| CVE-2026-65602 |
unknown |
traefik |
Traefik 3.6.0 through 3.6.22 and 3.7.0 through 3.7.6 fail to enforce the crossProviderNamespaces... |
| CVE-2026-65601 |
unknown |
traefik |
Traefik versions 3.7.0 through 3.7.6 contain a namespace confusion vulnerability in the... |
| CVE-2026-65600 |
unknown |
traefik |
Traefik versions <= v2.11.51, >= v3.6.0 <= v3.6.22, and >= v3.7.0 <= v3.7.6 contain an... |
| CVE-2026-15792 |
unknown |
buildkit |
A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon... |
| CVE-2026-15791 |
unknown |
buildkit |
A crafted message in the BuildKit low-level build API can be used to remove the contents of the... |
| CVE-2026-15789 |
unknown |
buildkit |
A custom client can produce such an upload request to the BuildKit daemon that files can escape... |
| CVE-2026-64685 |
unknown |
imagemagick |
ImageMagick is free and open-source software used for editing and manipulating digital images.... |
| CVE-2026-62946 |
unknown |
imagemagick |
ImageMagick is free and open-source software used for editing and manipulating digital images.... |
| CVE-2026-62363 |
unknown |
imagemagick |
ImageMagick is free and open-source software used for editing and manipulating digital images.... |
| CVE-2026-62343 |
unknown |
imagemagick |
ImageMagick is free and open-source software used for editing and manipulating digital images.... |
| CVE-2026-67217 |
unknown |
cjson |
cJSON through 1.7.19 applies RFC 6902 JSON Patch operations non-atomically in apply_patch() in... |
| CVE-2026-67216 |
unknown |
cjson |
cJSON through 1.7.19 contains an inefficient algorithmic complexity flaw in cJSON_Compare().... |
| CVE-2026-67215 |
unknown |
cjson |
cJSON through 1.7.19 is vulnerable to uncontrolled recursion leading to stack exhaustion when an... |
| CVE-2026-64835 |
unknown |
ffmpeg |
FFmpeg versions 4.4 through 8.1.2 contain an out-of-bounds memory access vulnerability in the... |
| CVE-2026-64834 |
unknown |
ffmpeg |
FFmpeg versions 0.6.3 through 8.1.2 contain an infinite loop vulnerability in the RTP/ASF... |
| CVE-2026-64833 |
unknown |
ffmpeg |
FFmpeg versions 0.7.1 through 8.1.2 contain an out-of-bounds read vulnerability in the S/PDIF... |
| CVE-2026-64832 |
unknown |
ffmpeg |
FFmpeg versions 4.4 through 8.1.2 contain a double-free vulnerability in the NVIDIA NVDEC... |
| CVE-2026-64831 |
unknown |
ffmpeg |
FFmpeg versions 8.0 through 8.1.2 contains a stack buffer overflow vulnerability in the Vulkan... |
| CVE-2026-64830 |
unknown |
ffmpeg |
FFmpeg versions 2.1 through 8.1.2 contains a heap buffer overflow vulnerability in the VobSub... |
| CVE-2026-16392 |
unknown |
firefox |
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in... |
| CVE-2026-16392 |
unknown |
thunderbird |
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in... |
| CVE-2026-65706 |
unknown |
ffmpeg |
FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulnerability in the... |
| CVE-2026-65704 |
unknown |
ffmpeg |
FFmpeg through 8.1.2 contains an out-of-bounds write vulnerability that allows attackers to... |
| CVE-2026-65703 |
unknown |
ffmpeg |
FFmpeg versions 2.7 through 8.1.2 contain an out-of-bounds write vulnerability in the TDSC video... |
| CVE-2026-66759 |
unknown |
gimp |
A flaw was found in the file-icns plugin in GIMP. When applying a decompressed mask during ICNS... |
| CVE-2026-66758 |
unknown |
gimp |
A flaw was found in the file-fits plugin in GIMP. When processing a FITS image file, the plugin... |
| CVE-2026-66033 |
unknown |
libssh2 |
libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow... |
| CVE-2026-16386 |
unknown |
firefox |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-16386 |
unknown |
thunderbird |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-16385 |
unknown |
firefox |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-16385 |
unknown |
thunderbird |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-16384 |
unknown |
firefox |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-16384 |
unknown |
thunderbird |
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This... |
| CVE-2026-66011 |
unknown |
imagemagick |
ImageMagick before 7.1.2-27 contains a memory leak vulnerability in the magick command-line... |
| CVE-2026-66041 |
unknown |
ffmpeg |
FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write... |
| CVE-2026-66040 |
unknown |
ffmpeg |
FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds write vulnerability... |
| CVE-2026-66039 |
unknown |
ffmpeg |
FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability... |
| CVE-2026-66038 |
unknown |
ffmpeg |
FFmpeg through 8.1.2, fixed in commit 8670835, contains an information disclosure vulnerability... |
| CVE-2026-66037 |
unknown |
ffmpeg |
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains an uncontrolled resource consumption... |
| CVE-2026-66036 |
unknown |
ffmpeg |
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability... |
| CVE-2026-66035 |
unknown |
libssh2 |
libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer... |
| CVE-2026-66034 |
unknown |
libssh2 |
libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability... |
| CVE-2026-66032 |
unknown |
libssh2 |
libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the... |
| CVE-2026-65705 |
unknown |
ffmpeg |
FFmpeg versions 3.4 through 8.1.2 contain an out-of-bounds write vulnerability in the... |
| CVE-2026-16410 |
unknown |
firefox |
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in... |
| CVE-2026-16410 |
unknown |
thunderbird |
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in... |
| CVE-2026-16409 |
unknown |
firefox |
Invalid pointer in the Security: PSM component. This vulnerability was fixed in Firefox 153 and... |
| CVE-2026-16409 |
unknown |
thunderbird |
Invalid pointer in the Security: PSM component. This vulnerability was fixed in Firefox 153 and... |
| CVE-2026-16407 |
unknown |
firefox |
Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox... |
| CVE-2026-16407 |
unknown |
thunderbird |
Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox... |