VYPR

rpm package

opensuse/neonmodem&distro=openSUSE Leap 16.0

pkg:rpm/opensuse/neonmodem&distro=openSUSE%20Leap%2016.0

Vulnerabilities (6)

  • CVE-2026-42506MedMay 22, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.

  • CVE-2026-42502MedMay 22, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.

  • CVE-2026-27136MedMay 22, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.

  • CVE-2026-25681MedMay 22, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.

  • CVE-2026-25680MedMay 22, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service.

  • CVE-2026-33809MedMar 25, 2026
    affected < 1.0.7+git0.346d1d3-bp160.1.1fixed 1.0.7+git0.346d1d3-bp160.1.1

    A maliciously crafted TIFF file can cause image decoding to attempt to allocate up 4GiB of memory, causing either excessive resource consumption or an out-of-memory error.