Search CVE reports


Toggle filters

1 – 10 of 50631 results

Status is adjusted based on your filters.


CVE-2026-97876

Medium priority
Needs evaluation

A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB module, while GRUB continues to report lockdown is enabled. The vulnerability is...

3 affected packages

grub2, grub2-unsigned, grub2-signed

Package 20.04 LTS
grub2 Not affected
grub2-unsigned Needs evaluation
grub2-signed Needs evaluation
Show less packages

CVE-2026-97873

Medium priority
Needs evaluation

In Bouncy Castle for Java before 1.86, the raw JCA provider's legacy PBES1 (PKCS#5 scheme 1) and PKCS#12 PBE families ran their password-based key derivation with an iteration count taken from untrusted input without bounding it,...

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-96990

Medium priority
Needs evaluation

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Erlang bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96294

Medium priority
Needs evaluation

Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift NodeJS bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96292

Medium priority
Needs evaluation

Inefficient regular expression complexity, Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which...

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96289

Medium priority
Needs evaluation

Uncontrolled Recursion vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

2 affected packages

php-horde-thrift, thrift

Package 20.04 LTS
php-horde-thrift —
thrift Needs evaluation
Show less packages

CVE-2026-96288

Medium priority
Needs evaluation

Uncontrolled Recursion, Allocation of resources without limits or throttling vulnerability in Apache Thrift Erlang bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0,...

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96287

Medium priority
Needs evaluation

Inefficient Algorithmic Complexity vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96286

Medium priority
Needs evaluation

Uncaught exception vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 20.04 LTS
thrift Needs evaluation
Show less packages

CVE-2026-96277

Medium priority
Needs evaluation

Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

ruby-thrift

Package 20.04 LTS
ruby-thrift Needs evaluation
Show less packages