Search CVE reports


Toggle filters

1311 – 1320 of 56918 results

Status is adjusted based on your filters.


CVE-2026-15806

Medium priority
Needs evaluation

The HTTPPasswordMgr class in the urllib.request module, along with its subclasses HTTPPasswordMgrWithDefaultRealm and HTTPPasswordMgrWithPriorAuth, did not take the URL scheme into account when matching stored credentials against...

11 affected packages

python2.7, python3.4, python3.5, python3.6, python3.7...

Package 16.04 LTS
python2.7 Needs evaluation
python3.4
python3.5 Needs evaluation
python3.6
python3.7
python3.8
python3.9
python3.10
python3.11
python3.12
python3.14
Show all 11 packages Show less packages

CVE-2026-75032

Medium priority
Needs evaluation

A flaw was found in BlueZ. Insufficient validation of packet length fields in GetFolderItems responses within the Audio/Video Remote Control Profile (AVRCP) implementation allows a malicious Bluetooth device within range to cause...

1 affected package

bluez

Package 16.04 LTS
bluez Needs evaluation
Show less packages

CVE-2026-66046

Medium priority
Vulnerable

Expat through 2.8.3 contains a denial of service vulnerability caused by quadratic algorithmic complexity in the storeAtts() function in xmlparse.c, where processing N specified attributes with non-normalized values triggers an...

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 16.04 LTS
expat Vulnerable
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Needs evaluation
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm Needs evaluation
cableswig Needs evaluation
coin3 Needs evaluation
matanza Needs evaluation
tdom Needs evaluation
vtk Needs evaluation
smart Needs evaluation
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-17084

Medium priority
Needs evaluation

The "stringprep" module didn't process characters from RFC 3454 tables B.2 or B.3 correctly: the latest Unicode codepoint attributes were used instead of the specified Unicode 3.2.0. This behavior would cause mismatches when...

11 affected packages

python2.7, python3.4, python3.5, python3.6, python3.7...

Package 16.04 LTS
python2.7 Needs evaluation
python3.4
python3.5 Needs evaluation
python3.6
python3.7
python3.8
python3.9
python3.10
python3.11
python3.12
python3.14
Show all 11 packages Show less packages

CVE-2026-59781

Medium priority
Needs evaluation

When Zabbix Agent was installed on Windows into a custom installation directory, the installer did not verify whether the selected directory had secure access permissions. If the target directory allowed unauthorized users to...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23938

Medium priority
Needs evaluation

An authenticated administrator is able to crash Zabbix server or proxy by creating specifically crafted preprocessing/script item JavaScript scripts, leading to potential denial of service.

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23937

Medium priority
Needs evaluation

The Zabbix API host.get action can be exploited by authenticated users to extract a host's PSK key leading to potential loss of data integrity.

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23935

Medium priority
Needs evaluation

A Zabbix administrator is able to read out of bounds memory by utilizing a flaw in script item/preprocessing (JavaScript) HttpRequest logic, leading to potential confidentiality loss.

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23934

Medium priority
Needs evaluation

An authenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend validate.api.exists action, leading to potential denial of service.

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23933

Medium priority
Needs evaluation

In Zabbix 7.4 the cryptographic key used for signing Frontend sessions has been erroneously written to the database seed. Currently the only known exploitation scenario is for deployments that utilize both - SAML authentication...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages