Search CVE reports
31 – 40 of 34477 results
CVE-2025-32700
Medium priorityExposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/Api/QueryAbuseLog.Php, includes/Pager/AbuseLogPager.Php,...
1 affected package
mediawiki
Package | 18.04 LTS |
---|---|
mediawiki | Needs evaluation |
CVE-2025-32699
Medium priorityVulnerability in Wikimedia Foundation MediaWiki, Wikimedia Foundation Parsoid.This issue affects MediaWiki: before 1.39.12, 1.42.6, 1.43.1; Parsoid: before 0.16.5, 0.19.2, 0.20.2.
1 affected package
mediawiki
Package | 18.04 LTS |
---|---|
mediawiki | Needs evaluation |
CVE-2025-32698
Medium priorityExposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/logging/LogPager.Php. This issue affects MediaWiki: before...
1 affected package
mediawiki
Package | 18.04 LTS |
---|---|
mediawiki | Needs evaluation |
CVE-2025-32697
Medium priorityImproper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program...
1 affected package
mediawiki
Package | 18.04 LTS |
---|---|
mediawiki | Needs evaluation |
CVE-2025-32696
Medium priorityImproper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/actions/RevertAction.Php, includes/api/ApiFileRevert.Php. This issue affects...
1 affected package
mediawiki
Package | 18.04 LTS |
---|---|
mediawiki | Needs evaluation |
CVE-2025-32743
Medium priorityIn ConnMan through 1.44, the lookup string in ns_resolv in dnsproxy.c can be NULL or an empty string when the TC (Truncated) bit is set in a DNS response. This allows attackers to cause a denial of service (application crash) or...
1 affected package
connman
Package | 18.04 LTS |
---|---|
connman | Needs evaluation |
CVE-2025-29088
Medium priorityIn SQLite 3.49.0 before 3.49.1, certain argument values to sqlite3_db_config (in the C-language API) can cause a denial of service (application crash). An sz*nBig multiplication is not cast to a 64-bit integer, and consequently...
2 affected packages
sqlite, sqlite3
Package | 18.04 LTS |
---|---|
sqlite | Needs evaluation |
sqlite3 | Needs evaluation |
CVE-2025-23386
Medium priorityA Incorrect Default Permissions vulnerability in the openSUSE Tumbleweed package gerbera allows the service user gerbera to escalate to root.,This issue affects gerbera on openSUSE Tumbleweed before 2.5.0-1.1.
1 affected package
gerbera
Package | 18.04 LTS |
---|---|
gerbera | Needs evaluation |
CVE-2024-38865
Medium priorityImproper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0p39, 2.3.0p25, and 2.1.0p51 (EOL) allows arbitrary livestatus command execution. Exploitation requires the...
1 affected package
check-mk
Package | 18.04 LTS |
---|---|
check-mk | Needs evaluation |
CVE-2025-32728
Medium priorityIn sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.
2 affected packages
openssh, openssh-ssh1
Package | 18.04 LTS |
---|---|
openssh | Vulnerable |
openssh-ssh1 | Needs evaluation |