Security Bugs
(Total: 1549, 1-20, 42.9889 ms)
| # | Comment | Popcon | Updated | Title |
|---|---|---|---|---|
|
normal
|
25 |
15 |
about 13 hours ago |
src:keystone lp-2159643: Delegated tokens (like ec2credential, application_credential, ...) can GET/PATCH/DELETE any credential including TOTP seeds (CVE-2026-pending)
|
|
normal |
24 |
1301 |
about 2 years ago |
freeradius Backport some security settings from upstream 3.2.5 release to mitigate BlastRADIUS
|
|
normal |
19 |
0 |
3 days ago |
src:golang-github-google-cel-go golang-github-google-cel-go: CVE-2026-83530
|
|
normal |
17 |
108983 |
about 1 year ago |
firefox-esr Please package a fork that respects users privacy
|
|
normal |
17 |
0 |
4 months ago |
libglycin-2-0 WARNING: Glycin running without sandbox
|
|
normal done |
16 |
39 |
4 months ago |
src:nova CVE-2026-46448 / OSSN-2026-022: Authenticated placement bypass in Nova via malicious os:scheduler_hints
|
|
normal
|
16 |
999 |
over 1 year ago |
src:checksecurity ITS: checksecurity
|
|
normal |
14 |
7875 |
about 1 month ago |
src:freeimage freeimage: dead upstream, open security issues
|
|
normal done |
13 |
56022 |
4 months ago |
screen hardcopy and screen-exchange are insecure by default
|
|
normal done |
13 |
28116 |
9 months ago |
src:amd64-microcode amd64-microcode: 2024-36350/TSA-SQ and CVE-2024-36357/TSA-L1
|
|
normal done |
12 |
26 |
about 1 month ago |
glance CVE-2026-71196, CVE-2026-71197, CVE-2026-71198, OSSA-2026-038: Multiple SSRF vulnerabilities in Glance web-download and HTTP image APIs
|
|
normal
|
12 |
539 |
9 months ago |
src:radare2 Is radare2 suitable for stable Debian releases?
|
|
normal done |
12 |
123971 |
14 days ago |
src:linux unprivileged user-triggerable use-after-free host panic bug
|
|
normal done |
12 |
0 |
6 months ago |
cpp-httplib CVE-2025-52887 CVE-2025-53628 CVE-2025-53629
|
|
normal done |
12 |
1770 |
10 days ago |
src:roundcube roundcube: Multiple security vulnerabilities
|
|
normal done |
11 |
107868 |
over 1 year ago |
src:djvulibre djvulibre: CVE-2025-53367
|
|
normal done |
11 |
2 |
6 days ago |
src:mistral CVE-2026-41283 OSSA-2026-020: Mistral policy enforcement bypass allows unauthorized public resource creation and arbitrary code execution
|
|
normal done |
11 |
5 |
5 days ago |
src:gnocchi Cross-project metric association bypass in Gnocchi
|
|
normal |
11 |
9698 |
about 1 year ago |
devscripts /usr/bin/uscan: uscan must not skip OpenPGP check after failed check in previous run
|
|
normal |
11 |
36946 |
almost 5 years ago |
spice-client-glib-usb-acl-helper SECURITY - normal users are allowed full access to USB devices per default
stable
testing
unstable
|
(Total: 1549, 1-20, 42.9889 ms)