Search CVE reports


Toggle filters

1 – 10 of 34325 results

Status is adjusted based on your filters.


CVE-2025-9615

Medium priority
Needs evaluation

[avoid that non-admin user using other users' certificates]

1 affected package

network-manager

Package 22.04 LTS
network-manager Needs evaluation
Show less packages

CVE-2025-67899

Medium priority
Needs evaluation

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

1 affected package

uriparser

Package 22.04 LTS
uriparser Needs evaluation
Show less packages

CVE-2025-67897

Medium priority
Needs evaluation

In Sequoia before 2.1.0, aes_key_unwrap panics if passed a ciphertext that is too short. A remote attacker can take advantage of this issue to crash an application by sending a victim an encrypted message with a crafted PKESK or...

1 affected package

rust-sequoia-openpgp

Package 22.04 LTS
rust-sequoia-openpgp Needs evaluation
Show less packages

CVE-2025-67896

High priority
Not affected

Exim before 4.99.1 allows remote heap corruption that will be further described on 2025-12-18.

1 affected package

exim4

Package 22.04 LTS
exim4 Not affected
Show less packages

CVE-2025-67749

Medium priority
Needs evaluation

PCSX2 is a free and open-source PlayStation 2 (PS2) emulator. In versions 2.5.377 and below, an unchecked offset and size used in a memcpy operation inside PCSX2's CDVD SCMD 0x91 and SCMD 0x8F handlers allow a specially crafted...

1 affected package

pcsx2

Package 22.04 LTS
pcsx2 Needs evaluation
Show less packages

CVE-2025-67726

Medium priority
Needs evaluation

Tornado is a Python web framework and asynchronous networking library. Versions 6.5.2 and below use an inefficient algorithm when parsing parameters for HTTP header values, potentially causing a DoS. The _parseparam function in...

1 affected package

python-tornado

Package 22.04 LTS
python-tornado Needs evaluation
Show less packages

CVE-2025-67725

Medium priority
Needs evaluation

Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, a single maliciously crafted HTTP request can block the server's event loop for an extended period, caused by the HTTPHeaders.add...

1 affected package

python-tornado

Package 22.04 LTS
python-tornado Needs evaluation
Show less packages

CVE-2025-67724

Medium priority
Needs evaluation

Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, the supplied reason phrase is used unescaped in HTTP headers (where it could be used for header injection) or in HTML in the...

1 affected package

python-tornado

Package 22.04 LTS
python-tornado Needs evaluation
Show less packages

CVE-2025-55816

Medium priority
Needs evaluation

(HotelDruid v3.0.7 and before is vulnerable to Cross Site Scripting (XS ...)

1 affected package

hoteldruid

Package 22.04 LTS
hoteldruid Needs evaluation
Show less packages

CVE-2025-4690

Medium priority
Needs evaluation

(A regular expression used by AngularJS' linky https://docs.angularjs.o ...)

1 affected package

angular.js

Package 22.04 LTS
angular.js Needs evaluation
Show less packages