Search CVE reports


Toggle filters

61 – 70 of 47927 results

Status is adjusted based on your filters.


CVE-2026-93602

Medium priority
Needs evaluation

rustls-webpki versions before 0.103.10 and 0.104.0-alpha.5 contain faulty CRL authority-matching logic that compares only the first distributionPoint against each CRL's IssuingDistributionPoint, ignoring...

1 affected package

rust-rustls-webpki

Package 24.04 LTS
rust-rustls-webpki Needs evaluation
Show less packages

CVE-2026-93601

Medium priority
Needs evaluation

rustls-webpki (the Rust webpki fork used by rustls) versions >= 0.101.0 and prior to 0.103.12 and 0.104.0-alpha.6 incorrectly accepted permitted-subtree DNS name constraints for certificates asserting a wildcard name. For example,...

1 affected package

rust-rustls-webpki

Package 24.04 LTS
rust-rustls-webpki Needs evaluation
Show less packages

CVE-2026-93600

Medium priority
Needs evaluation

rustls-webpki (rustls/webpki) versions 0.101.0 through 0.103.11 and 0.104.0-alpha releases before 0.104.0-alpha.6 ignore X.509 name constraints that apply to URI names, causing such constraints to be accepted rather than enforced....

1 affected package

rust-rustls-webpki

Package 24.04 LTS
rust-rustls-webpki Needs evaluation
Show less packages

CVE-2026-93599

Medium priority
Needs evaluation

rustls-webpki through 0.103.12 (and 0.104.0-alpha releases before 0.104.0-alpha.7) contains a reachable panic in bit_string_flags() in src/der.rs. The input guard fails to reject a named-bit BIT STRING whose content is exactly...

1 affected package

rust-rustls-webpki

Package 24.04 LTS
rust-rustls-webpki Needs evaluation
Show less packages

CVE-2026-93590

Medium priority
Needs evaluation

ImageMagick before 7.1.2-31 contains a policy bypass vulnerability in the UHDR encoder that fails to perform policy checks during buffer allocation for image pixels. Attackers can bypass resource policies by processing specially...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-93589

Medium priority
Needs evaluation

ImageMagick before 7.1.2-31 and 6.9.13-56 contains a division-by-zero flaw in the FLIF encoder. An incorrect value for ticks per second in the image being encoded causes a divide-by-zero and crashes the encoder, resulting in a...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-93588

Medium priority
Needs evaluation

ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a NULL pointer dereference in the PNM coder. When the coder reaches a memory (resource) limit at a specific point during processing, the failed allocation is not handled...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-93587

Medium priority
Needs evaluation

ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a policy bypass in the PCD (and, per the upstream advisory, CUBE and HALD) coder: when a specific command line option is supplied, the decoder does not check a configured...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-93586

Medium priority
Needs evaluation

ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a use-after-free vulnerability in the ImagesToBlob method, caused by a pointer that is not updated correctly. Exploitation may result in a limited availability...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-93579

Medium priority
Needs evaluation

A flaw was found in Netty's HTTP/2 stack. This vulnerability allows a remote attacker to inject prohibited characters, such as NUL, Line Feed, and Carriage Return, into HTTP/2 header field values due to insufficient validation....

1 affected package

netty

Package 24.04 LTS
netty Needs evaluation
Show less packages