Search CVE reports


Toggle filters

1 – 10 of 36128 results

Status is adjusted based on your filters.


CVE-2026-17615

Medium priority
Needs evaluation

A flaw was found in RESTEasy's SourceProvider. This vulnerability allows an unauthenticated attacker to perform an unauthenticated remote file read. By sending a specially crafted XML body with a DOCTYPE declaration...

2 affected packages

resteasy, resteasy3.0

Package 26.04 LTS
resteasy Needs evaluation
resteasy3.0 Needs evaluation
Show less packages

CVE-2026-84642

Medium priority
Needs evaluation

(The values of the mail.allowed_attachment_hostnames advanced config se ...)

1 affected package

thunderbird

Package 26.04 LTS
thunderbird Needs evaluation
Show less packages

CVE-2026-84641

Medium priority
Needs evaluation

(A malicious IMAP server can trigger use-after-free and heap-memory dis ...)

1 affected package

thunderbird

Package 26.04 LTS
thunderbird Needs evaluation
Show less packages

CVE-2026-84640

Medium priority
Needs evaluation

(A maliciously constructed mail header could lead to a one byte read pa ...)

1 affected package

thunderbird

Package 26.04 LTS
thunderbird Needs evaluation
Show less packages

CVE-2026-84639

Medium priority
Needs evaluation

(Triggering an error condition in certain MIME bodies would cause unini ...)

1 affected package

thunderbird

Package 26.04 LTS
thunderbird Needs evaluation
Show less packages

CVE-2026-84637

Medium priority
Needs evaluation

(Malicious calendar invitations could use file URI attachments to launc ...)

1 affected package

thunderbird

Package 26.04 LTS
thunderbird Needs evaluation
Show less packages

CVE-2026-84375

Medium priority
Needs evaluation

(js-yaml is a JavaScript YAML parser and dumper. From 3.0.0 until 3.15. ...)

1 affected package

node-js-yaml

Package 26.04 LTS
node-js-yaml Needs evaluation
Show less packages

CVE-2026-84372

Medium priority
Needs evaluation

(Predis is a flexible and feature-complete Redis and Valkey client for ...)

1 affected package

php-nrk-predis

Package 26.04 LTS
php-nrk-predis Needs evaluation
Show less packages

CVE-2026-84366

Medium priority
Needs evaluation

(Scrapy is a high-level web crawling and scraping framework for Python. ...)

11 affected packages

python2.7, python3.4, python3.5, python3.6, python3.7...

Package 26.04 LTS
python2.7 Not in release
python3.4 Not in release
python3.5 Not in release
python3.6 Not in release
python3.7 Not in release
python3.8 Not in release
python3.9 Not in release
python3.10 Not in release
python3.11 Not in release
python3.12 Not in release
python3.14 Needs evaluation
Show all 11 packages Show less packages

CVE-2026-84361

Medium priority
Needs evaluation

(Composer is a dependency Manager for the PHP language. From 1.0 until ...)

7 affected packages

php5, php7.0, php7.2, php7.4, php8.1...

Package 26.04 LTS
php5 Not in release
php7.0 Not in release
php7.2 Not in release
php7.4 Not in release
php8.1 Not in release
php8.3 Not in release
php8.5 Needs evaluation
Show all 7 packages Show less packages