Search CVE reports


Toggle filters

421 – 430 of 46621 results

Status is adjusted based on your filters.


CVE-2026-63073

Low priority
Not affected

Untrusted Sender DN Used as Format String in CMP Response Validation

6 affected packages

openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe

Package 20.04 LTS
openssl Not affected
openssl-fips
openssl1.0
nodejs Not affected
edk2 Not affected
edk2-hwe
Show less packages

CVE-2026-63072

Medium priority

Some fixes available 1 of 2

Heap Buffer Overflow in CMS Key Unwrapping

6 affected packages

openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe

Package 20.04 LTS
openssl Fixed
openssl-fips
openssl1.0
nodejs Not affected
edk2 Needs evaluation
edk2-hwe
Show less packages

CVE-2026-62388

Medium priority
Needs evaluation

NLTK versions before 3.10.0 default to ENFORCE=False in pathsec.py, causing all security validation functions to emit warnings instead of raising exceptions. Attackers can bypass path traversal and pickle...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-62385

Medium priority
Needs evaluation

NLTK versions before 3.10.0 contain a path traversal vulnerability in FramenetCorpusReader and NKJPCorpusReader that allows attackers to parse XML files outside the corpus root by supplying unsafe selectors or poisoned index...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-62384

Negligible priority
Needs evaluation

NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCorpusReader that allows attackers to read arbitrary XML files outside the corpus root. Attackers can place symlinks with names containing no path...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-62383

Medium priority
Needs evaluation

nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpusReader methods that bypass nltk.pathsec validation entirely. Attackers can place a symlink in the corpus root directory and read...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-59183

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.1.0 through 3.2.10, 3.3.0 through 3.3.12, and 3.4.0 through 3.4.13, an...

1 affected package

openexr

Package 20.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-55373

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. Versions prior to 3.2.10, 3.3.12, and 3.4.13 contain an infinite-loop vulnerability...

1 affected package

openexr

Package 20.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-55371

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR high-dynamic-range image file format, widely used in the motion picture industry. Versions 3.4.0 through 3.4.12 contain a NULL pointer dereference in the...

1 affected package

openexr

Package 20.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-55059

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. Versions prior to 3.2.10, 3.3.12 and 3.4.13 contain a heap out-of-bounds write...

1 affected package

openexr

Package 20.04 LTS
openexr Needs evaluation
Show less packages