Search CVE reports


Toggle filters

151 – 160 of 53178 results

Status is adjusted based on your filters.


CVE-2026-102296

Medium priority
Needs evaluation

ZoneMinder before 1.38.4 contains static buffer overflow vulnerabilities in RemoteCameraHttp::GetResponse() that allow malicious HTTP cameras or intercepting attackers to overflow fixed-size buffers by sending oversized response...

1 affected package

zoneminder

Package 22.04 LTS
zoneminder Needs evaluation
Show less packages

CVE-2026-102278

Medium priority
Needs evaluation

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.20, 2.1.6, 3.0.8, and 5.0.11, deeply nested brace groups cause expand_() to recurse once per nesting level at comma-member...

1 affected package

node-brace-expansion

Package 22.04 LTS
node-brace-expansion Needs evaluation
Show less packages

CVE-2026-102277

Medium priority
Needs evaluation

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.21, 2.1.7, 3.0.9, and 5.0.12, the expand function handles untrusted {a},b}-shaped patterns with many trailing closing...

1 affected package

node-brace-expansion

Package 22.04 LTS
node-brace-expansion Needs evaluation
Show less packages

CVE-2026-102276

Medium priority
Needs evaluation

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.19, 2.1.5, 3.0.7, and 5.0.10, crafted brace patterns can exhaust the native stack in parseCommaParts...

1 affected package

node-brace-expansion

Package 22.04 LTS
node-brace-expansion Needs evaluation
Show less packages

CVE-2026-102275

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. From 2.1.0 until 2.15.0, PyJWT OKPAlgorithm.from_jwk in jwt/algorithms.py is affected because private-JWK import path does not compare the public key derived from d...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-102274

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. From 2.9.0 until 2.14.0, PyJWKSet does not catch the plain ValueError raised for malformed RSA JWK components by RSAAlgorithm.from_jwk in jwt/api_jwk.py. This occurs...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-102273

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. From 2.13.0 until 2.14.0, PyJWT HMACAlgorithm.prepare_key is affected because HMAC key guard only recognizes top-level public JWK forms and misses...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-102272

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. From 2.13.0 until 2.14.0, HMACAlgorithm.prepare_key in jwt/algorithms.py is affected because raw-JWK detector does not normalize accepted Unicode byte-order marks...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-102271

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. From 2.4.0 until 2.14.0, PyJWT HMACAlgorithm.prepare_key is affected because asymmetric-key guard relies on textual markers that are absent from DER encoding. This...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-102270

Medium priority
Needs evaluation

PyJWT is a Python implementation of JSON Web Token standards. Prior to 2.14.0, PyJWT is_pem_format is affected because lazy PEM regular expression backtracks extensively. This occurs when a certificate-like input contains repeated...

1 affected package

pyjwt

Package 22.04 LTS
pyjwt Needs evaluation
Show less packages