Search CVE reports


Toggle filters

31 – 40 of 53317 results

Status is adjusted based on your filters.


CVE-2026-102937

Medium priority
Needs evaluation

virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.12, BatchActivator.quote() returns prompt text unchanged before activate.bat inserts it into a cmd.exe set "VAR=value" statement. An attacker...

1 affected package

python-virtualenv

Package 22.04 LTS
python-virtualenv Needs evaluation
Show less packages

CVE-2026-102930

Medium priority
Needs evaluation

virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.12, download_wheel() accepts pip and setuptools seed wheels fetched for periodic updates or the --download option without checking their bytes...

1 affected package

python-virtualenv

Package 22.04 LTS
python-virtualenv Needs evaluation
Show less packages

CVE-2026-102925

Medium priority
Needs evaluation

virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.13, the generated activate (bash and zsh) and activate.fish scripts place values already escaped by shlex.quote inside an additional quoted...

1 affected package

python-virtualenv

Package 22.04 LTS
python-virtualenv Needs evaluation
Show less packages

CVE-2026-102904

Medium priority

Not in release

JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. From JupyterLab 4.0.0 until 4.5.11 and 4.6.4, the PyPI Extension Manager uninstall request reaches...

1 affected package

jupyterlab

Package 22.04 LTS
jupyterlab Not in release
Show less packages

CVE-2026-102620

Medium priority
Needs evaluation

A vulnerability was determined in Freedesktop Poppler 26.06.0/26.07.0/26.08.0. This impacts the function FoFiTrueType::cvtSfnts of the file fofi/FoFiTrueType.cc. This manipulation causes integer overflow. The attack can only be...

1 affected package

poppler

Package 22.04 LTS
poppler Needs evaluation
Show less packages

CVE-2026-102253

Medium priority
Needs evaluation

iperf3 versions prior to 3.22 contains a denial of service vulnerability that allows unauthenticated remote attackers to crash-loop the server's UDP receive worker into an unrecoverable infinite loop by sending a single crafted...

1 affected package

iperf3

Package 22.04 LTS
iperf3 Needs evaluation
Show less packages

CVE-2026-67987

Medium priority

Not in release

crmne/ruby_llm at commit fa6f279847d6d7027814539d9c0dfc3bbdfd2a83 contains polynomial-time regular expression denial-of-service conditions in think-tag response parsing on Ruby 3.1.x. A malicious or anomalous model response...

1 affected package

ruby-llm

Package 22.04 LTS
ruby-llm Not in release
Show less packages

CVE-2026-102875

Medium priority
Needs evaluation

VLC media player before 3.0.24 contains a path traversal vulnerability in the skins2 ThemeLoader that fails to validate member names in .vlt skin archives. Attackers can craft malicious skin files with path traversal sequences to...

1 affected package

vlc

Package 22.04 LTS
vlc Needs evaluation
Show less packages

CVE-2026-102831

Medium priority
Needs evaluation

JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. From JupyterLab 4.5.0 until 4.5.11 and 4.6.4, from Notebook 7.5.0 until 7.6.3, and from JupyterLite...

2 affected packages

jupyter-notebook, jupyterlab

Package 22.04 LTS
jupyter-notebook Needs evaluation
jupyterlab Not in release
Show less packages

CVE-2026-102830

Medium priority

Not in release

JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. From JupyterLab 3.0.0 until 4.5.11 and 4.6.4, and in JupyterLite Core 0.8.3 and earlier, the...

1 affected package

jupyterlab

Package 22.04 LTS
jupyterlab Not in release
Show less packages