Search CVE reports


Toggle filters

701 – 710 of 50018 results

Status is adjusted based on your filters.


CVE-2026-6669

Medium priority
Needs evaluation

Missing upper bound on the key derivation iteration count accepted during SCRAM authentication to a backend server in PgBouncer through 1.25.2 allows a malicious or compromised PostgreSQL backend to cause uncontrolled...

1 affected package

pgbouncer

Package 20.04 LTS
pgbouncer Needs evaluation
Show less packages

CVE-2026-6668

Medium priority
Needs evaluation

Integer overflow in the packet buffer growth logic in PgBouncer through 1.25.2 allows an unauthenticated remote attacker to cause a denial of service. Sufficiently large input makes the buffer size computation overflow, leaving...

1 affected package

pgbouncer

Package 20.04 LTS
pgbouncer Needs evaluation
Show less packages

CVE-2026-66080

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 4.1.11, 4.2.6, and 4.3.0, validate_partitions only checks that the requested partition count is at least 1, with no upper bound. A large count such as lists:seq(0,...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66079

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, parse_array_primitive/2 for constructor 0x45 (list0) returns an element with byte-width B = 0. The enclosing array32 parser at...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66077

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, The management UI uses EJS 1.0 in which <%= ... %> does NOT HTML-escape. connection.ejs:135 renders...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66076

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, is_authorized/2 calls rabbit_mgmt_util:is_authorized/2, which checks only the management tag, instead of...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66075

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, is_authorized/2 for the /federation-links/.../restart route uses is_authorized_monitor (accepts the monitoring tag), while...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66074

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, match_value/3 passes the user-supplied ?name= regular expression to re:run with no match_limit option, and executes it once...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66072

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, get_chunk_selector/1 calls binary_to_atom on the raw client-supplied <<"chunk_selector">> property from post-auth subscribe...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66070

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.17, 4.0.22, 4.1.13, and 4.2.6, match_origin/1 returned the bare reflected Origin and allowed credentials even when the wildcard "" was configured, so the...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages