gnome
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting gnome.
- CVE-2026-18487Epiphany: address bar / host spoofing via userinfo in ephy_uri_get_decoded_host()5.4
- CVE-2026-18358Gnome-remote-desktop: gnome-remote-desktop system-mode rdp server missing connection throttling allows unauthenticated denial of service7.5
- CVE-2026-66759Gimp: out-of-bounds read in file-icns plugin causes information disclosure or crash on crafted icns images7.1
- CVE-2026-66757Gimp: signed integer overflow in file-sgi (sgi-lib) causes the plugin to crash on rle sgi images5.5
- CVE-2026-66758Gimp: integer overflow in file-fits plugin causes a heap-based buffer overflow on crafted fits images7.8
- CVE-2026-16768Gdk-pixbuf: out-of-bounds read in ico parser5.3
- CVE-2026-16615Librest: weak random number generation in pkce implementation6.8
- CVE-2026-58015Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive5.9
- CVE-2026-58016Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml"7.5
- CVE-2026-58014Glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list"7.3
- CVE-2026-58013Glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend"6.5
- CVE-2026-58012Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char()6.5
- CVE-2026-58011Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime6.5
- CVE-2026-58010Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()6.5
- CVE-2026-13601Yelp: yelp-xsl: overly permissive content security policy in yelp allows host file disclosure from flatpak applications7.1