Search CVE reports


Toggle filters

1191 – 1200 of 58108 results

Status is adjusted based on your filters.


CVE-2026-88035

Medium priority
Needs evaluation

A size check in the client-side authentication path of the MongoDB C Driver can wrap around, so an unusually large user-name value is accepted and copied past the end of a small buffer. A party able to set the driver's connection...

1 affected package

mongodb

Package 16.04 LTS
mongodb Needs evaluation
Show less packages

CVE-2026-88033

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Java Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

mongo-java-driver

Package 16.04 LTS
mongo-java-driver Needs evaluation
Show less packages

CVE-2026-88032

Medium priority
Needs evaluation

A use-after-free in the reactive client-side encryption component of the MongoDB Java Driver can cause native resources to be freed while an affected encrypted operation is still using them when the operation is cancelled. A party...

1 affected package

mongo-java-driver

Package 16.04 LTS
mongo-java-driver Needs evaluation
Show less packages

CVE-2026-89044

Medium priority
Needs evaluation

Netty versions 4.1.133.Final through 4.1.137.Final and 4.2.13.Final through 4.2.17.Final fail to properly validate the final transfer coding in the Transfer-Encoding header, allowing attackers to smuggle requests by...

1 affected package

netty

Package 16.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-88054

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, Plumbing::DeSerialize in src/lstm/plumbing.cpp rejects excessively large network stacks but accepts a zero-length stack for NT_SERIES, NT_PARALLEL, or...

1 affected package

tesseract

Package 16.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88053

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, Classify::ReadIntTemplates in src/classify/intproto.cpp reads NumClassPruners, NumClasses, and NumProtoSets from the TESSDATA_INTTEMP component of a crafted...

1 affected package

tesseract

Package 16.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88052

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, UNICHARSET::load_via_fgets in src/ccutil/unicharset.cpp trusts the declared unichar count as a loop bound and uses id as an unchecked index into the unichars...

1 affected package

tesseract

Package 16.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88051

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, the callback form of GenericVector::read in src/ccutil/genericvector.h reads the independent int32 fields reserved and size_used_ from a .traineddata model...

1 affected package

tesseract

Package 16.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88030

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Ruby Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

ruby-mongo

Package 16.04 LTS
ruby-mongo Needs evaluation
Show less packages

CVE-2026-88029

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Python Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

pymongo

Package 16.04 LTS
pymongo Needs evaluation
Show less packages