Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 77 202

Количество 77 202

ubuntu логотип

CVE-2026-61714

около 1 месяца назад

[heap-based buffer overflow in MIDI player]

EPSS: Низкий
ubuntu логотип

CVE-2026-61666

18 дней назад

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.2, WebSocket::Driver.server() passes a malformed Host header to URI.parse in lib/websocket/http/request.rb without catching URI::InvalidURIError, allowing a remote client to crash a TCP-backed WebSocket server when the application does not catch the error from parse(). This issue is fixed in version 0.8.2.

EPSS: Низкий
ubuntu логотип

CVE-2026-61634

17 дней назад

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, the AMQP connection tuning path records the negotiated AMQP frame_max value, but src/main/java/com/rabbitmq/client/impl/SocketFrameHandler.java and NettyFrameHandlerFactory continue to validate broker-controlled frame payload lengths against maxInboundMessageBodySize because the negotiated limit is not applied consistently through setMaxInboundFramePayloadSize. A malicious or compromised broker can send a method frame larger than the negotiated frame_max during or after connection establishment, causing the client to allocate and decode a protocol-invalid frame instead of rejecting it with MalformedFrameException. The protocol violation can disrupt the affected connection and cause client-side denial of service. This issue is fixed in version 5.33.0.

EPSS: Низкий
ubuntu логотип

CVE-2026-61632

29 дней назад

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. In versions up to and including 10.21.3, the b64 extension is vulnerable to a path traversal that discloses arbitrary files: it inlines images referenced by <img src="..."> by joining the src onto the configured base_path with os.path.normpath and opening the result directly, without verifying that the resolved path stays inside base_path. As a result, an src containing ../ sequences or an absolute path reads a file outside base_path as long as it has an allowed image extension (.png, .jpg, .jpeg, .gif, .svg), and the file's contents are then base64-encoded into the rendered output, disclosing them. An application that renders untrusted Markdown with pymdownx.b64 enabled can therefore leak the contents of image-extension files readable by the process to whoever controls the Markdown or views the output, a targeted file-read bounded by the extension check. This issue has been fixed in version 11.0.

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2026-61627

около 2 месяцев назад

[GHSA-pjjp-65r7-ppgm: Out-of-bounds read and write in wrap_lines_measure]

EPSS: Низкий
ubuntu логотип

CVE-2026-61626

около 2 месяцев назад

[GHSA-5gf7-wjfm-vmvm: Out-of-bounds bit clears for negative Matroska ReadOrder values]

EPSS: Низкий
ubuntu логотип

CVE-2026-61555

10 дней назад

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. OpenEXR versions before 3.2.11, 3.3.0 through 3.3.12, and 3.4.0 through 3.4.13 are vulnerable to crashing. This occurs when Imf::GetChannelsInMultiPartFile() processes a crafted EXR with an empty multiView header attribute and Imf::viewFromChannelName() indexes the empty vector for a dotless channel name. This issue is fixed in versions 3.2.11, 3.3.13, and 3.4.14.

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2026-61552

23 дня назад

security update

EPSS: Низкий
ubuntu логотип

CVE-2026-61551

23 дня назад

security update

EPSS: Низкий
ubuntu логотип

CVE-2026-61550

23 дня назад

security update

EPSS: Низкий
ubuntu логотип

CVE-2026-61548

около 2 месяцев назад

mmpstrucdata stack buffer overflow with oversized RFC5424 structured data

EPSS: Низкий
ubuntu логотип

CVE-2026-61547

около 1 месяца назад

[Unknown description]

EPSS: Низкий
ubuntu логотип

CVE-2026-61487

около 1 месяца назад

Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. An authenticated low-privilege user can bypass a per-destination write ACL by sending to an ActiveMQ temporary composite destination whose physical name is a comma-separated composite of real queues. This allows publishing messages to any of the destinations in the list without proper write ACL permissions because the authorization check is bypassed due to the composite destination being marked as temporary. This issue affects Apache ActiveMQ Broker: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ All: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ: before 5.19.9, from 6.0.0 before 6.2.8. Users are recommended to upgrade to version 5.19.9, 6.2.8 or 6.3.0, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-61478

23 дня назад

[Unknown description]

EPSS: Низкий
ubuntu логотип

CVE-2026-61477

28 дней назад

An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record value attributes and SRV record domain/target attributes. These values are written verbatim into the dnsmasq configuration file generated by the network driver, allowing a user with permission to define virtual networks to inject arbitrary dnsmasq configuration directives such as dhcp-script, leading to arbitrary command execution as root.

CVSS3: 2.3
EPSS: Низкий
ubuntu логотип

CVE-2026-61476

5 дней назад

[Unknown description]

EPSS: Низкий
ubuntu логотип

CVE-2026-61475

около 1 месяца назад

VNC lossy refresh dirty bitmap OOB write at 2160p

EPSS: Низкий
ubuntu логотип

CVE-2026-61465

около 2 месяцев назад

ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An attacker can supply a crafted image that causes ImageMagick to allocate more memory than permitted by the configured policy, resulting in a denial of service.

