Search CVE reports


Toggle filters

151 – 160 of 38218 results

Status is adjusted based on your filters.


CVE-2026-34519

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the reason parameter when creating a Response may be able to inject extra headers or similar...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34518

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, when following redirects to a different origin, aiohttp drops the Authorization header, but retains the Cookie...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34517

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, for some multipart form fields, aiohttp read the entire field into memory before checking client_max_size. This issue has...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34516

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, a response with an excessive number of multipart headers may be allowed to use more memory than intended, potentially...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34515

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, on Windows the static resource handler may expose information about a NTLMv2 remote path. This issue has been patched in...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34514

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the content_type parameter in aiohttp could use this to inject extra headers or similar exploits....

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34513

Medium priority
Needs evaluation

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an unbounded DNS cache could result in excessive memory usage possibly resulting in a DoS situation. This issue has been...

1 affected package

python-aiohttp

Package 20.04 LTS
python-aiohttp Needs evaluation
Show less packages

CVE-2026-34230

Medium priority
Needs evaluation

(Rack is a modular Ruby web server interface. Prior to versions 2.2.23, ...)

1 affected package

ruby-rack

Package 20.04 LTS
ruby-rack Needs evaluation
Show less packages

CVE-2026-33641

Medium priority
Needs evaluation

(Glances is an open-source system cross-platform monitoring tool. Prior ...)

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-33533

Medium priority
Needs evaluation

(Glances is an open-source system cross-platform monitoring tool. Prior ...)

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages