cad/admesh admesh-0.98.5_1 ! CVE-2026-2653 4.8 admesh normals.c stl_check_normal_vector heap-based overflow converters/uudeview uudeview-0.5.20_1 ! CVE-2008-2266 4.4 uulib/uunconc.c in UUDeview 0.5.20, as used in nzbget before 0.3.0 and possibly other prod databases/db5 db5-5.3.28_10 ! CVE-2017-3604 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3605 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3606 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3607 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3608 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3609 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3610 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3611 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3612 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3613 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3614 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3615 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3616 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2017-3617 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2020-2981 7.0 Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version tha ! CVE-2019-2708 3.3 libdb: Denial of service in the Data Store component databases/liquibase liquibase-4.3.5_2 ! CVE-2022-0839 9.8 Improper Restriction of XML External Entity Reference in liquibase/liquibase databases/phpliteadmin phpLiteAdmin-1.9.8.2 ! CVE-2021-46709 6.1 phpLiteAdmin through 1.9.8.2 allows XSS via the index.php newRows parameter (aka num or nu databases/sqlite2 sqlite-2.8.17_5 ! CVE-2017-10989 9.8 sqlite: Heap-buffer overflow in the getNodeSize function ! CVE-2019-19646 9.8 sqlite: pragma.c mishandles NOT NULL in an integrity_check PRAGMA command in certain cases ! CVE-2020-11656 9.8 sqlite: use-after-free in the ALTER TABLE implementation ! CVE-2026-11822 8.5 SQLite before 3.53.2 Memory Corruption in FTS5 Extension ! CVE-2026-11824 8.5 SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate ! CVE-2018-20346 8.1 sqlite: Multiple flaws in sqlite which can be triggered via corrupted internal databases ( ! CVE-2018-20506 8.1 sqlite: Multiple flaws in sqlite which can be triggered via corrupted internal databases ( ! CVE-2015-3414 7.5 sqlite: use of uninitialized memory when parsing collation sequences in src/where.c ! CVE-2015-3415 7.5 sqlite: invalid free() in src/vdbe.c ! CVE-2015-3416 7.5 sqlite: stack buffer overflow in src/printf.c ! CVE-2015-3717 7.5 Multiple buffer overflows in the printf functionality in SQLite, as used in Apple iOS befo ! CVE-2018-20505 7.5 sqlite: Multiple flaws in sqlite which can be triggered via corrupted internal databases ( ! CVE-2018-8740 7.5 sqlite: NULL pointer dereference with databases with schema corrupted with CREATE TABLE AS ! CVE-2020-11655 7.5 sqlite: malformed window-function query leads to DoS ! CVE-2022-35737 7.5 sqlite: an array-bounds overflow if billions of bytes are used in a string argument to a C ! CVE-2025-70873 7.5 sqlite: SQLite: Information Disclosure via Crafted ZIP File ! CVE-2025-6965 7.2 Integer Truncation on SQLite ! CVE-2020-13630 7.0 sqlite: Use-after-free in fts3EvalNextRow in ext/fts3/fts3.c ! CVE-2025-3277 6.9 SQLite: integer overflow in SQLite ! CVE-2016-6153 5.9 sqlite: Tempdir selection vulnerability ! CVE-2019-19645 5.5 sqlite: infinite recursion via certain types of self-referential views in conjunction with ! CVE-2020-13434 5.5 sqlite: integer overflow in sqlite3_str_vappendf function in printf.c ! CVE-2020-13435 5.5 sqlite: NULL pointer dereference in sqlite3ExprCodeTarget() ! CVE-2020-13631 5.5 sqlite: Virtual table can be renamed into the name of one of its shadow tables ! CVE-2020-13632 5.5 sqlite: NULL pointer dereference in ext/fts3/fts3_snippet.c via a crafted matchinfo() quer ! CVE-2020-15358 5.5 sqlite: heap-based buffer overflow in multiSelectOrderBy due to mishandling of query-flatt ! CVE-2023-7104 5.5 SQLite SQLite3 make alltest sqlite3session.c sessionReadRecord heap-based overflow ! CVE-2024-0232 4.7 Sqlite: use-after-free bug in jsonparseaddnodearray databases/sqlitemanager sqlitemanager-1.2.4 ! CVE-2012-5105 4.3 Multiple cross-site scripting (XSS) vulnerabilities in SQLiteManager 1.2.4 allow remote at deskutils/phpicalendar phpicalendar-RC7-2.4,1 ! CVE-2008-5840 7.5 PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting ! CVE-2008-5968 7.5 Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows re devel/allegro allegro-4.4.3.1_4 ! CVE-2021-36489 6.5 Buffer Overflow vulnerability in Allegro through 5.2.6 allows attackers to cause a denial devel/arm-elf-binutils arm-elf-binutils-2.47 ! CVE-2023-25584 6.3 Out of bounds read in parse_module function in bfd/vms-alpha.c ! CVE-2023-25585 4.7 Field `file_table` of `struct module *module` is uninitialized ! CVE-2023-25586 4.7 Local variable `ch_type` in function `bfd_init_section_decompress_status` can be uninitial ! CVE-2023-25588 4.7 Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab devel/flyspray flyspray-0.9.9.7_5 ! CVE-2017-15213 5.4 Stored XSS vulnerability in Flyspray before 1.0-rc6 allows an authenticated