Search CVE reports
1301 – 1310 of 46511 results
async-tar is a tar archive reading/writing library for async Rust. Prior to version 0.6.1, async-tar mis-applies a buffered PAX size extension to an intermediary extension header (a GNU longname L, a GNU longlink K, or a PAX x/g...
1 affected package
rust-async-tar
| Package | 24.04 LTS |
|---|---|
| rust-async-tar | Needs evaluation |
A flaw was found in RESTEasy's SourceProvider. This vulnerability allows an unauthenticated attacker to perform an unauthenticated remote file read. By sending a specially crafted XML body with a DOCTYPE declaration...
2 affected packages
resteasy, resteasy3.0
| Package | 24.04 LTS |
|---|---|
| resteasy | Needs evaluation |
| resteasy3.0 | Needs evaluation |
(The values of the mail.allowed_attachment_hostnames advanced config se ...)
1 affected package
thunderbird
| Package | 24.04 LTS |
|---|---|
| thunderbird | Needs evaluation |
(A malicious IMAP server can trigger use-after-free and heap-memory dis ...)
1 affected package
thunderbird
| Package | 24.04 LTS |
|---|---|
| thunderbird | Needs evaluation |
(A maliciously constructed mail header could lead to a one byte read pa ...)
1 affected package
thunderbird
| Package | 24.04 LTS |
|---|---|
| thunderbird | Needs evaluation |
(Triggering an error condition in certain MIME bodies would cause unini ...)
1 affected package
thunderbird
| Package | 24.04 LTS |
|---|---|
| thunderbird | Needs evaluation |
(Malicious calendar invitations could use file URI attachments to launc ...)
1 affected package
thunderbird
| Package | 24.04 LTS |
|---|---|
| thunderbird | Needs evaluation |
(js-yaml is a JavaScript YAML parser and dumper. From 3.0.0 until 3.15. ...)
1 affected package
node-js-yaml
| Package | 24.04 LTS |
|---|---|
| node-js-yaml | Needs evaluation |
(Predis is a flexible and feature-complete Redis and Valkey client for ...)
1 affected package
php-nrk-predis
| Package | 24.04 LTS |
|---|---|
| php-nrk-predis | Needs evaluation |
(Scrapy is a high-level web crawling and scraping framework for Python. ...)
11 affected packages
python2.7, python3.4, python3.5, python3.6, python3.7...
| Package | 24.04 LTS |
|---|---|
| python2.7 | Not in release |
| python3.4 | Not in release |
| python3.5 | Not in release |
| python3.6 | Not in release |
| python3.7 | Not in release |
| python3.8 | Not in release |
| python3.9 | Not in release |
| python3.10 | Not in release |
| python3.11 | Not in release |
| python3.12 | Needs evaluation |
| python3.14 | Not in release |