Search CVE reports


Toggle filters

101 – 110 of 28239 results

Status is adjusted based on your filters.


CVE-2024-28047

Medium priority
Ignored

Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Ignored
Show less packages

CVE-2024-24582

Medium priority
Ignored

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Ignored
Show less packages

CVE-2023-43758

Medium priority
Ignored

Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Ignored
Show less packages

CVE-2023-34440

Medium priority
Ignored

Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

1 affected package

intel-microcode

Package 20.04 LTS
intel-microcode Ignored
Show less packages

CVE-2025-1215

Medium priority
Needs evaluation

A vulnerability classified as problematic was found in vim up to 9.1.1096. This vulnerability affects unknown code of the file src/main.c. The manipulation of the argument --log leads to memory corruption. It is possible to launch...

1 affected package

vim

Package 20.04 LTS
vim Needs evaluation
Show less packages

CVE-2025-0937

Medium priority
Needs evaluation

Nomad Community and Nomad Enterprise ("Nomad") event stream configured with a wildcard namespace can bypass the ACL Policy allowing reads on other namespaces.

1 affected package

nomad

Package 20.04 LTS
nomad Needs evaluation
Show less packages

CVE-2025-25184

Medium priority
Needs evaluation

Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.11, 3.0.12, and 3.1.10, Rack::CommonLogger can be exploited by crafting input that includes newline characters to manipulate log entries....

1 affected package

ruby-rack

Package 20.04 LTS
ruby-rack Needs evaluation
Show less packages

CVE-2025-0516

Medium priority

Not in release

Improper Authorization in GitLab CE/EE affecting all versions from 17.7 prior to 17.7.4, 17.8 prior to 17.8.2 allow users with limited permissions to perform unauthorized actions on critical project data.

1 affected package

gitlab

Package 20.04 LTS
gitlab Not in release
Show less packages

CVE-2024-9870

Medium priority

Not in release

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

1 affected package

gitlab

Package 20.04 LTS
gitlab Not in release
Show less packages

CVE-2025-1244

Medium priority
Needs evaluation

A flaw was found in the Emacs text editor. Improper handling of custom "man" URI schemes allows attackers to execute arbitrary shell commands by tricking users into visiting a specially crafted website or an HTTP URL with a redirect.

5 affected packages

emacs, emacs24, emacs25, xemacs21, xemacs21-packages

Package 20.04 LTS
emacs Needs evaluation
emacs24 Not in release
emacs25 Not in release
xemacs21 Needs evaluation
xemacs21-packages Needs evaluation
Show less packages