Search CVE reports


Toggle filters

311 – 320 of 35526 results

Status is adjusted based on your filters.


CVE-2025-67268

Medium priority
Fixed

gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to...

1 affected package

gpsd

Package 22.04 LTS
gpsd Fixed
Show less packages

CVE-2025-15438

Medium priority
Needs evaluation

A vulnerability was determined in PluXml up to 5.8.22. Affected is the function FileCookieJar::__destruct of the file core/admin/medias.php of the component Media Management Module. Executing manipulation of the argument File can...

1 affected package

pluxml

Package 22.04 LTS
pluxml Needs evaluation
Show less packages

CVE-2025-15412

Medium priority
Needs evaluation

A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such...

1 affected package

wabt

Package 22.04 LTS
wabt Needs evaluation
Show less packages

CVE-2025-15411

Medium priority
Needs evaluation

A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. This manipulation...

1 affected package

wabt

Package 22.04 LTS
wabt Needs evaluation
Show less packages

CVE-2026-21428

Medium priority
Needs evaluation

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.30.0, the ``write_headers`` function does not check for CR & LF characters in user supplied headers, allowing untrusted header...

1 affected package

cpp-httplib

Package 22.04 LTS
cpp-httplib Needs evaluation
Show less packages

CVE-2025-69412

Medium priority
Needs evaluation

KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in...

2 affected packages

kf5-messagelib, messagelib

Package 22.04 LTS
kf5-messagelib Needs evaluation
messagelib Not in release
Show less packages

CVE-2025-34468

Medium priority
Needs evaluation

libcoap versions up to and including 4.3.5, prior to commit 30db3ea, contain a stack-based buffer overflow in address resolution when attacker-controlled hostname data is copied into a fixed 256-byte stack buffer without proper...

3 affected packages

libcoap, libcoap2, libcoap3

Package 22.04 LTS
libcoap Not in release
libcoap2 Needs evaluation
libcoap3 Needs evaluation
Show less packages

CVE-2025-15280

Medium priority
Vulnerable

FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FontForge. User interaction is required to exploit...

1 affected package

fontforge

Package 22.04 LTS
fontforge Vulnerable
Show less packages

CVE-2025-15279

Medium priority
Vulnerable

FontForge GUtils BMP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FontForge. User interaction is...

1 affected package

fontforge

Package 22.04 LTS
fontforge Vulnerable
Show less packages

CVE-2025-15278

Medium priority
Vulnerable

FontForge GUtils XBM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FontForge. User interaction is required to...

1 affected package

fontforge

Package 22.04 LTS
fontforge Vulnerable
Show less packages