user to inject devel/gitolite2 gitolite2-2.3.1_1 ! CVE-2018-16976 8.1 Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) prope ! CVE-2018-20683 8.1 commands/rsync in Gitolite before 3.6.11, if .gitolite.rc enables rsync, mishandles the rs ! CVE-2013-7203 5.5 gitolite before commit fa06a34 might allow local users to read arbitrary files in reposito devel/gradle6 gradle6-6.9.4_2 ! CVE-2021-29428 8.8 Local privilege escalation through system temporary directory ! CVE-2026-22816 8.6 Gradle fails to disable repositories which can expose builds to malicious artifacts ! CVE-2026-22865 8.6 Gradle's failure to disable repositories failing to answer can expose builds to malicious ! CVE-2021-32751 7.5 Arbitrary code execution via specially crafted environment variables ! CVE-2022-23630 7.5 Dependency verification bypass in Gradle ! CVE-2023-35946 6.9 Dependency cache path traversal in Gradle ! CVE-2023-35947 6.9 Path traversal vulnerabilities in handling of Tar archives in Gradle ! CVE-2023-42445 6.8 Possible local file exfiltration by XML External entity injection ! CVE-2022-31156 6.6 Gradle's dependency verification can ignore checksum verification when signature verificat ! CVE-2021-29429 4.0 Information disclosure through temporary directory permissions ! CVE-2023-44387 3.2 Gradle has incorrect permission assignment for symlinked files used in copy or archiving o devel/gradle761 gradle761-7.6.1_2 ! CVE-2026-22816 8.6 Gradle fails to disable repositories which can expose builds to malicious artifacts ! CVE-2026-22865 8.6 Gradle's failure to disable repositories failing to answer can expose builds to malicious ! CVE-2023-35946 6.9 Dependency cache path traversal in Gradle ! CVE-2023-42445 6.8 Possible local file exfiltration by XML External entity injection ! CVE-2023-44387 3.2 Gradle has incorrect permission assignment for symlinked files used in copy or archiving o devel/libzookeeper libzookeeper-3.8.3 ! CVE-2026-24308 6.5 Apache ZooKeeper: Sensitive information disclosure in client configuration handling ! CVE-2026-24281 5.9 Apache ZooKeeper: Reverse-DNS fallback enables hostname verification bypass in ZooKeeper Z ! CVE-2024-23944 5.3 Apache ZooKeeper: Information disclosure in persistent watcher handling devel/log4net log4net-1.2.10_5 ! CVE-2018-1285 9.8 Apache log4net versions before 2.0.10 do not disable XML external entities when parsing lo ! CVE-2026-40021 6.3 Apache Log4net: Silent log event loss in XmlLayout and XmlLayoutSchemaLog4J due to unescap devel/node-thrift node-thrift-0.22.0_1 ! CVE-2026-55971 9.3 Apache Thrift: C++ ZLIB heap buffer overflow (write) in THeaderTransport::untransform() ! CVE-2026-48144 9.1 Apache Thrift: c_glib TLS Client Missing Hostname Verification ! CVE-2026-41636 8.7 Apache Thrift: Node.js skip() recursion ! CVE-2026-43871 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-c ! CVE-2026-48586 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-55968 8.7 Apache Thrift: Node.js quadratic-time DoS in server receive transports ! CVE-2026-55969 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-58389 8.7 Apache Thrift: Rust binary protocol non-strict path missing string size limit ! CVE-2026-58662 8.7 Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass ! CVE-2026-41604 8.2 Apache Thrift: Swift Range crash in skip() ! CVE-2026-48145 8.2 Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass ! CVE-2025-48431 7.5 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid point ! CVE-2026-41602 7.5 Apache Thrift: Go TFramedTransport uint32 overflow ! CVE-2026-41608 7.5 Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport ! CVE-2026-49158 7.5 Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb ! CVE-2026-41605 7.3 Apache Thrift: Swift Compact Protocol integer overflow ! CVE-2026-43869 7.3 Apache Thrift: TSSLTransportFactory.java hostname verification ! CVE-2026-43870 7.3 Apache Thrift: Node.js web_server.js multi-vulnerability ! CVE-2026-45112 6.9 Apache Thrift: Unbounded Read Leading to Denial of Service ! CVE-2026-55970 6.9 Apache Thrift: C++ heap out-of-bounds read in THeaderTransport::readHeaderFormat() ! CVE-2026-58023 6.9 Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path ! CVE-2026-41607 6.5 Apache Thrift: C++ JSON OOB read ! CVE-2026-66053 5.9 Apache Thrift: Python TSSLSocket Hostname Matcher Import ! CVE-2026-41606 5.3 Apache Thrift: c_glib dispatch stack overflow ! CVE-2026-43868 5.3 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern devel/rubymine rubymine-2023.1.1_4 ! CVE-2024-37051 9.3 GitHub access token could be exposed to third-party sites in JetBrains IDEs after version ! CVE-2025-43015 8.3 In JetBrains RubyMine before 2025.1 remote Interpreter overwrote ports to listen on all in devel/thrift thrift-0.22.0,1 ! CVE-2026-55971 9.3 Apache Thrift: C++ ZLIB heap buffer overflow (write) in THeaderTransport::untransform() ! CVE-2026-48144 9.1 Apache Thrift: c_glib TLS Client Missing Hostname Verification ! CVE-2026-41636 8.7 Apache Thrift: Node.js skip() recursion ! CVE-2026-43871 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-c ! CVE-2026-48586 