Search CVE reports


Toggle filters

1201 – 1210 of 37432 results

Status is adjusted based on your filters.


CVE-2026-84965

Medium priority
Needs evaluation

An integer wraparound in an allocation size calculation in the BSON library's JSON parsing code can cause a buffer to be released while a following copy operation still writes through the stale pointer. On builds where sizes are...

1 affected package

mongo-c-driver

Package 26.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-84964

Medium priority
Needs evaluation

A double free in the OpenSSL-based TLS certificate revocation checking path of the MongoDB C Driver can be reached by a TLS endpoint that the client already trusts. During the handshake, specially formed certificate data can cause...

1 affected package

mongo-c-driver

Package 26.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-84963

Medium priority
Needs evaluation

An incorrect numeric conversion in the JSON parsing component of the MongoDB C Driver's BSON library may cause an unusually large text value to be silently shortened, or the corresponding field to be omitted, while the parsing...

1 affected package

mongo-c-driver

Package 26.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-84962

Medium priority
Needs evaluation

An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticated Google Cloud KMS API calls under the authorized user's identity, escalating database-level access into cloud key...

1 affected package

libmongocrypt

Package 26.04 LTS
libmongocrypt Needs evaluation
Show less packages

CVE-2026-84732

Medium priority
Needs evaluation

Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84471

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 26.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84451

Medium priority
Needs evaluation

[Incomplete fix for GHSA-73p7-m7gg-w2jv leaves libheif 1.23.1 vulnerable to an out-of-bounds read]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-84450

Medium priority
Needs evaluation

[Incomplete fix for GHSA-73p7-m7gg-w2jv leaves libheif 1.23.1 vulnerable to an out-of-bounds read]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-84394

Medium priority
Needs evaluation

fast-uri accepts a host that contains an unbalanced or misplaced authority bracket without reporting an error. A host that starts with an opening bracket but does not end with a closing bracket is neither validated as an IP...

1 affected package

node-ajv

Package 26.04 LTS
node-ajv Needs evaluation
Show less packages

CVE-2026-84383

Medium priority
Needs evaluation

[GHSA-g89c-p67h-r497: Heap buffer overflow in `scale_nearest_neighbor()` via duplicate Alpha planes from nested `iden`/`auxl` items]

1 affected package

libheif

Package 26.04 LTS
libheif Needs evaluation
Show less packages