Search CVE reports


Toggle filters

1 – 10 of 30188 results

Status is adjusted based on your filters.


CVE-2025-66628

Medium priority
Needs evaluation

ImageMagick is a software suite to create, edit, compose, or convert bitmap images. In versions 7.1.2-9 and prior, the TIM (PSX TIM) image parser contains a critical integer overflow vulnerability in its ReadTIMImage function...

1 affected package

imagemagick

Package 24.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2025-66004

Medium priority
Needs evaluation

A Path Traversal vulnerability in usbmuxd allows local users to escalate to the service user.This issue affects usbmuxd: before 3ded00c9985a5108cfc7591a309f9a23d57a8cba.

1 affected package

usbmuxd

Package 24.04 LTS
usbmuxd Needs evaluation
Show less packages

CVE-2025-66003

Medium priority
Needs evaluation

[Unknown description]

1 affected package

smb4k

Package 24.04 LTS
smb4k Needs evaluation
Show less packages

CVE-2025-66002

Medium priority
Needs evaluation

[Unknown description]

1 affected package

smb4k

Package 24.04 LTS
smb4k Needs evaluation
Show less packages

CVE-2025-65807

Medium priority
Needs evaluation

An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.

1 affected package

rust-sd

Package 24.04 LTS
rust-sd Needs evaluation
Show less packages

CVE-2025-65803

Medium priority
Needs evaluation

An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.

1 affected package

freeimage

Package 24.04 LTS
freeimage Needs evaluation
Show less packages

CVE-2024-58281

Medium priority

Not in release

Dotclear 2.29 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the media upload functionality. Attackers can exploit the file upload process by crafting a PHP...

1 affected package

dotclear

Package 24.04 LTS
dotclear Not in release
Show less packages

CVE-2025-67499

Medium priority
Needs evaluation

The CNI portmap plugin allows containers to emulate opening a host port, forwarding that traffic to the container. Versions 1.6.0 through 1.8.0 inadvertently forward all traffic with the same destination port as the host port when...

2 affected packages

cni, golang-github-containernetworking-plugins

Package 24.04 LTS
cni Not in release
golang-github-containernetworking-plugins Needs evaluation
Show less packages

CVE-2025-14087

Medium priority
Needs evaluation

Buffer underflow on Glib through glib/gvariant via bytestring_parse() or string_parse() leads to OOB Write

1 affected package

glib2.0

Package 24.04 LTS
glib2.0 Needs evaluation
Show less packages

CVE-2025-66568

Medium priority
Needs evaluation

The ruby-saml library implements the client side of an SAML authorization. Versions up to and including 1.12.4, are vulnerable to authentication bypass through the libxml2 canonicalization process used by Nokogiri for document...

1 affected package

ruby-saml

Package 24.04 LTS
ruby-saml Needs evaluation
Show less packages