Search CVE reports


Toggle filters

81 – 90 of 29379 results

Status is adjusted based on your filters.


CVE-2025-55752

Medium priority
Needs evaluation

Relative Path Traversal vulnerability in Apache Tomcat. The fix for bug 60013 introduced a regression where the rewritten URL was normalized before it was decoded. This introduced the possibility that, for rewrite...

3 affected packages

tomcat10, tomcat11, tomcat9

Package 24.04 LTS
tomcat10 Needs evaluation
tomcat11 Not in release
tomcat9 Not affected
Show less packages

CVE-2025-62291

Medium priority
Fixed

Buffer Overflow When Handling EAP-MSCHAPv2 Failure Requests

1 affected package

strongswan

Package 24.04 LTS
strongswan Fixed
Show less packages

CVE-2025-6601

Medium priority

Not in release

GitLab has remediated an issue in GitLab EE affecting all versions from 18.4 before 18.4.3, and 18.5 before 18.5.1 that under certain conditions could have allowed authenticated users to gain unauthorized project access by...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-11989

Medium priority

Not in release

GitLab has remediated an issue in GitLab EE affecting all versions from 17.6.0 before 18.3.5, 18.4 before 18.4.3, and 18.5 before 18.5.1 that could have allowed an authenticated attacker to execute unauthorized quick actions by...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-11974

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.7 before 18.3.5, 18.4 before 18.4.3, and 18.5 before 18.5.1 that could have allowed an unauthenticated attacker to create a denial of service condition...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-11971

Medium priority

Not in release

GitLab has remediated an issue in GitLab EE affecting all versions from 10.6 before 18.3.5, 18.4 before 18.4.3, and 18.5 before 18.5.1 that could have allowed an authenticated attacker to trigger unauthorized pipeline executions...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-11447

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.0 before 18.3.5, 18.4 before 18.4.3, and 18.5 before 18.5.1 that could have allowed an unauthenticated attacker to cause a denial of service condition...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-10497

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.3.5, 18.4 before 18.4.3, and 18.5 before 18.5.1 that could have allowed an unauthenticated attacker to cause a denial of service condition...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-58149

Medium priority
Needs evaluation

[Unknown description]

1 affected package

xen

Package 24.04 LTS
xen Needs evaluation
Show less packages

CVE-2025-12207

Medium priority
Needs evaluation

A vulnerability has been found in Kamailio 5.5. This affects the function yyerror_at of the file src/core/cfg.y of the component Grammar Rule Handler. Such manipulation leads to null pointer dereference. The attack needs to be...

1 affected package

kamailio

Package 24.04 LTS
kamailio Needs evaluation
Show less packages