Search CVE reports


Toggle filters

31 – 40 of 37664 results

Status is adjusted based on your filters.


CVE-2026-33549

Medium priority
Needs evaluation

SPIP 4.4.10 through 4.4.12 before 4.4.13 allows unintended privilege assignment (of administrator privileges) during the editing of an author data structure because of STATUT mishandling.

1 affected package

spip

Package 20.04 LTS
spip Needs evaluation
Show less packages

CVE-2025-71276

Medium priority
Needs evaluation

SOGo before 5.12.5 is prone to a XSS vulnerability with events, tasks, and contacts categories.

1 affected package

sogo

Package 20.04 LTS
sogo Needs evaluation
Show less packages

CVE-2019-25586

Medium priority
Needs evaluation

Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From...

1 affected package

deluge

Package 20.04 LTS
deluge Needs evaluation
Show less packages

CVE-2019-25585

Medium priority
Needs evaluation

Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Webseeds field. Attackers can paste a buffer of 5000 bytes into...

1 affected package

deluge

Package 20.04 LTS
deluge Needs evaluation
Show less packages

CVE-2019-25544

Medium priority
Needs evaluation

Pidgin 2.13.0 contains a denial of service vulnerability that allows local attackers to crash the application by providing an excessively long username string during account creation. Attackers can input a buffer of 1000...

1 affected package

pidgin

Package 20.04 LTS
pidgin Needs evaluation
Show less packages

CVE-2026-33236

Medium priority
Needs evaluation

NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. In versions 3.9.3 and prior, the NLTK downloader does not...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-33231

Medium priority
Needs evaluation

NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. In versions 3.9.3 and prior, `nltk.app.wordnet_app` allows...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-33230

Medium priority
Needs evaluation

NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. In versions 3.9.3 and prior, `nltk.app.wordnet_app` contains a...

1 affected package

nltk

Package 20.04 LTS
nltk Needs evaluation
Show less packages

CVE-2026-33228

Medium priority
Needs evaluation

flatted is a circular JSON parser. Prior to version 3.4.2, the parse() function in flatted can use attacker-controlled string values from the parsed JSON as direct array index keys, without validating that they are numeric. Since...

1 affected package

node-flatted

Package 20.04 LTS
node-flatted Needs evaluation
Show less packages

CVE-2026-33210

Medium priority
Needs evaluation

Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the...

1 affected package

ruby-json

Package 20.04 LTS
ruby-json Needs evaluation
Show less packages