of cryptographic signature in ASP.NET Core allows an unauthorized attacker to elevate privileges over a network.

5 affected packages

dotnet6, dotnet7, dotnet8, dotnet9, dotnet10

Package 20.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
dotnet9 Not in release
dotnet10 Not in release
Show less packages

CVE-2026-5928

Medium priority
Needs evaluation

Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or earlier, may result...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages

CVE-2026-5450

Medium priority
Needs evaluation

Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages

CVE-2026-5358

Medium priority
Not affected

Rejected reason: REJECTED: CVE-2026-5358 is rejected for two reasons. Firstly it has been discovered that no NIS+ client or server was ever released for any Linux-based OS distributions and as such this makes the API...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Not affected
eglibc
Show less packages

CVE-2026-6060

Medium priority
Needs evaluation

A vulnerability in the SQL Box in the admin interface of OTRS leads to an uncontrolled resource consumption leading to a DoS against the webserver. will be killed by the systemThis issue affects OTRS: * 7.0.X * 8.0.X * ...

2 affected packages

znuny, otrs2

Package 20.04 LTS
znuny
otrs2 Needs evaluation
Show less packages