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-55968 8.7 Apache Thrift: Node.js quadratic-time DoS in server receive transports ! CVE-2026-55969 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-58389 8.7 Apache Thrift: Rust binary protocol non-strict path missing string size limit ! CVE-2026-58662 8.7 Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass ! CVE-2026-41604 8.2 Apache Thrift: Swift Range crash in skip() ! CVE-2026-48145 8.2 Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass ! CVE-2025-48431 7.5 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid point ! CVE-2026-41602 7.5 Apache Thrift: Go TFramedTransport uint32 overflow ! CVE-2026-41608 7.5 Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport ! CVE-2026-49158 7.5 Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb ! CVE-2026-41605 7.3 Apache Thrift: Swift Compact Protocol integer overflow ! CVE-2026-43869 7.3 Apache Thrift: TSSLTransportFactory.java hostname verification ! CVE-2026-43870 7.3 Apache Thrift: Node.js web_server.js multi-vulnerability ! CVE-2026-45112 6.9 Apache Thrift: Unbounded Read Leading to Denial of Service ! CVE-2026-55970 6.9 Apache Thrift: C++ heap out-of-bounds read in THeaderTransport::readHeaderFormat() ! CVE-2026-58023 6.9 Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path ! CVE-2026-41607 6.5 Apache Thrift: C++ JSON OOB read ! CVE-2026-66053 5.9 Apache Thrift: Python TSSLSocket Hostname Matcher Import ! CVE-2026-41606 5.3 Apache Thrift: c_glib dispatch stack overflow ! CVE-2026-43868 5.3 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern devel/thrift-c_glib thrift-c_glib-0.22.0,1 ! CVE-2026-55971 9.3 Apache Thrift: C++ ZLIB heap buffer overflow (write) in THeaderTransport::untransform() ! CVE-2026-48144 9.1 Apache Thrift: c_glib TLS Client Missing Hostname Verification ! CVE-2026-41636 8.7 Apache Thrift: Node.js skip() recursion ! CVE-2026-43871 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-c ! CVE-2026-48586 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-55968 8.7 Apache Thrift: Node.js quadratic-time DoS in server receive transports ! CVE-2026-55969 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-58389 8.7 Apache Thrift: Rust binary protocol non-strict path missing string size limit ! CVE-2026-58662 8.7 Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass ! CVE-2026-41604 8.2 Apache Thrift: Swift Range crash in skip() ! CVE-2026-48145 8.2 Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass ! CVE-2025-48431 7.5 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid point ! CVE-2026-41602 7.5 Apache Thrift: Go TFramedTransport uint32 overflow ! CVE-2026-41608 7.5 Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport ! CVE-2026-49158 7.5 Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb ! CVE-2026-41605 7.3 Apache Thrift: Swift Compact Protocol integer overflow ! CVE-2026-43869 7.3 Apache Thrift: TSSLTransportFactory.java hostname verification ! CVE-2026-43870 7.3 Apache Thrift: Node.js web_server.js multi-vulnerability ! CVE-2026-45112 6.9 Apache Thrift: Unbounded Read Leading to Denial of Service ! CVE-2026-55970 6.9 Apache Thrift: C++ heap out-of-bounds read in THeaderTransport::readHeaderFormat() ! CVE-2026-58023 6.9 Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path ! CVE-2026-41607 6.5 Apache Thrift: C++ JSON OOB read ! CVE-2026-66053 5.9 Apache Thrift: Python TSSLSocket Hostname Matcher Import ! CVE-2026-41606 5.3 Apache Thrift: c_glib dispatch stack overflow ! CVE-2026-43868 5.3 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern devel/thrift-cpp thrift-cpp-0.22.0_1,1 ! CVE-2026-55971 9.3 Apache Thrift: C++ ZLIB heap buffer overflow (write) in THeaderTransport::untransform() ! CVE-2026-48144 9.1 Apache Thrift: c_glib TLS Client Missing Hostname Verification ! CVE-2026-41636 8.7 Apache Thrift: Node.js skip() recursion ! CVE-2026-43871 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-c ! CVE-2026-48586 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-55968 8.7 Apache Thrift: Node.js quadratic-time DoS in server receive transports ! CVE-2026-55969 8.7 Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: ! CVE-2026-58389 8.7 Apache Thrift: Rust binary protocol non-strict path missing string size limit ! CVE-2026-58662 8.7 Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass ! CVE-2026-41604 8.2 Apache Thrift: Swift Range crash in skip() ! CVE-2026-48145 8.2 Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass ! CVE-2025-48431 7.5 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid point ! CVE-2026-41602 7.5 Apache Thrift: Go TFramedTransport uint32 overflow ! CVE-2026-41608 7.5 Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport ! CVE-2026-49158 7.5 Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb ! CVE-2026-41605 7.3 Apache Thrift: Swift Compact Protocol integer overflow ! CVE-2026-43869 7.3 Apache Thrift: TSSLTransportFactory.java hostname verification ! CVE-2026-43870 7.3 Apache Thrift: Node.js web_server.js multi-vulnerability ! CVE-2026-45112 6.9 Apache Thrift: Unbounded Read Leading to Denial of Service ! CVE-2026-55970 