Search CVE reports


Toggle filters

161 – 170 of 34764 results

Status is adjusted based on your filters.


CVE-2026-45698

Medium priority
Needs evaluation

Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a stack-based buffer overflow exists in the deletedir() function of Netatalk's afpd daemon due to an integer...

1 affected package

netatalk

Package 26.04 LTS
netatalk Needs evaluation
Show less packages

CVE-2026-71491

Medium priority
Needs evaluation

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU...

1 affected package

sqlparse

Package 26.04 LTS
sqlparse Needs evaluation
Show less packages

CVE-2026-68520

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, as_dict_secure() in glances/config.py checks only option names and exposes public_username and credentials embedded in public_api values through...

1 affected package

glances

Package 26.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-68519

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, GlancesActions.run() in glances/actions.py ignores --disable-config-exec for on-alert action commands and invokes secure_popen() with shell operators...

1 affected package

glances

Package 26.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-62982

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. From 4.5.2 until 4.5.6, _sanitize_mustache_dict() in glances/actions.py skips nested list and dictionary strings such as process cmdline values, allowing...

1 affected package

glances

Package 26.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-59903

Medium priority
Needs evaluation

Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, io.netty.handler.codec.http.cors.CorsHandler setVaryHeader replaces application Vary headers such as Authorization or...

1 affected package

netty

Package 26.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-59902

Medium priority
Needs evaluation

Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, io.netty.handler.codec.sctp.SctpMessageCompletionHandler limits incomplete messages and fragment counts but not...

1 affected package

netty

Package 26.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-59894

Medium priority
Needs evaluation

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, sqlparse/filters/output.py fails to escape existing backslashes before quotes in sqlparse.format output_format='python' and output_format='php' and the...

1 affected package

sqlparse

Package 26.04 LTS
sqlparse Needs evaluation
Show less packages

CVE-2026-59893

Medium priority
Needs evaluation

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, SQL_REGEX in sqlparse/keywords.py and the per-position loop in sqlparse/lexer.py repeatedly scan unmatched dollar-quoted literal and multiline-comment...

1 affected package

sqlparse

Package 26.04 LTS
sqlparse Needs evaluation
Show less packages

CVE-2026-54284

Medium priority
Needs evaluation

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, TokenList construction and string conversion in sqlparse/sql.py repeatedly flatten nested token subtrees constructed by group_parenthesis and group_case,...

1 affected package

sqlparse

Package 26.04 LTS
sqlparse Needs evaluation
Show less packages