Search CVE reports


Toggle filters

211 – 220 of 47396 results

Status is adjusted based on your filters.


CVE-2025-12474

Low priority
Needs evaluation

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An...

1 affected package

graphicsmagick

Package 16.04 LTS
graphicsmagick Needs evaluation
Show less packages

CVE-2025-12073

Medium priority
Ignored

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to...

2 affected packages

gitlab, gitlab-agent

Package 16.04 LTS
gitlab Ignored
gitlab-agent
Show less packages

CVE-2026-26007

Medium priority
Needs evaluation

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or...

1 affected package

python-cryptography

Package 16.04 LTS
python-cryptography Needs evaluation
Show less packages

CVE-2025-54514

Medium priority
Needs evaluation

Improper isolation of shared resources on a system on a chip by a malicious local attacker with high privileges could potentially lead to a partial loss of integrity.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-52536

Medium priority
Needs evaluation

Improper Prevention of Lock Bit Modification in SEV firmware could allow a privileged attacker to downgrade firmware potentially resulting in a loss of integrity.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-52534

Medium priority
Needs evaluation

Improper bound check within AMD CPU microcode can allow a malicious guest to write to host memory, potentially resulting in loss of integrity.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-48517

Medium priority
Needs evaluation

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial...

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-48514

Medium priority
Needs evaluation

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2026-25613

Medium priority
Needs evaluation

An authorized user may disable the MongoDB server by issuing a query against a collection that contains an invalid compound wildcard index.

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages

CVE-2026-25610

Medium priority
Needs evaluation

An authorized user may trigger a server crash by running a $geoNear pipeline with certain invalid index hints.

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages