Search CVE reports


Toggle filters

381 – 390 of 27411 results

Status is adjusted based on your filters.


CVE-2026-41076

Medium priority
Needs evaluation

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.9 and prior in addition to 6.0.0 through 6.0.2 contain an authentication bypass vulnerability in RT installations that use LDAP/AD for user...

2 affected packages

request-tracker4, request-tracker5

Package 26.04 LTS
request-tracker4 Needs evaluation
request-tracker5 Needs evaluation
Show less packages

CVE-2026-41075

Medium priority
Needs evaluation

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.0 through 5.0.9 and 6.0.0 through 6.0.2 contain an SQL injection vulnerability. An authenticated user can craft input that is incorporated into...

2 affected packages

request-tracker4, request-tracker5

Package 26.04 LTS
request-tracker4 Needs evaluation
request-tracker5 Needs evaluation
Show less packages

CVE-2026-41074

Medium priority
Needs evaluation

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 6.0.0 through 6.0.2 contain a Cross-Site Request Forgery (CSRF) vulnerability. An attacker who can induce a logged-in RT user to visit a malicious...

2 affected packages

request-tracker4, request-tracker5

Package 26.04 LTS
request-tracker4 Needs evaluation
request-tracker5 Needs evaluation
Show less packages

CVE-2026-41073

Medium priority
Needs evaluation

RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10 and 6.0.0 through 6.0.2 contain a spreadsheet (CSV/formula) injection vulnerability. User-controlled data in spreadsheet exports is...

2 affected packages

request-tracker4, request-tracker5

Package 26.04 LTS
request-tracker4 Needs evaluation
request-tracker5 Needs evaluation
Show less packages

CVE-2026-41071

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a crafted HEIF sequence file where the saiz box declares more samples than actually exist in the track's chunk table causes...

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-41069

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a malformed HEIF sequence file can trigger an out-of-bounds read in core sequence parsing logic, causing DoS. A malformed file can have...

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-40864

Medium priority
Needs evaluation

JupyterHub is software that allows users to create a multi-user server for Jupyter notebooks. In versions 4.1.0 through 5.4.4, XSRF protection (updated in 4.1.0) inappropriately treated requests with Sec-Fetch-Mode: no-cors as...

1 affected package

jupyterhub

Package 26.04 LTS
jupyterhub Needs evaluation
Show less packages

CVE-2026-40295

Medium priority

Not in release

Devise is an authentication solution for Rails based on Warden. In versions 5.0.3 and below, when the Timeoutable module is enabled in Devise, the FailureApp#redirect_url method returns request.referrer — the HTTP Referer header,...

1 affected package

ruby-devise

Package 26.04 LTS
ruby-devise Not in release
Show less packages

CVE-2026-39824

Medium priority
Needs evaluation

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

2 affected packages

golang-golang-x-sys, google-guest-agent

Package 26.04 LTS
golang-golang-x-sys Needs evaluation
google-guest-agent Needs evaluation
Show less packages

CVE-2026-48700

Medium priority
Needs evaluation

An issue was discovered in all versions of PCManFM-Qt starting from 1.1.0. When a regular file's path is passed as a URI in an org.freedesktop.FileManager1.ShowFolders D-Bus method call, PCManFM-Qt delegates to a different program...

1 affected package

pcmanfm-qt

Package 26.04 LTS
pcmanfm-qt Needs evaluation
Show less packages