Search CVE reports


Toggle filters

751 – 760 of 46705 results

Status is adjusted based on your filters.


CVE-2026-88018

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.1, rclone serve s3 configured with --auth-proxy but without --auth-key allows authPairMiddleware to...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88017

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.64.0 until 1.75.1, the FTP auth-proxy driver in cmd/serve/ftp/ftp.go stores one obscured password per username in...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88016

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.1, when backend/local runs with --links, a source .rclonelink object can plant a symlink in...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88015

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.1, backend/local with --links or links=true exposes symlink targets as .rclonelink objects,...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88014

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.72.0 until 1.75.1, the archive ZIP backend method (*Fs).readZip in backend/archive/zip/zip.go...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88013

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.49.0 until 1.75.1, the HTTP backend attaches headers configured through --http-headers or headers= to requests in...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-88924

Medium priority
Needs evaluation

A flaw was found in the admin backend of gvfs. The privileged gvfsd-admin daemon changes the ownership of newly created private D-Bus sockets by calling the link-following chown() function on a pathname inside a user-controlled...

1 affected package

gvfs

Package 24.04 LTS
gvfs Needs evaluation
Show less packages

CVE-2026-46387

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, Suricata's HTTP/2 decompression path could grow the...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-45747

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.16, the Lua TLS certificate information helper could dereference NULL certificate fields...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-45763

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, when Lua rule execution is enabled, the Lua sandbox memory...

1 affected package

suricata

Package 24.04 LTS
suricata Needs evaluation
Show less packages