Search CVE reports


Toggle filters

721 – 730 of 46705 results

Status is adjusted based on your filters.


CVE-2026-88058

Medium priority
Needs evaluation

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR)...

1 affected package

angular.js

Package 24.04 LTS
angular.js Needs evaluation
Show less packages

CVE-2026-88057

Medium priority
Needs evaluation

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.28, 21.2.20, and 22.1.0, Angular's compiler and runtime in @angular/core and...

1 affected package

angular.js

Package 24.04 LTS
angular.js Needs evaluation
Show less packages

CVE-2026-88056

Medium priority
Needs evaluation

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular Server-Side Rendering in @angular/platform-server...

1 affected package

angular.js

Package 24.04 LTS
angular.js Needs evaluation
Show less packages

CVE-2026-88036

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB C Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal...

1 affected package

mongo-c-driver

Package 24.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-88035

Medium priority

Not in release

A size check in the client-side authentication path of the MongoDB C Driver can wrap around, so an unusually large user-name value is accepted and copied past the end of a small buffer. A party able to set the driver's connection...

1 affected package

mongodb

Package 24.04 LTS
mongodb Not in release
Show less packages

CVE-2026-88034

Medium priority

Not in release

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB C++ Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

mongo-cxx-driver

Package 24.04 LTS
mongo-cxx-driver Not in release
Show less packages

CVE-2026-88033

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Java Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

mongo-java-driver

Package 24.04 LTS
mongo-java-driver Needs evaluation
Show less packages

CVE-2026-88032

Medium priority
Needs evaluation

A use-after-free in the reactive client-side encryption component of the MongoDB Java Driver can cause native resources to be freed while an affected encrypted operation is still using them when the operation is cancelled. A party...

1 affected package

mongo-java-driver

Package 24.04 LTS
mongo-java-driver Needs evaluation
Show less packages

CVE-2026-88021

Medium priority

Not in release

Consul and Consul Enterprise are vulnerable to an authorization bypass in the Connect service mesh that may allow a service to reach a destination it is not authorized to access. When building Envoy RBAC rules to enforce Connect...

1 affected package

consul

Package 24.04 LTS
consul Not in release
Show less packages

CVE-2026-87107

Medium priority

Not in release

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog deregistration path that may allow a local ACL token to delete peer-imported catalog objects. A caller with {{service:write}} or {{node:write}}...

1 affected package

consul

Package 24.04 LTS
consul Not in release
Show less packages