Search CVE reports


Toggle filters

211 – 220 of 37287 results

Status is adjusted based on your filters.


CVE-2026-33250

Medium priority
Needs evaluation

Freeciv21 is a free open source, turn-based, empire-building strategy game. Versions prior to 3.1.1 crash with a stack overflow when receiving specially-crafted packets. A remote attacker can use this to take down any public...

1 affected package

freeciv

Package 22.04 LTS
freeciv Needs evaluation
Show less packages

CVE-2026-33215

Medium priority

Not in release

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides an MQTT client interface. Prior to versions 2.11.15 and 2.12.5, Sessions and Messages can by hijacked via...

1 affected package

nats-server

Package 22.04 LTS
nats-server Not in release
Show less packages

CVE-2026-33167

Medium priority
Needs evaluation

Action Pack is a Rubygem for building web applications on the Rails framework. In versions on the 8.1 branch prior to 8.1.2.1, the debug exceptions page does not properly escape exception messages. A carefully crafted exception...

1 affected package

rails

Package 22.04 LTS
rails Needs evaluation
Show less packages

CVE-2026-33151

Medium priority
Needs evaluation

Socket.IO is an open source, real-time, bidirectional, event-based, communication framework. Prior to versions 3.3.5, 3.4.4, and 4.2.6, a specially crafted Socket.IO packet can make the server wait for a large number of binary...

1 affected package

node-socket.io-parser

Package 22.04 LTS
node-socket.io-parser Needs evaluation
Show less packages

CVE-2026-33069

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a cascading out-of-bounds heap read in pjsip_multipart_parse(). After boundary string matching, curptr is advanced past...

1 affected package

pjproject

Package 22.04 LTS
pjproject Not in release
Show less packages

CVE-2026-33036

Medium priority

Not in release

fast-xml-parser allows users to process XML from JS object without C/C++ based libraries or callbacks. Versions 4.0.0-beta.3 through 5.5.5 contain a bypass vulnerability where numeric character references (&#NNN;, &#xHH;) and...

1 affected package

node-webfont

Package 22.04 LTS
node-webfont Not in release
Show less packages

CVE-2026-32945

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a Heap-based Buffer Overflowvulnerability in the DNS parser's name length handler. Thisimpacts applications using PJSIP's...

1 affected package

pjproject

Package 22.04 LTS
pjproject Not in release
Show less packages

CVE-2026-32942

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap use-after-free vulnerability in the ICE session that occurs when there are race conditions between...

1 affected package

pjproject

Package 22.04 LTS
pjproject Not in release
Show less packages

CVE-2026-32854

Medium priority
Needs evaluation

LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of...

6 affected packages

libvncserver, vino, x11vnc, veyon, italc, tightvnc

Package 22.04 LTS
libvncserver Needs evaluation
vino Needs evaluation
x11vnc Needs evaluation
veyon Needs evaluation
italc Not in release
tightvnc Needs evaluation
Show less packages

CVE-2026-32853

Medium priority
Needs evaluation

LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read vulnerability in the UltraZip encoding handler that allows a malicious VNC server to cause information disclosure or application...

6 affected packages

veyon, libvncserver, vino, x11vnc, italc, tightvnc

Package 22.04 LTS
veyon Needs evaluation
libvncserver Needs evaluation
vino Needs evaluation
x11vnc Needs evaluation
italc Not in release
tightvnc Needs evaluation
Show less packages