Search CVE reports


Toggle filters

461 – 470 of 49237 results

Status is adjusted based on your filters.


CVE-2026-95835

Medium priority
Needs evaluation

Missing Authorization in the askpass escape code handler in kitty from 0.25.0 before 0.49.0 allows a local user other than the one running the terminal to obtain the text typed into a prompt that kitty itself displays, because...

1 affected package

kitty

Package 24.04 LTS
kitty Needs evaluation
Show less packages

CVE-2026-95834

Medium priority
Needs evaluation

Use After Free in the drag source path of the drag and drop protocol in kitty from 0.47.0 before 0.49.0 allows a program writing to the terminal to cause the terminal to read from and write to freed heap memory,...

1 affected package

kitty

Package 24.04 LTS
kitty Needs evaluation
Show less packages

CVE-2026-91837

Medium priority
Needs evaluation

A flaw was found in NetworkManager-iodine, the iodine VPN plugin for NetworkManager. A local unprivileged user can exploit a vulnerability in how the 'nameserver' setting is processed when establishing an iodine VPN connection. By...

1 affected package

network-manager-iodine

Package 24.04 LTS
network-manager-iodine Needs evaluation
Show less packages

CVE-2026-80432

Medium priority
Needs evaluation

Missing Authorization in the drop handling path of the drag and drop protocol in kitty from 0.47.0 before 0.49.0 allows a program writing to the terminal to obtain the contents of files dragged over the window even when the user...

1 affected package

kitty

Package 24.04 LTS
kitty Needs evaluation
Show less packages

CVE-2026-67421

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.19, 4.0.24, 4.1.15, 4.2.10, and 4.3.5, RabbitMQ Management rendered an AMQP authorization-error reason containing an attacker-controlled queue name as HTML when...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67420

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.19, 4.0.24, 4.1.15, 4.2.10, and 4.3.5, RabbitMQ OAuth credential refresh retains revoked runtime tags. when an existing AMQP connection refreshes from an OAuth...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67419

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to 4.3.5, an authenticated user who can bind a queue to a topic exchange and publish to it can use consecutive # segments in a binding key to make both topic matchers revisit the...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67415

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 4.2.0 until 4.2.9 and 4.3.3, the Shovel parameter parser converted attacker-controlled runtime parameter values into non-garbage-collected Erlang atoms before bounding them or...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67413

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 4.0.0 until 4.0.23, 4.1.14, 4.2.9, and 4.3.3, the optional rabbitmq_jms_topic_exchange plugin's x-jms-topic exchange accepted a client-controlled rjms_erlang_selector binding...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67412

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 4.3.3, 4.2.9 , 4.1.14, 4.0.24, and 3.13.18, Federation upstream in RabbitMQ skips vhost authorization allowing cross-vhost message access. what the bug lets you do. A...

1 affected package

rabbitmq-server

Package 24.04 LTS
rabbitmq-server Needs evaluation
Show less packages