6.9 Apache Thrift: C++ heap out-of-bounds read in THeaderTransport::readHeaderFormat() ! CVE-2026-58023 6.9 Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path ! CVE-2026-41607 6.5 Apache Thrift: C++ JSON OOB read ! CVE-2026-66053 5.9 Apache Thrift: Python TSSLSocket Hostname Matcher Import ! CVE-2026-41606 5.3 Apache Thrift: c_glib dispatch stack overflow ! CVE-2026-43868 5.3 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern devel/zookeeper zookeeper-3.8.3_2 ! CVE-2026-24308 6.5 Apache ZooKeeper: Sensitive information disclosure in client configuration handling ! CVE-2026-24281 5.9 Apache ZooKeeper: Reverse-DNS fallback enables hostname verification bypass in ZooKeeper Z ! CVE-2024-23944 5.3 Apache ZooKeeper: Information disclosure in persistent watcher handling ftp/oftpd oftpd-0.3.7_2 ! CVE-2005-2239 5.0 oftpd 0.3.7 allows remote attackers to cause a denial of service via a USER command with a games/0verkill 0verkill-0.16_2 ! CVE-2004-0238 7.2 Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execu games/abuse_sdl abuse_sdl-0.8_9 ! CVE-2005-0098 4.6 Multiple buffer overflows in the SDL port of abuse (abuse-SDL) before 2.00 allow local use ! CVE-2005-0099 2.1 The SDL port of abuse (abuse-SDL) before 2.00 does not properly drop privileges before cre games/falconseye falconseye-1.9.3_12 ! CVE-2003-0358 4.6 Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, wh games/ioquake3 ioquake3-1.36_17 ! CVE-2017-11721 9.8 Buffer overflow in ioquake3 before 2017-08-02 allows remote attackers to cause a denial of ! CVE-2017-6903 7.8 In ioquake3 before 2017-03-14, the auto-downloading feature has insufficient content restr games/ioquake3-server ioquake3-server-1.36_17 ! CVE-2017-11721 9.8 Buffer overflow in ioquake3 before 2017-08-02 allows remote attackers to cause a denial of ! CVE-2017-6903 7.8 In ioquake3 before 2017-03-14, the auto-downloading feature has insufficient content restr games/tremulous tremulous-1.1.0_14 ! CVE-2011-3012 10.0 The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUr games/xboing xboing-2.4_7 ! CVE-2004-0149 4.6 Multiple buffer overflows in xboing before 2.4 allow local users to gain privileges. irc/srvx srvx-1.3.1 ! CVE-2014-5508 3.5 Multiple integer overflows in the HelpServ module (mod-helpserv.c) in srvx 1.3.1 allow rem java/bouncycastle bouncycastle-1.83_1 ! CVE-2025-14813 9.3 GOSTCTR implementation unable to process more than 255 blocks correctly ! CVE-2026-58062 9.3 Stapled OCSP response accepted without binding to the checked certificate ! CVE-2026-59638 9.3 JSSE hostname verifier CN-fallback enabled by default despite documented opt-in ! CVE-2026-59650 9.3 MTI/A0 DH agreement exponentiates unvalidated peer value ! CVE-2026-8763 9.3 Name Constraints bypass via trailing dot in rfc822Name and URI ! CVE-2026-5598 8.9 Non-constant time comparisons risk private key leakage in FrodoKEM. ! CVE-2026-12802 8.7 CMS AuthEnvelopedData fails to enforce tag-length on decryption ! CVE-2026-12803 8.7 KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery) ! CVE-2026-12816 8.7 IESEngine stream-mode MAC forgery via length-dependent KDF split ! CVE-2026-12817 8.7 OpenPGP AEAD decryption skips final tag on chunk-aligned data ! CVE-2026-12852 8.7 MLS wire decoder allocates attacker-declared opaque length before bounds check ! CVE-2026-12860 8.7 RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path ! CVE-2026-13506 8.7 Lazy ASN.1 sequence forcing resets nesting-depth guard ! CVE-2026-14682 8.7 Possible OOM from unbounded up-front allocation on a definite-length read ! CVE-2026-3505 8.7 Unbounded PGP AEAD chunk size leads to pre-auth resource exhaustion. ! CVE-2026-58059 8.7 Quadratic-time escaping when stringifying X.500 distinguished names ! CVE-2026-58060 8.7 HSS public-key level count unbounded, enabling huge allocation on verify ! CVE-2026-58061 8.7 CCM-family modes write plaintext to caller buffer before tag check ! CVE-2026-59639 8.7 CMS verifySignatures returns true for SignedData with zero signers ! CVE-2026-59640 8.7 OpenPGP CFB quick-check oracle active on symmetric/session-key paths ! CVE-2026-59641 8.7 S/MIME validator trusts signer-asserted signingTime for path validation ! CVE-2026-59642 8.7 CMS AuthenticatedData content not bound to MAC when authAttrs present ! CVE-2026-59643 8.7 OpenPGP inline-signature policy failures silently ignored ! CVE-2026-59644 8.7 MLS hash-ratchet honours arbitrary 32-bit generation counter from sender ! CVE-2026-59645 8.7 OER parser recurses without depth limit on self-referential IEEE 1609.2 schema ! CVE-2026-59646 8.7 DTLS handshake reassembler allocates buffer from unchecked 24-bit length ! CVE-2026-59649 8.7 OpenPGP user-attribute subpacket length bounded only by JVM max memory ! CVE-2026-12185 7.1 BKS/UBER keystore allocates from untrusted lengths before integrity check ! CVE-2026-59651 7.1 BKS keystore accepts legacy version with 16-bit integrity MAC key ! CVE-2026-59647 6.9 CRMF/CMP password-MAC honours unbounded iteration count ! CVE-2026-59648 6.9 OpenPGP Argon2 S2K honours attacker-chosen memory and passes ! CVE-2026-59652 6.9 LDAP filter injection