Buscar noticias

Ctrl/Cmd para multiselección
Total: 3981

Thomas Beckers discovered that the JAXP component of OpenJDK 26 did not correctly authenticate certain APIs. A remote unauthenticated attacker could possibly use this issue to gain unauthorized access to sensitive information. (CVE-2026-22…

Ubuntu CVE-2026-22016CVE-2026-34282CVE-2026-22021CVE-2026-22013CVE-2026-23865CVE-2026-22008CVE-2026-22018CVE-2026-22007CVE-2026-34268 CVSS 7.5 2026-05-28 19:51 UTC · 2026-05-28 16:51 -03

It was discovered that pip incorrectly handled TLS certificate verification in session connections. If a session was first used with certificate verification disabled, subsequent requests to the same host would also skip verification regar…

Ubuntu CVE-2024-35195CVE-2025-66418CVE-2025-66471 CVSS 8.9 2026-05-28 19:46 UTC · 2026-05-28 16:46 -03

USN-8229-1 fixed a vulnerability in sed. This update provides the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. Original advisory details: Michał Majchrowicz and Marcin Wyczechowski discovered that sed incorrectly han…

Ubuntu 2026-05-28 18:34 UTC · 2026-05-28 15:34 -03

It was discovered that Vim did not properly handle backticks in tag filenames. An attacker could possibly use this issue to execute arbitrary commands.

Ubuntu 2026-05-28 18:23 UTC · 2026-05-28 15:23 -03

It was discovered that multipart had an ambiguous regular expression alternation when handling certain HTTP header values. A remote attacker could possibly use this issue to cause multipart to use excessive resources, leading to a denial o…

Ubuntu 2026-05-28 17:53 UTC · 2026-05-28 14:53 -03