CVSS3: 3.3
EPSS: Низкий
ubuntu логотип

CVE-2026-61464

около 2 месяцев назад

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

CVSS3: 1.8
EPSS: Низкий
ubuntu логотип

CVE-2026-61406

5 дней назад

[Unknown description]

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-61714

[heap-based buffer overflow in MIDI player]

около 1 месяца назад
ubuntu логотип
CVE-2026-61666

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.2, WebSocket::Driver.server() passes a malformed Host header to URI.parse in lib/websocket/http/request.rb without catching URI::InvalidURIError, allowing a remote client to crash a TCP-backed WebSocket server when the application does not catch the error from parse(). This issue is fixed in version 0.8.2.

0%
Низкий
18 дней назад
ubuntu логотип
CVE-2026-61634

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, the AMQP connection tuning path records the negotiated AMQP frame_max value, but src/main/java/com/rabbitmq/client/impl/SocketFrameHandler.java and NettyFrameHandlerFactory continue to validate broker-controlled frame payload lengths against maxInboundMessageBodySize because the negotiated limit is not applied consistently through setMaxInboundFramePayloadSize. A malicious or compromised broker can send a method frame larger than the negotiated frame_max during or after connection establishment, causing the client to allocate and decode a protocol-invalid frame instead of rejecting it with MalformedFrameException. The protocol violation can disrupt the affected connection and cause client-side denial of service. This issue is fixed in version 5.33.0.

0%
Низкий
17 дней назад
ubuntu логотип
CVE-2026-61632

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. In versions up to and including 10.21.3, the b64 extension is vulnerable to a path traversal that discloses arbitrary files: it inlines images referenced by <img src="..."> by joining the src onto the configured base_path with os.path.normpath and opening the result directly, without verifying that the resolved path stays inside base_path. As a result, an src containing ../ sequences or an absolute path reads a file outside base_path as long as it has an allowed image extension (.png, .jpg, .jpeg, .gif, .svg), and the file's contents are then base64-encoded into the rendered output, disclosing them. An application that renders untrusted Markdown with pymdownx.b64 enabled can therefore leak the contents of image-extension files readable by the process to whoever controls the Markdown or views the output, a targeted file-read bounded by the extension check. This issue has been fixed in version 11.0.

CVSS3: 5.3
0%
Низкий
29 дней назад
ubuntu логотип
CVE-2026-61627

[GHSA-pjjp-65r7-ppgm: Out-of-bounds read and write in wrap_lines_measure]

около 2 месяцев назад
ubuntu логотип
CVE-2026-61626

[GHSA-5gf7-wjfm-vmvm: Out-of-bounds bit clears for negative Matroska ReadOrder values]

около 2 месяцев назад
ubuntu логотип
CVE-2026-61555

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. OpenEXR versions before 3.2.11, 3.3.0 through 3.3.12, and 3.4.0 through 3.4.13 are vulnerable to crashing. This occurs when Imf::GetChannelsInMultiPartFile() processes a crafted EXR with an empty multiView header attribute and Imf::viewFromChannelName() indexes the empty vector for a dotless channel name. This issue is fixed in versions 3.2.11, 3.3.13, and 3.4.14.

CVSS3: 5.5
0%
Низкий
10 дней назад
ubuntu логотип
CVE-2026-61552

security update

23 дня назад
ubuntu логотип
CVE-2026-61551

security update

23 дня назад
ubuntu логотип
CVE-2026-61550

security update

23 дня назад
ubuntu логотип
CVE-2026-61548

mmpstrucdata stack buffer overflow with oversized RFC5424 structured data

около 2 месяцев назад
ubuntu логотип
CVE-2026-61547

[Unknown description]

около 1 месяца назад
ubuntu логотип
CVE-2026-61487

Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. An authenticated low-privilege user can bypass a per-destination write ACL by sending to an ActiveMQ temporary composite destination whose physical name is a comma-separated composite of real queues. This allows publishing messages to any of the destinations in the list without proper write ACL permissions because the authorization check is bypassed due to the composite destination being marked as temporary. This issue affects Apache ActiveMQ Broker: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ All: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ: before 5.19.9, from 6.0.0 before 6.2.8. Users are recommended to upgrade to version 5.19.9, 6.2.8 or 6.3.0, which fixes the issue.

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-61478

[Unknown description]

23 дня назад
ubuntu логотип
CVE-2026-61477

An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record value attributes and SRV record domain/target attributes. These values are written verbatim into the dnsmasq configuration file generated by the network driver, allowing a user with permission to define virtual networks to inject arbitrary dnsmasq configuration directives such as dhcp-script, leading to arbitrary command execution as root.

CVSS3: 2.3
0%
Низкий
28 дней назад
ubuntu логотип
CVE-2026-61476

[Unknown description]

5 дней назад
ubuntu логотип
CVE-2026-61475

VNC lossy refresh dirty bitmap OOB write at 2160p

около 1 месяца назад
ubuntu логотип
CVE-2026-61465

ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An attacker can supply a crafted image that causes ImageMagick to allocate more memory than permitted by the configured policy, resulting in a denial of service.

CVSS3: 3.3
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-61464

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

CVSS3: 1.8
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-61406

[Unknown description]

5 дней назад

Уязвимостей на страницу