in legacy jdk1.4 LDAPStoreHelper ! CVE-2026-5588 6.3 PKIX draft CompositeVerifier accepts empty signature sequence as valid. ! CVE-2026-0636 5.5 LDAP Injection Vulnerability in LDAPStoreHelper.java ! CVE-2026-13586 5.3 PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS) ! CVE-2026-15055 5.3 PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input ! CVE-2026-58063 5.3 BCFKS keystore load honours unbounded KDF cost from untrusted file lang/gnatcross-binutils-aarch64 gnatcross-binutils-aarch64-2.27_1 ! CVE-2017-12448 7.8 binutils: heap use after free in bfd_cache_close function ! CVE-2017-12449 7.8 binutils: out of bounds heap read in _bfd_vms_save_sized_string function ! CVE-2017-12450 7.8 binutils: out of bounds heap write in alpha_vms_object_p function ! CVE-2017-12451 7.8 binutils: out of bounds stack read in _bfd_xcoff_read_ar_hdr function ! CVE-2017-12452 7.8 binutils: out of bounds heap read in bfd_mach_o_i386_canonicalize_one_reloc function ! CVE-2017-12453 7.8 binutils: out of bounds heap read in __bfd_vms_slurp_eeom function ! CVE-2017-12454 7.8 binutils: Arbitrary memory read in _bfd_vms_slurp_egs function ! CVE-2017-12455 7.8 binutils: out of bounds heap read in evax_bfd_print_emh function ! CVE-2017-12456 7.8 binutils: out of bounds heap read in read_symbol_stabs_debugging_inf function ! CVE-2017-12457 7.8 binutils: NULL pointer dereference in bfd_make_section_with_flags function ! CVE-2017-12458 7.8 binutils: out of bounds heap read in nlm_swap_auxiliary_headers_in function ! CVE-2017-12459 7.8 binutils: out of bounds heap write in bfd_mach_o_read_symtab_strtab function ! CVE-2018-1000876 7.8 binutils: integer overflow leads to heap-based buffer overflow in objdump ! CVE-2018-19931 7.8 binutils: Heap-based buffer overflow in bfd_elf32_swap_phdr_in function resulting in a den ! CVE-2021-37322 7.8 binutils: use-after-free in c++filt in cplus-dem.c ! CVE-2021-45078 7.8 binutils: out-of-bounds write in stab_xcoff_builtin_type() in stabs.c ! CVE-2022-44840 7.8 binutils: heap-based buffer overflow in find_section_in_set() in readelf.c ! CVE-2022-45703 7.8 binutils: heap-based buffer overflow in display_debug_section() in readelf.c ! CVE-2022-47673 7.8 binutils: out-of-bounds read in parse_module() in bfd/vms-alpha.c via addr2line ! CVE-2022-47695 7.8 binutils: uninitialized field in bfd_mach_o_get_synthetic_symtab() in match-o.c ! CVE-2022-47696 7.8 binutils: segmentation fault in compare_symbols() in objdump.c ! CVE-2026-6846 7.8 Binutils: binutils: arbitrary code execution via malformed xcoff object file processing ! CVE-2020-35342 7.5 binutils: uninitialized heap memory in tic4x_print_cond() in opcodes/tic4x-dis.c ! CVE-2021-46174 7.5 binutils: heap-based buffer overflow in bfd_getl32() in libbfd.c via objdump ! CVE-2021-20197 6.3 binutils: Race window allows users to own arbitrary files ! CVE-2023-25584 6.3 Out of bounds read in parse_module function in bfd/vms-alpha.c ! CVE-2025-0840 6.3 GNU Binutils objdump.c disassemble_bytes stack-based overflow ! CVE-2025-69647 6.2 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data ! CVE-2025-69648 6.2 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists ! CVE-2025-69652 6.2 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug inf ! CVE-2020-35494 6.1 binutils: usage of unitialized heap in tic4x_print_cond function in opcodes/tic4x-dis.c ! CVE-2018-19932 5.5 binutils: Integer overflow due to the IS_CONTAINED_BY_LMA macro resulting in a denial of s ! CVE-2018-20671 5.5 binutils: Integer overflow in load_specific_debug_section function ! CVE-2019-1010204 5.5 binutils: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read in gol ! CVE-2020-19724 5.5 binutils: memory leak in get_data() in nm.c ! CVE-2020-21490 5.5 binutils: memory leak in get_field() in microblaze-dis.c ! CVE-2020-35493 5.5 binutils: heap-based buffer overflow in bfd_pef_parse_function_stubs function in bfd/pef.c ! CVE-2020-35495 5.5 binutils: NULL pointer dereference in bfd_pef_parse_symbols function in bfd/pef.c ! CVE-2020-35496 5.5 binutils: NULL pointer dereference in bfd_pef_scan_start_address function in bfd/pef.c ! CVE-2020-35507 5.5 binutils: NULL pointer dereference in bfd_pef_parse_function_stubs function in bfd/pef.c ! CVE-2022-38533 5.5 binutils: heap-based buffer overflow in bfd_getl32() when called by strip_main() in objcop ! CVE-2022-48063 5.5 binutils: excessive memory consumption in load_separate_debug_files() in dwarf.c ! CVE-2022-48064 5.5 binutils: excessive memory consumption in _bfd_dwarf2_find_nearest_line_with_alt() in dwar ! CVE-2022-48065 5.5 binutils: memory leak in find_abstract_instance() in dwarf2.c ! CVE-2025-69649 5.5 binutils: NULL pointer dereference in readelf via crafted ELF binary ! CVE-2025-69644 5.0 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug inform ! CVE-2025-5244 4.8 GNU Binutils ld elflink.c elf_gc_sweep memory corruption ! CVE-2025-5245 4.8 GNU Binutils objdump debug.c debug_type_samep memory corruption ! CVE-2023-25585 4.7 Field `file_table` of `struct module *module` is uninitialized ! CVE-2023-25586 4.7 Local variable `ch_type` in function `bfd_init_section_decompress_status` can be uninitial ! CVE-2023-25588 4.7 Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab lang/gnatdroid-binutils-x86 gnatdroid-binutils-x86-2.27_1 ! CVE-2017-12448 7.8 binutils: heap use after free in bfd_cache_close function ! CVE-2017-12449 7.8 binutils: out of bounds heap read in _bfd_vms_save_sized_string function ! CVE-2017-12450 7.8 binutils: out of bounds heap write in alpha_vms_object_p function ! CVE-2017-12451 7.8 binutils: out of bounds stack read in _bfd_xcoff_read_ar_hdr function ! CVE-2017-12452 7.8 binutils: out of bounds heap read in bfd_mach_o_i386_canonicalize_one_reloc function ! CVE-2017-12453 7.8 binutils: out of bounds heap read in __bfd_vms_slurp_eeom function ! CVE-2017-12454 7.8 binutils: Arbitrary memory read in _bfd_vms_slurp_egs function ! CVE-2017-12455 7.8 binutils: out of bounds heap read in evax_bfd_print_emh function ! CVE-2017-12456 7.8 binutils: out of bounds heap read in read_symbol_stabs_debugging_inf function ! CVE-2017-12457 7.8 binutils: NULL pointer dereference in bfd_make_section_with_flags function ! CVE-2017-12458 7.8 binutils: out of bounds heap read in nlm_swap_auxiliary_headers_in function ! CVE-2017-12459 7.8 binutils: out of bounds heap write in bfd_mach_o_read_symtab_strtab function ! CVE-2018-1000876 7.8 binutils: integer overflow leads to heap-based buffer overflow in objdump ! CVE-2018-19931 7.8 binutils: Heap-based buffer overflow in bfd_elf32_swap_phdr_in function resulting in a den ! CVE-2021-37322 7.8 binutils: use-after-free in c++filt in cplus-dem.c ! CVE-2021-45078 7.8 binutils: out-of-bounds write in stab_xcoff_builtin_type() in stabs.c ! CVE-2022-44840 7.8 binutils: heap-based buffer overflow in find_section_in_set() in readelf.c ! CVE-2022-45703 7.8 binutils: heap-based buffer overflow in display_debug_section() in readelf.c ! CVE-2022-47673 7.8 binutils: out-of-bounds read in parse_module() in bfd/vms-alpha.c via addr2line ! CVE-2022-47695 7.8 binutils: uninitialized field in bfd_mach_o_get_synthetic_symtab() in match-o.c ! CVE-2022-47696 7.8 binutils: segmentation fault in compare_symbols() in objdump.c ! CVE-2026-6846 7.8 Binutils: binutils: arbitrary code execution via malformed xcoff object file processing ! CVE-2020-35342 7.5 binutils: uninitialized heap memory in tic4x_print_cond() in opcodes/tic4x-dis.c ! CVE-2021-46174 7.5 binutils: heap-based buffer overflow in bfd_getl32() in libbfd.c via objdump ! CVE-2021-20197 6.3 binutils: Race window allows users to own arbitrary files ! CVE-2023-25584 6.3 Out of bounds read in parse_module function in bfd/vms-alpha.c ! CVE-2025-0840 6.3 GNU Binutils objdump.c disassemble_bytes stack-based overflow ! CVE-2025-69647 6.2 binutils: infinite loop in readelf via crafted binary with malformed DWARF loclists data ! CVE-2025-69648 6.2 binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists ! CVE-2025-69652 6.2 binutils: abort in readelf via crafted ELF binary with malformed DWARF abbrev or debug inf ! CVE-2020-35494 6.1 binutils: usage of unitialized heap in tic4x_print_cond function in opcodes/tic4x-dis.c ! CVE-2018-19932 5.5 binutils: Integer overflow due to the IS_CONTAINED_BY_LMA macro resulting in a denial of s ! CVE-2018-20671 5.5 binutils: Integer overflow in load_specific_debug_section function ! CVE-2019-1010204 5.5 binutils: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read in gol ! CVE-2020-19724 5.5 binutils: memory leak in get_data() in nm.c ! CVE-2020-21490 5.5 binutils: memory leak in get_field() in microblaze-dis.c ! CVE-2020-35493 5.5 binutils: heap-based buffer overflow in bfd_pef_parse_function_stubs function in bfd/pef.c ! CVE-2020-35495 5.5 binutils: NULL pointer dereference in bfd_pef_parse_symbols function in bfd/pef.c ! CVE-2020-35496 5.5 binutils: NULL pointer dereference in bfd_pef_scan_start_address function in bfd/pef.c ! CVE-2020-35507 5.5 binutils: NULL pointer dereference in bfd_pef_parse_function_stubs function in bfd/pef.c ! CVE-2022-38533 5.5 binutils: heap-based buffer overflow in bfd_getl32() when called by strip_main() in objcop ! CVE-2022-48063 5.5 binutils: excessive memory consumption in load_separate_debug_files() in dwarf.c ! CVE-2022-48064 5.5 binutils: excessive memory consumption in _bfd_dwarf2_find_nearest_line_with_alt() in dwar ! CVE-2022-48065 5.5 binutils: memory leak in find_abstract_instance() in dwarf2.c ! CVE-2025-69649 5.5 binutils: NULL pointer dereference in readelf via crafted ELF binary ! CVE-2025-69644 5.0 binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug inform ! CVE-2025-5244 4.8 GNU Binutils ld elflink.c elf_gc_sweep memory corruption ! CVE-2025-5245 4.8 GNU Binutils objdump debug.c debug_type_samep memory corruption ! CVE-2023-25585 4.7 Field `file_table` of `struct module *module` is uninitialized ! CVE-2023-25586 4.7 Local variable `ch_type` in function `bfd_init_section_decompress_status` can be uninitial ! CVE-2023-25588 4.7 Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab lang/v8 v8-10.4.132.20_4 ! CVE-2024-1939 8.8 Type Confusion in V8 in Google Chrome prior to 122.0.6261.94 allowed a remote