Search CVE reports


Toggle filters

131 – 140 of 58662 results

Status is adjusted based on your filters.


CVE-2026-63420

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.21.0, 3.1.16.0, and 3.2.0.3-beta1, An indexed psd with transparency metadata creates...

1 affected package

openimageio

Package 16.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-63419

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.21.0, 3.1.16.0, and 3.2.0.3-beta1, A zbuffer-only tiled iff is exposed with a 16-bit...

1 affected package

openimageio

Package 16.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-59956

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.20.0, 3.1.15.0, and 3.2.0.3-beta1, An uncompressed 16-bit iff image with a z-buffer...

1 affected package

openimageio

Package 16.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-59181

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.20.0, 3.1.15.0, and 3.2.0.3-beta1, A crafted cineon file can supply a numberofelements...

1 affected package

openimageio

Package 16.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-59156

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.20.0, 3.1.15.0, and 3.2.0.3-beta1, A crafted fits stream containing...

1 affected package

openimageio

Package 16.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-93653

Medium priority
Needs evaluation

A denial of service flaw was found in Poppler's Splash backend. A crafted PDF with tiling-pattern geometry approaching the int32 boundary can cause SplashOutputDev::tilingPatternFill to compute an attacker-controlled repeat count...

1 affected package

poppler

Package 16.04 LTS
poppler Needs evaluation
Show less packages

CVE-2026-93576

Medium priority
Needs evaluation

A flaw was found in Netty netty-codec-smtp. The component does not properly validate Carriage Return (CR) and Line Feed (LF) characters in the SMTP command-name field. A remote attacker, if an application routes untrusted input...

1 affected package

netty

Package 16.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-93573

Medium priority
Needs evaluation

A flaw was found in Netty's HTTP/1.1 decoder. This vulnerability allows a remote attacker to bypass `Transfer-Encoding` header validation by splitting the `Transfer-Encoding` field across multiple headers, with the last field...

1 affected package

netty

Package 16.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-93569

Medium priority
Needs evaluation

A flaw was found in Netty. A remote unauthenticated attacker can exploit a vulnerability in Netty's HTTP/1 to HTTP/2 conversion process. When an HTTP/1 request includes both an absolute-form request-target and a conflicting Host...

1 affected package

netty

Package 16.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-93568

Medium priority
Needs evaluation

A flaw was found in Netty. A remote attacker could exploit this vulnerability by sending specially crafted HTTP/2 or HTTP/3 Extended CONNECT requests. Netty's HTTP-object conversion path incorrectly processes these requests as...

1 affected package

netty

Package 16.04 LTS
netty Needs evaluation
Show less packages