Search CVE reports


Toggle filters

81 – 90 of 36535 results

Status is adjusted based on your filters.


CVE-2026-1388

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.2 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthenticated user to cause regular expression denial of service...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2026-0752

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.2 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that under certain circumstances, could have allowed an unauthenticated user to...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2025-3525

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.0 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have, under certain circumstances, allowed an authenticated user with certain...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2025-14511

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.2 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthenticated user to cause denial of service by...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2025-14103

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthorized user with Developer-role permissions to set pipeline...

1 affected package

gitlab

Package 22.04 LTS
gitlab Not in release
Show less packages

CVE-2025-11563

Medium priority
Not affected

URLs containing percent-encoded slashes (`/` or `\`) can trick wcurl into saving the output file outside of the current directory without the user explicitly asking for it. This flaw only affects the wcurl command line tool.

1 affected package

curl

Package 22.04 LTS
curl Not affected
Show less packages

CVE-2026-27624

Medium priority
Needs evaluation

Coturn is a free open source implementation of TURN and STUN Server. Coturn is commonly configured to block loopback and internal ranges using "denied-peer-ip" and/or default loopback restrictions. CVE-2020-26262 addressed...

1 affected package

coturn

Package 22.04 LTS
coturn Needs evaluation
Show less packages

CVE-2026-3147

Medium priority
Needs evaluation

A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_build of the file libvips/foreign/csvload.c. The manipulation results in heap-based buffer overflow. The attack requires a local...

1 affected package

vips

Package 22.04 LTS
vips Needs evaluation
Show less packages

CVE-2026-3146

Medium priority
Needs evaluation

A vulnerability has been found in libvips up to 8.18.0. The impacted element is the function vips_foreign_load_matrix_header of the file libvips/foreign/matrixload.c. The manipulation leads to null pointer dereference. The attack...

1 affected package

vips

Package 22.04 LTS
vips Needs evaluation
Show less packages

CVE-2026-3145

Medium priority
Needs evaluation

A flaw has been found in libvips up to 8.18.0. The affected element is the function vips_foreign_load_matrix_file_is_a/vips_foreign_load_matrix_header of the file libvips/foreign/matrixload.c. Executing a manipulation can lead to...

1 affected package

vips

Package 22.04 LTS
vips Needs evaluation
Show less packages