attacker to ! CVE-2026-85046 8.8 KEV Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to lang/v8-beta v8-beta-10.4.132.20_4 ! CVE-2024-1939 8.8 Type Confusion in V8 in Google Chrome prior to 122.0.6261.94 allowed a remote attacker to ! CVE-2026-85046 8.8 KEV Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to multimedia/xine xine-0.99.14_5 ! CVE-2008-5237 10.0 Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allo ! CVE-2008-5235 9.3 xine-lib: various flaws (CVE-2008-5234 CVE-2008-5235 CVE-2008-5236 CVE-2008-5237 CVE-2008- ! CVE-2008-5236 9.3 Multiple heap-based buffer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier vers ! CVE-2008-5238 7.1 Integer overflow in the real_parse_mdpr function in demux_real.c in xine-lib 1.1.12, and o net-mgmt/nagios nagios-3.5.1_12 ! CVE-2008-4796 10.0 snoopy: command execution via shell metacharacters ! CVE-2008-7313 9.8 snoopy: incomplete fixes for command execution flaws ! CVE-2014-5009 9.8 snoopy: incomplete fixes for command execution flaws ! CVE-2016-9565 9.8 nagios: Command injection via curl in MagpieRSS ! CVE-2016-10089 7.8 nagios: Privilege escalation due to incomplete fix for CVE-2016-8641 ! CVE-2016-9566 7.8 nagios: Privilege escalation issue ! CVE-2013-7205 6.4 nagios: denial of service due to off-by-one flaw in process_cgivars() ! CVE-2013-4214 6.3 core: html/rss-newsfeed.php insecure temporary file usage ! CVE-2017-12847 6.3 nagios: Incorrect permissions for PID file ! CVE-2013-7108 5.5 nagios: denial of service due to off-by-one flaw in process_cgivars() ! CVE-2018-13441 5.5 nagios: NULL pointer dereference in qh_help in base/query-handler.c ! CVE-2014-1878 5.0 nagios: possible buffer overflows in cmd.cgi net/avahi-sharp avahi-sharp-0.8_2 ! CVE-2021-26720 7.8 avahi-daemon-check-dns.sh in the Debian avahi package through 0.8-4 is executed as root vi ! CVE-2025-68468 6.5 Avahi has a reachable assertion in lookup_multicast_callback ! CVE-2025-68471 6.5 Avahi has a reachable assertion in lookup_start ! CVE-2026-24401 6.5 Avahi has Uncontrolled Recursion in lookup_handle_cname function ! CVE-2023-38469 6.2 Reachable assertion in avahi_dns_packet_append_record ! CVE-2023-38470 6.2 Reachable assertion in avahi_escape_label ! CVE-2023-38471 6.2 Reachable assertion in dbus_set_host_name ! CVE-2023-38472 6.2 Reachable assertion in avahi_rdata_parse ! CVE-2023-38473 6.2 Reachable assertion in avahi_alternative_host_name ! CVE-2021-3468 5.5 avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket ! CVE-2025-59529 5.5 simple protocol server ignores accepts unlimited connections and logs failures without lim ! CVE-2025-68276 5.5 Avahi has a reachable assertion in avahi_wide_area_scan_cache ! CVE-2026-34933 5.5 Avahi: Reachable assertion in `transport_flags_from_domain()` via conflicting publish flag net/corosync2 corosync2-2.4.6_2 ! CVE-2025-30472 9.0 corosync: Stack buffer overflow from 'orf_token_endian_convert' net/l2tpd l2tpd-0.69_12 ! CVE-2004-0649 10.0 Buffer overflow in write_packet in control.c for l2tpd may allow remote attackers to execu net/vde vde-1.5.7_1 ! CVE-2017-16638 9.8 The Gentoo net-misc/vde package before version 2.3.2-r4 may allow members of the "qemu" gr print/pstotext pstotext-1.9_8 ! CVE-2005-2536 7.5 pstotext before 1.8g does not properly use the "-dSAFER" option when calling Ghostscript t ! CVE-2006-5869 5.1 pstotext before 1.9 allows user-assisted attackers to execute arbitrary commands via shell security/clamav-lts clamav-lts-1.4.4_5,1 ! CVE-2026-20213 7.5 ClamAV PE File Format Processing Out-of-Bounds Memory Corruption Vulnerability ! CVE-2026-20214 7.5 ClamAV FSG File Format Processing Out-of-Bounds Memory Corruption Vulnerability ! CVE-2026-20215 7.5 ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability ! CVE-2026-20216 7.5 ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability ! CVE-2026-20217 7.5 ClamAV PESpin File Format Processing Out-of-Bounds Memory Corruption Vulnerability ! CVE-2026-20243 7.5 ClamAV ALZ Archive Processing Denial of Service Vulnerability ! CVE-2026-20244 7.5 ClamAV DMG File Processing Denial of Service Vulnerability security/py-tlslite py312-tlslite-0.4.9_2 ! CVE-2015-3220 7.5 The tlslite library before 0.4.9 for Python allows remote attackers to trigger a denial of sysutils/flexbackup flexbackup-1.2.1_8 ! CVE-2005-4802 4.6 Flexbackup 1.2.1 and earlier allows local users to overwrite files and execute code via a sysutils/froxlor froxlor-2.3.5 ! CVE-2026-41228 10.0 Froxlor has Local File Inclusion via path traversal in API `def_language` parameter that l ! CVE-2026-41229 9.1 Froxlor has a PHP Code Injection via Unescaped Single Quotes in userdata.inc.php Generatio ! CVE-2026-62988 9.0 Froxlor: Credential and 2FA secret disclosure via Froxlor API endpoints ! CVE-2026-54347 8.7 Froxlor: Stored XSS in DNS TXT Record Content Allows Customer-to-Admin Account Takeover ! CVE-2026-41237 8.6 Froxlor has an incomplete fix for CVE-2026-30932 ! CVE-2026-41230 8.5 Froxlor has a BIND Zone File Injection via Unsanitized DNS Record Content in DomainZones:: ! CVE-2026-52793 8.1 Froxlor: API Authentication bypasses 2FA Authentication ! CVE-2026-41234 7.6 Froxlor: BIND Zone File Injection via TXT Record Content ! CVE-2026-41231 7.5 Froxlor has Incomplete Symlink Validation in DataDump.add() that Allows Arbitrary Director ! CVE-2026-54348 7.2 Froxlor: Second-Order SQL Injection via `Admins.add` `ipaddress` Parameter Allows Full Dat ! CVE-2026-55593 6.5 Froxlor: CSRF Vulnerability in Froxlor AJAX Endpoint — Missing Cross-Site Request Forgery ! CVE-2026-41233 5.4 Froxlor has a Reseller Domain Quota Bypass via Unvalidated adminid Parameter in Domains.ad ! CVE-2026-54543 5.4 Froxlor DomainZones.add allows DNS zone-file RR injection via record/type fields ! CVE-2026-41232 5.0 Froxlor has an Email Sender Alias Domain Ownership Bypass via Wrong Array Index that Allow textproc/antiword antiword-0.37_5 ! CVE-2014-8123 5.0 Buffer overflow in the bGetPPS function in wordole.c in Antiword 0.37 allows remote attack textproc/catdoc catdoc-0.95_1 ! CVE-2024-52035 8.4 An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser ! CVE-2024-54028 8.4 An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality o ! CVE-2017-11110 7.8 The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of ! CVE-2023-31979 7.8 Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_f ! CVE-2023-46345 7.5 Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2cs ! CVE-2023-41633 5.5 Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2cs textproc/ezxml ezxml-0.8.6 ! CVE-2021-26220 8.1 The ezxml_toxml function in ezxml 0.8.6 and earlier is vulnerable to OOB write when openin ! CVE-2021-26221 8.1 The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB write when opening ! CVE-2021-26222 8.1 The ezxml_new function in ezXML 0.8.6 and earlier is vulnerable to OOB write when opening ! CVE-2019-20006 7.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content puts ! CVE-2021-31598 7.5 An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_decode() performs ! CVE-2019-20005 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while par ! CVE-2019-20007 6.5 An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezxml_str2utf8, while p ! CVE-2019-20198 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_ent_ok() mishandl ! CVE-2019-20199 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while par ! CVE-2019-20200 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while par ! CVE-2019-20201 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandl ! CVE-2019-20202 6.5 An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content() tr ! CVE-2021-30485 6.5 An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd(), w ! CVE-2021-31229 6.5 An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd() pe ! CVE-2021-31347 6.5 An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_parse_str() perfo ! CVE-2021-31348 6.5 An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_parse_str() perfo ! CVE-2022-30045 6.5 mapcache: incorrect memory handling in ezml support leading to a heap out-of-bounds read textproc/tinyxml tinyxml-2.6.2_4 ! CVE-2021-42260 7.5 TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp ! CVE-2023-34194 7.5 StringEqual in TiXmlDeclaration::Parse in tinyxmlparser.cpp in TinyXML through 2.6.2 has a www/e107 e107-2.3.6 ! CVE-2026-72599 9.8 e107 e107 - SQL Injection ! CVE-2026-57859 7.7 e107 Second-Order Code Execution via eval()-Based Deserialization in e_array::unserialize( www/kannel kannel-1.4.4_15,1 ! CVE-2017-14609 7.8 The server daemons in Kannel 1.5.0 and earlier create a PID file after dropping privileges www/man2web man2web-0.88_3 ! CVE-2005-2812 7.5 man2web allows remote attackers to execute arbitrary commands via -P arguments. www/rt44 rt44-4.4.9 ! CVE-2026-44231 9.1 RT: Privilege escalation and information disclosure via REST 2.0 user collection endpoint ! CVE-2026-41076 8.1 RT: LDAP authentication bypass via empty password ! CVE-2026-41073 4.6 RT: Spreadsheet downloads vulnerable to CSV/formula injection in Microsoft Excel and simil www/serendipity serendipity-2.5.0_1 ! CVE-2026-67351 8.7 Serendipity < 2.6.1 Authentication Bypass via Username Collision ! CVE-2024-58282 8.6 Serendipity 2.5.0 Remote Code Execution via Authenticated Media Upload ! CVE-2026-73629 8.4 Serendipity before 2.6.0 SSRF via hex IPv4 and IPv6 addresses ! CVE-2026-39971 7.2 Serendipity: Host Header Injection leads to SMTP header injection via unvalidated HTTP_HOS ! CVE-2026-39963 6.9 Serendipity: Host Header Injection enables authentication cookie scoping to an attacker-co ! CVE-2026-73628 5.3 Serendipity 2.3.5 Reflected XSS via search clean-URL route ! CVE-2026-67350 2.1 Serendipity < 2.6.1 Open Redirect via exit.php x11-toolkits/plib plib-1.8.5_8 ! CVE-2021-38714 8.8 In Plib through 1.85, there is an integer overflow vulnerability that could result in arbi 3281 port(s): 175 with CPE, 57 affected, 0 with only unconfirmed CVEs, 19 with no known CVEs; 3106 without CPE info, 0 make error(s) [maintainer: ports@FreeBSD.org]. 6 finding(s) for disputed CVEs hidden (--include-disputed). 23 link(s) to CVEs rejected by their CNA skipped. ! = affected (CNA ranges, else NVD CPE data) ? = linked CVE without usable version data