Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 15 March 2026

RSS

115 vulnerabilities published on 15 March 2026

Severity:
Libsndfile: Memory Leak in Audio File Encoding
OESA-2026-1605
Libsndfile for Windows and Mac can leak memory when encoding certain audio files. This can cause the program to run out of memory over time, leading to crashes or slowdowns. Update to a fixed version ...
Libsndfile Memory Leak Vulnerability in MP3 Encoder
OESA-2026-1604
Libsndfile's MP3 encoder has a bug that can cause the program to run out of memory. This can happen when processing certain types of audio files. Update to the latest version of Libsndfile to fix the ...
Windows WAV and AIFF File Handler Has Memory Leak
OESA-2026-1603
Libsndfile, a library used by many audio applications, has a flaw that can cause memory issues when handling certain audio files. This could potentially lead to a denial-of-service or data corruption....
BIND DNS Server Allows Malicious Data to Be Injected into Cache
OESA-2026-1602
A security update is available for certain versions of the BIND DNS server. This update addresses a vulnerability that could allow an attacker to inject fake data into the server's cache, potentially ...
BIND DNS Server Allows Malicious Data Injection
OESA-2026-1601
A security update is available for BIND DNS servers that can be exploited by an attacker to inject fake data into the server's cache. This can lead to DNS resolution errors and potentially disrupt net...
RequireJS on Node.js: Malicious Code Execution via Prototype Pollution
OESA-2026-1600
If you're using RequireJS on your Node.js server, an attacker could inject malicious code or crash your server by manipulating how it loads JavaScript modules. Update to the latest version of RequireJ...
Kata Containers Security Update: Malformed Images Can Cause Filesystem Errors
OESA-2026-1599
A recent update fixes a problem in Kata Containers that could cause data corruption on the host machine when a container image is damaged or incomplete. This could lead to issues with file storage and...
libxml2 XML Parsing Error Allows Attackers to Crash Systems
OESA-2026-1598
A security issue in libxml2, a library used to work with XML files, could allow an attacker with local access to crash the system. This issue is not a major concern because it requires an attacker to ...
Python PLY Code Execution through Malicious File
OESA-2026-1597
The PLY library for Python has a hidden feature that allows hackers to upload and run malicious code on your system. This can happen if you use the library to parse files, and you need to update the l...
PLY library on Python allows malicious code to run
OESA-2026-1596
A security issue in the PLY library for Python can allow hackers to run malicious code on your system if you're using a specific feature. This is a significant risk because it could happen without you...
Python PLY Library Allows Malicious Code to Run
OESA-2026-1595
A security update is available for the Python PLY library. An attacker could potentially trick the library into running malicious code, but this requires a specific type of file to be passed to the li...
PLY Python library allows malicious files to run code
OESA-2026-1594
A security update is available for the PLY Python library. An attacker could potentially exploit a hidden feature to run malicious code on a system. To stay safe, update the library to the latest vers...
Apache HTTP Server: Certificate Renewal and CGI Execution Risks
OESA-2026-1593
Apache HTTP Server versions 2.4.30 to 2.4.66 have two security issues. One could allow unauthorized access to sensitive information, while the other could let attackers run unauthorized scripts. To fi...
Apache HTTP Server allows unauthorized code execution
OESA-2026-1592
Apache's web server has a security issue that could let attackers execute unauthorized code on your server. This affects all versions of Apache from 2.4.0 to 2.4.65. To stay safe, upgrade to version 2...
X11 Library: Buffer Overflow in XkbChangeTypesOfKey Function
OESA-2026-1591
The X11 library has a flaw that could allow an attacker to crash the system. This could happen if certain keyboard settings are manipulated. Update your system to the latest version of the library to ...
X11 library allows code to crash or execute malicious code
OESA-2026-1590
The X11 library has a flaw that can cause a program to crash or execute unauthorized code if it's used with certain keyboard settings. This affects all systems that use the X11 library. To fix this, u...
LibX11 Security Update: Potential Data Corruption
OESA-2026-1589
LibX11, a library used by many Linux systems, has a security issue that could allow an attacker to cause data corruption. This could happen if an attacker exploits this flaw, potentially leading to un...
X11 Client Library Allows Malicious Code to Run
OESA-2026-1588
The X11 client library, used by various applications, contains a flaw that could allow an attacker to execute unauthorized code. This could happen if an attacker can trick the library into processing ...
X11 Library Buffer Overflow Risk: Data Corruption
OESA-2026-1587
The X11 library has a bug that could allow an attacker to damage data. This is a moderate risk because it could be exploited by a malicious user. Update the library to the latest version to fix the is...
Old version of zlib can cause high CPU usage
OESA-2026-1586
An older version of zlib is vulnerable to a security issue that can make the computer use too much CPU power. This could slow down your system or even cause it to freeze. Update to the latest version ...
Old version of zlib uses CPU in an infinite loop
OESA-2026-1585
An outdated version of zlib is allowing attackers to use up computer resources. This can slow down your system or make it unresponsive. Update your zlib to version 1.3.2 or later to fix this issue.
zlib CPU Consumption Vulnerability
OESA-2026-1584
If you use zlib, an attacker may be able to cause your system to use excessive CPU resources. This could potentially slow down or crash your system. Update to zlib version 1.3.2 or later to protect ag...
Out-of-control CPU usage in zlib compression
OESA-2026-1583
A security update is available for zlib, a library used for data compression. If not updated, attackers could cause a denial of service by consuming excessive CPU resources. Update to the latest versi...
alsa-lib: Malicious Files Can Crash System
OESA-2026-1582
A security update is available for alsa-lib, a library used by Linux systems. If an attacker sends a specially crafted file to a system using alsa-lib, it could cause the system to crash. Update to th...
Underscore.js: Deep Recursion Vulnerability Allows Denial of Service
OESA-2026-1581
A security update affects Underscore.js, a popular JavaScript library. If an attacker sends malicious data to your website, they could potentially crash your server by causing a stack overflow. To fix...