Search CVE reports


Toggle filters

1 – 10 of 149 results


CVE-2026-11527

Medium priority

Some fixes available 4 of 7

Config::IniFiles versions before 3.001000 for Perl allow OS command injection and file overwrite via a 2-arg open() of the -file argument in _make_filehandle. Config::IniFiles::_make_filehandle opens a filename argument with...

1 affected package

libconfig-inifiles-perl

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libconfig-inifiles-perl Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-37555

Medium priority
Vulnerable

An issue was discovered in libsndfile 1.2.2 IMA ADPCM codec. The AIFF code path (line 241) was fixed with (sf_count_t) cast, but the WAV code path (line 235) and close path (line 167) were not. When samplesperblock (int) * blocks...

1 affected package

libsndfile

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsndfile Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2019-25683

Medium priority
Needs evaluation

FileZilla 3.40.0 contains a denial of service vulnerability in the local search functionality that allows local attackers to crash the application by supplying a malformed path string. Attackers can trigger the crash by entering a...

1 affected package

filezilla

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
filezilla Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-56226

Low priority
Needs evaluation

Libsndfile <=1.2.2 contains a memory leak vulnerability in the mpeg_l3_encoder_init() function within the mpeg_l3_encode.c file.

1 affected package

libsndfile

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsndfile Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-22701

Medium priority

Some fixes available 4 of 7

filelock is a platform-independent file lock for Python. Prior to version 3.20.3, a TOCTOU race condition vulnerability exists in the SoftFileLock implementation of the filelock package. An attacker with local filesystem access...

1 affected package

python-filelock

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-filelock Needs evaluation Fixed Fixed Fixed Fixed
Show less packages

CVE-2023-53959

Medium priority
Needs evaluation

FileZilla Client 3.63.1 contains a DLL hijacking vulnerability that allows attackers to execute malicious code by placing a crafted TextShaping.dll in the application directory. Attackers can generate a reverse shell payload using...

1 affected package

filezilla

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
filezilla Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-68146

Medium priority

Some fixes available 4 of 7

filelock is a platform-independent file lock for Python. In versions prior to 3.20.1, a Time-of-Check-Time-of-Use (TOCTOU) race condition allows local attackers to corrupt or truncate arbitrary user files through symlink attacks....

1 affected package

python-filelock

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-filelock Needs evaluation Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-50950

Medium priority
Needs evaluation

Audiofile v0.3.7 was discovered to contain a NULL pointer dereference via the ModuleState::setup function.

1 affected package

audiofile

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
audiofile Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-45091

Medium priority
Needs evaluation

Seafile versions 11.0.18-Pro, 12.0.10, and 12.0.10-Pro are vulnerable to a stored Cross-Site Scripting (XSS) attack. An authenticated attacker can exploit this vulnerability by modifying their username to include a malicious XSS...

1 affected package

seafile

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
seafile Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-52194

Medium priority
Vulnerable

A buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malformed IRCAM audio files. The vulnerability occurs in the ircam_read_header function at src/ircam.c:164 during...

1 affected package

libsndfile

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsndfile Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages