Search CVE reports


Toggle filters

241 – 250 of 39027 results

Status is adjusted based on your filters.


CVE-2026-63446

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, AppLayerParserSetTransactionInspectId() in src/app-layer-parser.c uses an inverted guard...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57229

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, the SMTP MIME parser in rust/src/mime/smtp.rs does not fully reset state when processing...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57228

Medium priority
Not affected

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.13 until 7.0.17, the SMTP MIME quoted-printable decoder in src/util-decode-mime.c can read one byte...

1 affected package

suricata

Package 26.04 LTS
suricata Not affected
Show less packages

CVE-2026-57227

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.0 until 7.0.17 and 8.0.6, the MQTT parser in rust/src/mqtt/mqtt.rs permits repeated PUBREC or PUBREL...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57225

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, src/datasets-context-json.c assumes that a configured JSON or NDJSON dataset value_key...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57223

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.17 and 8.0.6, the Windows service installation and parameter-update logic in src/win32-service.c...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-91205

Medium priority
Needs evaluation

A flaw was found in cockpit-files. A local unprivileged attacker can exploit a race condition during directory creation with owner assignment. By controlling a writable parent directory, the attacker can replace a newly created...

1 affected package

cockpit-files

Package 26.04 LTS
cockpit-files Needs evaluation
Show less packages

CVE-2026-91203

Medium priority
Needs evaluation

A flaw was found in cockpit-files. This vulnerability allows a local attacker to exploit a timing issue, known as a symlink race condition, during privileged file operations such as changing file ownership or permissions. By...

1 affected package

cockpit-files

Package 26.04 LTS
cockpit-files Needs evaluation
Show less packages

CVE-2026-91202

Medium priority
Needs evaluation

A flaw was found in cockpit-files. A low-privileged local user can exploit this vulnerability by crafting a directory containing a symbolic link (symlink) and then using the privileged "Paste as owner" function. This allows for...

1 affected package

cockpit-files

Package 26.04 LTS
cockpit-files Needs evaluation
Show less packages

CVE-2026-77528

Medium priority
Needs evaluation

Autobahn Python is a WebSocket and WAMP implementation for Python that supports Twisted and asyncio. Prior to 26.7.1, WebSocket endpoints that accept permessage-deflate and rely on maxMessagePayloadSize enforce that limit against...

1 affected package

python-autobahn

Package 26.04 LTS
python-autobahn Needs evaluation
Show less packages