Search CVE reports


Toggle filters

131 – 140 of 29881 results

Status is adjusted based on your filters.


CVE-2025-66030

Medium priority

Not in release

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft...

1 affected package

node-node-forge

Package 24.04 LTS
node-node-forge Not in release
Show less packages

CVE-2025-64344

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64335

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64334

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, compressed HTTP data can lead to unbounded memory...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64333

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a large HTTP content type, when logged can cause a stack...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64332

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a stack overflow that causes Suricata to crash can occur if...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64331

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a stack overflow can occur on large HTTP file transfers if...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-64330

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a single byte read heap overflow when logging the verdict...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2021-4472

Medium priority
Needs evaluation

The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' feature that may result in disclosure of arbitrary local files content.

1 affected package

mistral-dashboard

Package 24.04 LTS
mistral-dashboard Needs evaluation
Show less packages

CVE-2025-2486

Medium priority
Fixed

The Ubuntu edk2 UEFI firmware packages accidentally allowed the UEFI Shell to be accessed in Secure Boot environments, possibly allowing bypass of Secure Boot constraints. Versions 2024.05-2ubuntu0.3 and 2024.02-2ubuntu0.3 disable...

1 affected package

edk2

Package 24.04 LTS
edk2 Fixed
Show less packages