Security Bugs

(Total: 1549, 1-20, 42.9889 ms)

# Comment Popcon Updated Title

#1149303

normal

  25

  15

about 13 hours ago
src:keystone lp-2159643: Delegated tokens (like ec2credential, application_credential, ...) can GET/PATCH/DELETE any credential including TOTP seeds (CVE-2026-pending)

#1076022

normal

  24

  1301

about 2 years ago
freeradius Backport some security settings from upstream 3.2.5 release to mitigate BlastRADIUS

#1147513

normal

  19

  0

3 days ago
src:golang-github-google-cel-go golang-github-google-cel-go: CVE-2026-83530

#1099130

normal

  17

  108983

about 1 year ago
firefox-esr Please package a fork that respects users privacy

#1127671

normal

  17

  0

4 months ago
libglycin-2-0 WARNING: Glycin running without sandbox

#1140149

normal

done

  16

  39

4 months ago
src:nova CVE-2026-46448 / OSSN-2026-022: Authenticated placement bypass in Nova via malicious os:scheduler_hints

#1087512

normal

  16

  999

over 1 year ago
src:checksecurity ITS: checksecurity

#1121912

normal

  14

  7875

about 1 month ago
src:freeimage freeimage: dead upstream, open security issues

#1100699

normal

done

  13

  56022

4 months ago
screen hardcopy and screen-exchange are insecure by default

#1109035

normal

done

  13

  28116

9 months ago
src:amd64-microcode amd64-microcode: 2024-36350/TSA-SQ and CVE-2024-36357/TSA-L1

#1146594

normal

done

  12

  26

about 1 month ago
glance CVE-2026-71196, CVE-2026-71197, CVE-2026-71198, OSSA-2026-038: Multiple SSRF vulnerabilities in Glance web-download and HTTP image APIs

#950372

normal

  12

  539

9 months ago
src:radare2 Is radare2 suitable for stable Debian releases?

#1144314

normal

done

  12

  123971

14 days ago
src:linux unprivileged user-triggerable use-after-free host panic bug

#1109340

normal

done

  12

  0

6 months ago
cpp-httplib CVE-2025-52887 CVE-2025-53628 CVE-2025-53629

#1146838

normal

done

  12

  1770

10 days ago
src:roundcube roundcube: Multiple security vulnerabilities

#1108729

normal

done

  11

  107868

over 1 year ago
src:djvulibre djvulibre: CVE-2025-53367

#1138843

normal

done

  11

  2

6 days ago
src:mistral CVE-2026-41283 OSSA-2026-020: Mistral policy enforcement bypass allows unauthorized public resource creation and arbitrary code execution

#1150009

normal

done

  11

  5

5 days ago
src:gnocchi Cross-project metric association bypass in Gnocchi

#1109251

normal

  11

  9698

about 1 year ago
devscripts /usr/bin/uscan: uscan must not skip OpenPGP check after failed check in previous run

#765017

normal

  11

  36946

almost 5 years ago
spice-client-glib-usb-acl-helper SECURITY - normal users are allowed full access to USB devices per default
stable testing unstable

(Total: 1549, 1-20, 42.9889 ms)