Search CVE reports


Toggle filters

11 – 20 of 49076 results

Status is adjusted based on your filters.


CVE-2026-97026

Medium priority
Needs evaluation

Flatpak creates temporary child repository directories under the user cache with world-writable permissions (0777). On multi-user systems with a permissive umask, other local users could read or modify the temporary directory used...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-97025

Medium priority
Needs evaluation

Flatpak writes the OCI repository authentication token with world-readable permissions (0644) in the system-helper's cache directory, allowing other local users on a multi-user system to read the token and impersonate...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-97024

Medium priority
Needs evaluation

A path traversal vulnerability in Flatpak's handling of the files/etc directory during app deployment allows a malicious Flatpak app to cause certain host system files (such as passwd, group, machine-id, or resolv.conf) to be...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-97023

Medium priority
Needs evaluation

A path traversal vulnerability in Flatpak's handling of the export/bin directory during app deployment allows a malicious Flatpak app to cause deletion of attacker-chosen files outside the deployment directory when the app is...

1 affected package

flatpak

Package 24.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-96760

Medium priority
Needs evaluation

Authlib (v1.7.2 and below) contains a signature verification bypass vulnerability. The JsonWebSignature.deserialize_json() method accepts a JSON Serialization JWS object and returns the payload as successfully verified without...

1 affected package

python-authlib

Package 24.04 LTS
python-authlib Needs evaluation
Show less packages

CVE-2026-96544

Medium priority
Needs evaluation

[Unknown description]

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-96543

Medium priority
Needs evaluation

[Unknown description]

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-96423

Medium priority
Needs evaluation

[Unknown description]

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-96422

Medium priority
Needs evaluation

[Unknown description]

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-96421

Medium priority
Needs evaluation

[Unknown description]

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages