Search CVE reports


Toggle filters

901 – 910 of 56951 results

Status is adjusted based on your filters.


CVE-2026-59189

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In OpenEXRUtil versions 3.3.0 through 3.3.12 and 3.4.0 through 3.4.12, the...

1 affected package

openexr

Package 16.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-59187

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. OpenEXR versions 3.3.0 through 3.3.12 and 3.4.0 through 3.4.13 are vulnerable to a heap out-of-bounds...

1 affected package

openexr

Package 16.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-59186

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions before 3.2.11, 3.3.0 through 3.3.12, and 3.4.0 through 3.4.13, a crafted tiled EXR can...

1 affected package

openexr

Package 16.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-59184

Medium priority
Needs evaluation

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. Versions before 3.2.11, 3.3.0 through 3.3.12, and 3.4.0 through 3.4.13 allow a crafted EXR with...

1 affected package

openexr

Package 16.04 LTS
openexr Needs evaluation
Show less packages

CVE-2026-79772

Medium priority
Needs evaluation

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature...

1 affected package

ruby-nokogiri

Package 16.04 LTS
ruby-nokogiri Needs evaluation
Show less packages

CVE-2026-79771

Medium priority
Needs evaluation

Nokogiri versions before 1.19.3 contain a memory leak in the XSLT Stylesheet transform method when processing Ruby strings containing null bytes. Attackers can exploit this by passing attacker-controlled input with null bytes to...

1 affected package

ruby-nokogiri

Package 16.04 LTS
ruby-nokogiri Needs evaluation
Show less packages

CVE-2026-79770

Medium priority
Needs evaluation

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into...

1 affected package

ruby-nokogiri

Package 16.04 LTS
ruby-nokogiri Needs evaluation
Show less packages

CVE-2026-79769

Medium priority
Needs evaluation

Nokogiri versions before 1.19.4 contain a possible invalid (out-of-bounds) memory read in the protected internal Node#initialize_copy_with_args helper behind Node#dup and #clone, which unwrapped its source argument as an xmlNode...

1 affected package

ruby-nokogiri

Package 16.04 LTS
ruby-nokogiri Needs evaluation
Show less packages

CVE-2026-79676

Medium priority
Needs evaluation

NLTK versions before 3.10.3 contain a path traversal vulnerability in corpus readers that reopen root-derived paths using built-in open() instead of nltk.pathsec.open(), allowing symlinks to escape trusted roots. Attackers who...

1 affected package

nltk

Package 16.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-79675

Medium priority
Needs evaluation

NLTK before 3.10.3 fails to validate JVM options passed through the per-call options parameter in the java() function, allowing attackers to inject dangerous JVM flags. Attackers can supply malicious options like -agentpath,...

1 affected package

nltk

Package 16.04 LTS
nltk Needs evaluation
Show less packages