Search CVE reports


Toggle filters

81 – 90 of 31599 results

Status is adjusted based on your filters.


CVE-2026-1200

Medium priority

Not in release

[Unknown description]

1 affected package

liblivemedia

Package 24.04 LTS
liblivemedia Not in release
Show less packages

CVE-2026-1102

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.3 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that could have allowed an unauthenticated user to create a denial of service condition by...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2026-0775

Medium priority
Needs evaluation

npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of npm cli. An attacker must first obtain the ability to...

1 affected package

npm

Package 24.04 LTS
npm Needs evaluation
Show less packages

CVE-2026-0723

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that could have allowed an individual with existing knowledge of a victim's credential ID to...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-71176

Medium priority
Needs evaluation

pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges.

1 affected package

pytest

Package 24.04 LTS
pytest Needs evaluation
Show less packages

CVE-2025-69209

Medium priority
Needs evaluation

ArduinoCore-avr contains the source code and configuration files of the Arduino AVR Boards platform. A vulnerability in versions prior to 1.8.7 allows an attacker to trigger a stack-based buffer overflow when...

1 affected package

arduino-core-avr

Package 24.04 LTS
arduino-core-avr Needs evaluation
Show less packages

CVE-2025-15523

Medium priority
Needs evaluation

MacOS version of Inkscape bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this...

1 affected package

inkscape

Package 24.04 LTS
inkscape Needs evaluation
Show less packages

CVE-2025-15059

Medium priority
Needs evaluation

GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2025-13928

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.6.4, 18.7 before 18.7.2, and 18.8 before 18.8.2 that could have allowed an unauthenticated user to cause a denial of service condition by...

1 affected package

gitlab

Package 24.04 LTS
gitlab Not in release
Show less packages

CVE-2025-13465

Medium priority
Needs evaluation

Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions. An attacker can pass crafted paths which cause Lodash to delete methods from global prototypes. The issue permits...

1 affected package

node-lodash

Package 24.04 LTS
node-lodash Needs evaluation
Show less packages