CVE-2026-3276 Potential DoS via quadratic complexity in unicodedata.normalize()
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory
CVE-2026-8829 HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service
CVE-2026-5419 Guntls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal
CVE-2026-27145 Inefficient candidate hostname parsing in crypto/x509
Information published. Continue reading CVE-2026-27145 Inefficient candidate hostname parsing in crypto/x509
