Search CVE reports


Toggle filters

261 – 270 of 36488 results

Status is adjusted based on your filters.


CVE-2026-84962

Medium priority
Needs evaluation

An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticated Google Cloud KMS API calls under the authorized user's identity, escalating database-level access into cloud key...

1 affected package

libmongocrypt

Package 26.04 LTS
libmongocrypt Needs evaluation
Show less packages

CVE-2026-84732

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84471

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84451

Medium priority
Needs evaluation

[Incomplete fix for GHSA-73p7-m7gg-w2jv leaves libheif 1.23.1 vulnerable to an out-of-bounds read]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-84450

Medium priority
Needs evaluation

[Incomplete fix for GHSA-73p7-m7gg-w2jv leaves libheif 1.23.1 vulnerable to an out-of-bounds read]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-84394

Medium priority
Needs evaluation

fast-uri accepts a host that contains an unbalanced or misplaced authority bracket without reporting an error. A host that starts with an opening bracket but does not end with a closing bracket is neither validated as an IP...

1 affected package

node-ajv

Package 26.04 LTS
node-ajv Needs evaluation
Show less packages

CVE-2026-84383

Medium priority
Needs evaluation

[GHSA-g89c-p67h-r497: Heap buffer overflow in `scale_nearest_neighbor()` via duplicate Alpha planes from nested `iden`/`auxl` items]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-84292

Medium priority
Needs evaluation

fast-uri serializes the port component of a URI without validating it. When recomposing the authority, the userinfo and host components are escaped but the port is concatenated verbatim, so a port value that is not a sequence of...

1 affected package

node-ajv

Package 26.04 LTS
node-ajv Needs evaluation
Show less packages

CVE-2026-84256

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84226

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages