Search CVE reports


Toggle filters

261 – 270 of 36824 results

Status is adjusted based on your filters.


CVE-2026-1200

Medium priority
Needs evaluation

[Unknown description]

1 affected package

liblivemedia

Package 20.04 LTS
liblivemedia Needs evaluation
Show less packages

CVE-2026-0775

Medium priority
Needs evaluation

npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of npm cli. An attacker must first obtain the ability to...

1 affected package

npm

Package 20.04 LTS
npm Needs evaluation
Show less packages

CVE-2025-15059

Medium priority
Needs evaluation

GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...

1 affected package

gimp

Package 20.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-23954

Medium priority
Needs evaluation

Incus is a system container and virtual machine manager. Versions 6.21.0 and below allow a user with the ability to launch a container with a custom image (e.g a member of the ‘incus’ group) to use directory traversal or symbolic...

2 affected packages

incus, lxd

Package 20.04 LTS
incus
lxd Needs evaluation
Show less packages

CVE-2026-23953

Medium priority
Needs evaluation

Incus is a system container and virtual machine manager. In versions 6.20.0 and below, a user with the ability to launch a container with a custom YAML configuration (e.g a member of the ‘incus’ group) can create an...

2 affected packages

incus, lxd

Package 20.04 LTS
incus
lxd Needs evaluation
Show less packages

CVE-2025-15523

Medium priority
Needs evaluation

MacOS version of Inkscape bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this...

1 affected package

inkscape

Package 20.04 LTS
inkscape Needs evaluation
Show less packages

CVE-2026-1225

Medium priority
Needs evaluation

ACE vulnerability in configuration file processing by QOS.CH logback-core up to and including version 1.5.24 in Java applications, allows an attacker to instantiate classes already present on the class path by compromising...

1 affected package

logback

Package 20.04 LTS
logback Needs evaluation
Show less packages

CVE-2026-24049

Medium priority
Needs evaluation

wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions...

2 affected packages

wheel, python-pip

Package 20.04 LTS
wheel Needs evaluation
python-pip Needs evaluation
Show less packages

CVE-2025-71176

Medium priority
Needs evaluation

pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges.

1 affected package

pytest

Package 20.04 LTS
pytest Needs evaluation
Show less packages

CVE-2026-24001

Medium priority
Needs evaluation

jsdiff is a JavaScript text differencing implementation. Prior to versions 8.0.3, 5.2.2, 4.0.4, and 3.5.1, attempting to parse a patch whose filename headers contain the line break characters `\r`, `\u2028`, or `\u2029` can cause...

1 affected package

node-diff

Package 20.04 LTS
node-diff Needs evaluation
Show less packages