Search CVE reports


Toggle filters

11 – 20 of 29350 results

Status is adjusted based on your filters.


CVE-2026-40208

Medium priority
Needs evaluation

security update

1 affected package

dnsdist

Package 26.04 LTS
dnsdist Needs evaluation
Show less packages

CVE-2026-40079

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Command Injection due to lack of sanitization in the escape_command() function. The escape_command() function at...

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-40012

Medium priority
Needs evaluation

security update

1 affected package

pdns-recursor

Package 26.04 LTS
pdns-recursor Needs evaluation
Show less packages

CVE-2026-40011

Medium priority
Needs evaluation

security update

1 affected package

dnsdist

Package 26.04 LTS
dnsdist Needs evaluation
Show less packages

CVE-2026-39955

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have pre-authentication SQL Injection via unanchored FILTER_VALIDATE_REGEXP in graph_view.php. This issue has been fixed in version 1.2.31.

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-39951

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a Stored SQL Injection vulnerability through graph_name_regexp in the Reports feature. This issue has been fixed in version 1.2.31.

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-39948

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. In versions 1.2.30 and prior, the rfilter request parameter is retrieved via the raw accessor grv() (rather than gfrv() with FILTER_VALIDATE_IS_REGEX validation)...

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-39938

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI through graph_theme and rrdtool IPC serialization hardening. This issue has been resolved in version 1.2.31.

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-39900

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Reflected XSS via tab parameter in the auth_profile.php JavaScript context. This issue has been fixed in version 1.2.31.

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages

CVE-2026-39899

Medium priority
Needs evaluation

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Path Traversal via filename parameter in package_import.php. This issue has been fixed in version 1.2.31.

1 affected package

cacti

Package 26.04 LTS
cacti Needs evaluation
Show less packages