Search CVE reports


Toggle filters

21 – 30 of 47232 results

Status is adjusted based on your filters.


CVE-2025-69634

High priority
Needs evaluation

Cross Site Request Forgery vulnerability in Dolibarr ERP & CRM v.22.0.9 allows a remote attacker to escalate privileges via the notes field in perms.php

1 affected package

dolibarr

Package 16.04 LTS
dolibarr Needs evaluation
Show less packages

CVE-2025-41117

Medium priority
Needs evaluation

Stack traces in Grafana's Explore Traces view can be rendered as raw HTML, and thus inject malicious JavaScript in the browser. This would require malicious JavaScript to be entered into the stack trace field. Only datasources...

1 affected package

grafana

Package 16.04 LTS
grafana Needs evaluation
Show less packages

CVE-2025-14821

Medium priority
Not affected

[Insecure default configuration leads to local man-in-the-middle attacks on Windows]

1 affected package

libssh

Package 16.04 LTS
libssh Not affected
Show less packages

CVE-2020-37182

High priority
Needs evaluation

Redir 3.3 contains a stack overflow vulnerability in the doproxyconnect() function that allows attackers to crash the application by sending oversized input. Attackers can exploit the sprintf() buffer without proper length...

1 affected package

redir

Package 16.04 LTS
redir Needs evaluation
Show less packages

CVE-2020-37167

Medium priority
Vulnerable

ClamAV ClamBC bytecode interpreter contains a vulnerability in function name processing that allows attackers to manipulate bytecode function names. Attackers can exploit the weak input validation in function name encoding to...

2 affected packages

clamav, libclamunrar

Package 16.04 LTS
clamav Vulnerable
libclamunrar Vulnerable
Show less packages

CVE-2019-25338

Medium priority
Needs evaluation

DokuWiki 2018-04-22b contains a username enumeration vulnerability in its password reset functionality that allows attackers to identify valid user accounts. Attackers can submit different usernames to the password reset endpoint...

1 affected package

dokuwiki

Package 16.04 LTS
dokuwiki Needs evaluation
Show less packages

CVE-2026-26081

Medium priority
Not affected

crash via INITIAL packet for the NEW_TOKEN format

1 affected package

haproxy

Package 16.04 LTS
haproxy Not affected
Show less packages

CVE-2026-26080

Medium priority
Not affected

crash in parsing frame type

1 affected package

haproxy

Package 16.04 LTS
haproxy Not affected
Show less packages

CVE-2025-31648

Low priority
Vulnerable

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable...

1 affected package

intel-microcode

Package 16.04 LTS
intel-microcode Vulnerable
Show less packages

CVE-2026-26079

Medium priority
Needs evaluation

Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13 allows Cascading Style Sheets (CSS) injection, e.g., because comments are mishandled.

1 affected package

roundcube

Package 16.04 LTS
roundcube Needs evaluation
Show less packages