Search CVE reports


Toggle filters

11 – 20 of 37374 results

Status is adjusted based on your filters.


CVE-2026-28419

Medium priority
Needs evaluation

Vim is an open source, command line text editor. Prior to version 9.2.0075, a heap-based buffer underflow exists in Vim's Emacs-style tags file parsing logic. When processing a malformed tags file where a delimiter appears at the...

1 affected package

vim

Package 20.04 LTS
vim Needs evaluation
Show less packages

CVE-2026-28418

Medium priority
Needs evaluation

Vim is an open source, command line text editor. Prior to version 9.2.0074, a heap-based buffer overflow out-of-bounds read exists in Vim's Emacs-style tags file parsing logic. When processing a malformed tags file, Vim can...

1 affected package

vim

Package 20.04 LTS
vim Needs evaluation
Show less packages

CVE-2026-28417

Medium priority
Needs evaluation

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using...

1 affected package

vim

Package 20.04 LTS
vim Needs evaluation
Show less packages

CVE-2026-28351

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to version 6.7.4, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the content stream using...

2 affected packages

pypdf, pypdf2

Package 20.04 LTS
pypdf
pypdf2 Needs evaluation
Show less packages

CVE-2026-27970

Medium priority
Needs evaluation

(Angular is a development platform for building mobile and desktop web ...)

1 affected package

angular.js

Package 20.04 LTS
angular.js Needs evaluation
Show less packages

CVE-2026-27824

Medium priority
Needs evaluation

calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.4.0, the calibre Content Server's brute-force protection mechanism uses a ban key derived from both...

1 affected package

calibre

Package 20.04 LTS
calibre Needs evaluation
Show less packages

CVE-2026-27810

Medium priority
Needs evaluation

calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.4.0, an HTTP Response Header Injection vulnerability in the calibre Content Server allows any authenticated...

1 affected package

calibre

Package 20.04 LTS
calibre Needs evaluation
Show less packages

CVE-2026-27631

Medium priority
Needs evaluation

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an uncaught exception was found in Exiv2. The vulnerability is in the preview...

1 affected package

exiv2

Package 20.04 LTS
exiv2 Needs evaluation
Show less packages

CVE-2026-27596

Medium priority
Needs evaluation

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found in Exiv2. The vulnerability is in the preview...

1 affected package

exiv2

Package 20.04 LTS
exiv2 Needs evaluation
Show less packages

CVE-2026-25884

Medium priority
Needs evaluation

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found. The vulnerability is in the CRW image parser....

1 affected package

exiv2

Package 20.04 LTS
exiv2 Needs evaluation
Show less packages