Search CVE reports


Toggle filters

571 – 580 of 47986 results

Status is adjusted based on your filters.


CVE-2026-88021

Medium priority
Needs evaluation

Consul and Consul Enterprise are vulnerable to an authorization bypass in the Connect service mesh that may allow a service to reach a destination it is not authorized to access. When building Envoy RBAC rules to enforce Connect...

1 affected package

consul

Package 20.04 LTS
consul Needs evaluation
Show less packages

CVE-2026-87107

Medium priority
Needs evaluation

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog deregistration path that may allow a local ACL token to delete peer-imported catalog objects. A caller with {{service:write}} or {{node:write}}...

1 affected package

consul

Package 20.04 LTS
consul Needs evaluation
Show less packages

CVE-2026-87106

Medium priority
Needs evaluation

Consul and Consul Enterprise are vulnerable to a denial of service in the native RPC listener that may allow an authenticated client to exhaust server memory before ACL authorization is evaluated. A client that can complete the...

1 affected package

consul

Package 20.04 LTS
consul Needs evaluation
Show less packages

CVE-2026-87090

Medium priority
Needs evaluation

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog node-write path that may allow an authenticated attacker to delete another node's catalog registration and take over its node identity. An...

1 affected package

consul

Package 20.04 LTS
consul Needs evaluation
Show less packages

CVE-2026-88053

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, Classify::ReadIntTemplates in src/classify/intproto.cpp reads NumClassPruners, NumClasses, and NumProtoSets from the TESSDATA_INTTEMP component of a crafted...

1 affected package

tesseract

Package 20.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88052

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, UNICHARSET::load_via_fgets in src/ccutil/unicharset.cpp trusts the declared unichar count as a loop bound and uses id as an unchecked index into the unichars...

1 affected package

tesseract

Package 20.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88030

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Ruby Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

ruby-mongo

Package 20.04 LTS
ruby-mongo Needs evaluation
Show less packages

CVE-2026-68006

Medium priority
Needs evaluation

An issue in Puma v.5.0.0 and before v.8.0.3 allows an attacker to execute arbitrary code via the ext/puma_http11/http11_parser.rl file

1 affected package

puma

Package 20.04 LTS
puma Needs evaluation
Show less packages

CVE-2026-88049

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, prior .traineddata hardening added bounds checks to NetworkIO::CopyTimeStepGeneral and NetworkIO::Randomize in src/lstm/networkio.cpp but left...

1 affected package

tesseract

Package 20.04 LTS
tesseract Needs evaluation
Show less packages

CVE-2026-88048

Medium priority
Needs evaluation

Tesseract is an open source OCR engine. In version 5.5.3 and earlier, FullyConnected::DeSerialize in src/lstm/fullyconnected.cpp does not validate the deserialized layer scalars ni_ and no_ against the weight-matrix dimensions....

1 affected package

tesseract

Package 20.04 LTS
tesseract Needs evaluation
Show less packages