Search CVE reports


Toggle filters

241 – 250 of 45011 results

Status is adjusted based on your filters.


CVE-2026-15554

Medium priority
Needs evaluation

the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port 8009 to bypass CLIENT-CERT...

1 affected package

undertow

Package 20.04 LTS
undertow Needs evaluation
Show less packages

CVE-2026-14180

Medium priority
Needs evaluation

A flaw was found in the ChunkReader component of the Undertow HTTP server, which is used by WildFly and JBoss EAP to handle chunked transfer encoding. The issue occurs because the parser uses a single internal variable to store...

1 affected package

undertow

Package 20.04 LTS
undertow Needs evaluation
Show less packages

CVE-2026-12074

Medium priority
Needs evaluation

[Unknown description]

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-12072

Medium priority
Needs evaluation

[Unknown description]

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-12061

Medium priority
Needs evaluation

[Unknown description]

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2025-35973

Medium priority
Needs evaluation

Improper handling of values for some Intel(R) Processors within Ring 0: Kernel, Hypervisor and Bare Metal OS may allow an escalation of privilege. Authorized adversary with a privileged user combined with a high complexity attack...

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Needs evaluation
Show less packages

CVE-2025-31938

Medium priority
Needs evaluation

Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an information disclosure. Authorized adversary with an authenticated user combined with a...

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Needs evaluation
Show less packages

CVE-2025-31936

Medium priority
Needs evaluation

Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) TDX within SMM may allow an escalation of privilege. SMM adversary with a privileged user combined with a high...

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Needs evaluation
Show less packages

CVE-2026-6791

Medium priority
Needs evaluation

When expanding paths that begin with a tilde (~) followed by a username, the internal parse_tilde function extracts the username to determine the user's home directory. The implementation allocates memory for this username...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages

CVE-2026-6368

Medium priority
Needs evaluation

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages