MEDIUM5.3CVE-2026-49342YARD is a documentation generation tool for the Ruby programming language.
HIGH7.1libde265 is an open source implementation of the h.265 video codec.
MEDIUM4.3libde265 is an open source implementation of the h.265 video codec.
HIGH7.1libde265 is an open source implementation of the h.265 video codec.
MEDIUM6.5A use-after-free vulnerability was found in FFmpeg's RASC video decoder.
MEDIUM6.1Allure Report: Stored XSS via unescaped ANSI helper in status message/trace rendering
MEDIUM6.2Allure Report: Path Traversal in HTTP Server Allows Arbitrary File Read
HIGH7.1A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation.
HIGH7.6A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation.
HIGH7.1An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation.
HIGH7.1A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation.
MEDIUM6.5libheif is a HEIF and AVIF file format decoder and encoder.
HIGH8.8CedarJava has policy injection vulnerability
HIGH8.8CedarJava has type confusion vulnerability
MEDIUM5.8guzzlehttp/guzzle: Dot-Only Cookie Domains Match All Hosts
MEDIUM5.9guzzlehttp/guzzle: Silent HTTPS-Proxy Downgrade to Cleartext
MEDIUM5.3NL Portal Backend Libraries: Unauthenticated form resolver forwards the privileged Objecten-API token to a caller-supplied URL (SSRF)
HIGH8.3libssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vulnerability in the sftp_symlink() function in src/sf…
MEDIUM6.5A path traversal in handling the "path" component of .repo files processed by libzypp before 17.38.13 in the 17.x series, or before 16.22.1…
MEDIUM6.1OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry.
MEDIUM5.4Coturn is a free open source implementation of TURN and STUN Server.
MEDIUM4.9libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation.
HIGH8.1Coturn is a free open source implementation of TURN and STUN Server.
MEDIUM4.8guzzlehttp/psr7: CRLF Injection in HTTP Start-Line Serialization
CRITICAL9.0HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's drl field that allo…