Search CVE reports


Toggle filters

501 – 510 of 34287 results

Status is adjusted based on your filters.


CVE-2026-33905

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the -sample operation has an out of bounds read when an specific offset is set through...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-33902

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a stack overflow vulnerability in ImageMagick's FX expression parser allows an attacker...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-33901

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-33900

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the viff encoder contains an integer truncation/wraparound issue on 32-bit builds that...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-33899

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-189 and 6.9.13-44, when `Magick` parses an XML file it is possible that a single zero byte is written out of...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-31048

Medium priority
Needs evaluation

An issue in the <code>pickle</code> protocol of Pyro v3.x allows attackers to execute arbitrary code via supplying a crafted pickled string message.

3 affected packages

pyro, pyro4, pyro5

Package 24.04 LTS
pyro Not in release
pyro4 Needs evaluation
pyro5 Needs evaluation
Show less packages

CVE-2026-6100

Medium priority
Needs evaluation

Use-after-free (UAF) was possible in the `lzma.LZMADecompressor`, `bz2.BZ2Decompressor`, and `gzip.GzipFile` when a memory allocation fails with a `MemoryError` and the decompression instance is re-used. This scenario can be...

13 affected packages

pypy3, python2.7, python3.4, python3.5, python3.6...

Package 24.04 LTS
pypy3 Needs evaluation
python2.7 Not in release
python3.4 Not in release
python3.5 Not in release
python3.6 Not in release
python3.7 Not in release
python3.8 Not in release
python3.9 Not in release
python3.10 Not in release
python3.11 Not in release
python3.12 Needs evaluation
python3.13 Not in release
python3.14 Not in release
Show all 13 packages Show less packages

CVE-2026-32316

Medium priority
Needs evaluation

jq is a command-line JSON processor. An integer overflow vulnerability exists through version 1.8.1 within the jvp_string_append() and jvp_string_copy_replace_bad functions, where concatenating strings with a combined length...

1 affected package

jq

Package 24.04 LTS
jq Needs evaluation
Show less packages

CVE-2026-6192

Medium priority
Needs evaluation

A vulnerability was identified in uclouvain openjpeg up to 2.5.4. This impacts the function opj_pi_initialise_encode in the library src/lib/openjp2/pi.c. The manipulation leads to integer overflow. The attack must be carried out...

7 affected packages

openjpeg2, insighttoolkit4, qtwebengine-opensource-src, blender, texmaker...

Package 24.04 LTS
openjpeg2 Needs evaluation
insighttoolkit4 Not in release
qtwebengine-opensource-src Needs evaluation
blender Needs evaluation
texmaker Needs evaluation
ghostscript Not affected
openjpeg Not in release
Show all 7 packages Show less packages

CVE-2026-33555

Medium priority
Needs evaluation

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can...

1 affected package

haproxy

Package 24.04 LTS
haproxy Needs evaluation
Show less packages