Search CVE reports


Toggle filters

1 – 10 of 53373 results

Status is adjusted based on your filters.


CVE-2026-63650

Medium priority
Needs evaluation

OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the configured X.509 username identity lookup field

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-63649

Medium priority
Needs evaluation

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via...

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-49282

Medium priority
Needs evaluation

Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's public `cs_insn_name()` API forwards caller-supplied instruction IDs directly to the selected architecture backend. Most backends validate the ID...

1 affected package

capstone

Package 16.04 LTS
capstone Needs evaluation
Show less packages

CVE-2026-49263

Medium priority
Needs evaluation

Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend accepts attacker-controlled raw WASM instruction bytes through the public `cs_disasm()` and `cs_disasm_iter()` APIs. For a large...

1 affected package

capstone

Package 16.04 LTS
capstone Needs evaluation
Show less packages

CVE-2026-19879

Medium priority
Needs evaluation

A flaw was found in Undertow, an HTTP server, within its HTTP response header writing path. The `writeString()` method performs a silent narrowing cast from 16-bit Unicode characters to 8-bit bytes when writing HTTP response...

1 affected package

undertow

Package 16.04 LTS
undertow Needs evaluation
Show less packages

CVE-2026-19720

Medium priority
Needs evaluation

[Unknown description]

1 affected package

inetutils

Package 16.04 LTS
inetutils Needs evaluation
Show less packages

CVE-2026-19617

Medium priority
Needs evaluation

A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration...

1 affected package

lvm2

Package 16.04 LTS
lvm2 Needs evaluation
Show less packages

CVE-2026-18697

Medium priority
Needs evaluation

(An issue in MongoDB Server's aggregation framework could allow an unau ...)

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages

CVE-2026-18696

Medium priority
Needs evaluation

(An issue in MongoDB Server's applyOps command could allow an authentic ...)

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages

CVE-2026-18695

Medium priority
Needs evaluation

(An issue in MongoDB Server's handling of certain query predicates agai ...)

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages