vulnerability in apache2 (CLSA-2026-1779119053). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:2.4.18-2ubuntu3.17+tuxcare.els19` or later.
cross-site scripting in ci4-cms-erp/ci4ms (CVE-2026-45138). Risk of unauthorized operations or information disclosure. Exploitable via ``html_purify``. Mitigation: upgrade to `0.31.9.0` or later.
vulnerability in directxtk12_desktop_win10 (GHSA-5r97-79vw-qvm4). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.5.8.1` or later.
vulnerability in directxtk_desktop_win10 (GHSA-c55g-rp4x-fx84). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.5.8.1` or later.
vulnerability in apache2 (CLSA-2026-1779118679). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4.29-1ubuntu4.27+tuxcare.els9` or later.
authentication bypass in edumfa (GHSA-j5rm-v3vh-vx94). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.1` or later.
vulnerability in edumfa (GHSA-74r7-3mjm-jc5v). Risk of unauthorized operations or information disclosure. Exploitable via ``api_key_required``. Mitigation: upgrade to `2.9.1` or later.
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-42326). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.13.1` or later.