Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3302▲ 384 respecto a la semana anterior
Críticas / altas1464▲ 142 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)591▲ 117 respecto a la semana anterior
–

1730 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.8)1.1%⚠ Explotación activaCisco Catalyst Sd-wan Manager30/9/20261/10/2026
A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request…
AnalizadaAlta (8.8)1.2%⚠ Explotación activaApple IpadosApple Iphone OSApple Macos28/9/202630/9/2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an…
AnalizadaCrítica (9.5)1.3%⚠ Explotación activaCitrix Netscaler Application Delivery ControllerCitrix Netscaler Gateway27/9/202628/9/2026
Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service
AnalizadaCrítica (9.5)1.1%⚠ Explotación activaCitrix Netscaler Application Delivery ControllerCitrix Netscaler Gateway27/9/202629/9/2026
Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute…
AnalizadaAlta (8.1)20%⚠ Explotación activaWordpress22/9/202628/9/2026
An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the active theme directories. If relevant pre-conditions for both the server and the active theme are met, this can lead to RCE.
AnalizadaCrítica (9.3)2.2%⚠ Explotación activaF5 Big-ip Access Policy Manager22/9/202623/9/2026
When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). This vulnerability is only present when BIG-IP APM is configured as an OAuth Authorization Server. Deployments using APM strictly as an OAuth Client / Resource…
AnalizadaCrítica (9.8)20%⚠ Explotación activaCheckpoint Multi-domain Security ManagementCheckpoint Quantum Security Management22/9/202623/9/2026
A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check Point Management Server.
AnalizadaCrítica (9.5)1.1%⚠ Explotación activaArista Velocloud Orchestrator22/9/202623/9/2026
VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.…
AnalizadaAlta (7.8)0.23%⚠ Explotación activaAcronis Backup17/9/202618/9/2026
Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021, Acronis Backup extension for Plesk (Linux) before build 1.8.11.638, Acronis Backup plugin for DirectAdmin (Linux) before build 1.2.3.238.
AnalizadaCrítica (10)14%⚠ Explotación activaCisco Identity Services EngineCisco Identity Services Engine Passive Identity Connector16/9/202625/9/2026
A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass authentication. This vulnerability is due to insufficient authentication control on an API endpoint. An attacker could exploit this vulnerability by sending a crafted request to an affected API…
AnalizadaAlta (8.8)0.59%⚠ Explotación activaGoogle Android15/9/202617/9/2026
In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
AnalizadaCrítica (9.8)28%⚠ Explotación activaCisco Asyncos14/9/202615/9/2026
A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. This vulnerability is due to insufficient validation in the email parsing logic. An…
AnalizadaCrítica (10)93%⚠ Explotación activaGitlab12/9/202624/9/2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 18.11.12, 19.0 before 19.0.9, 19.1 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab server due to improper path…
AnalizadaCrítica (9.8)7.5%⚠ Explotación activaCheckpoint Gaia EmbeddedCheckpoint Gaia OS9/9/202623/9/2026
Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
AnalizadaAlta (8.8)3.1%⚠ Explotación activaGoogle Chrome9/9/202621/9/2026
Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
AnalizadaCrítica (9.9)0.92%⚠ Explotación activaConnectwise Screenconnect8/9/202612/9/2026
A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.
AnalizadaAlta (7.8)3.6%⚠ Explotación activaMicrosoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2Microsoft Windows 10 22h2+48/9/202624/9/2026
Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elevate privileges locally.
AnalizadaAlta (7.8)0.39%⚠ Explotación activaMicrosoft Windows 11 23h2Microsoft Windows 11 24h2Microsoft Windows 11 25h2Microsoft Windows 11 26h1+18/9/20269/9/2026
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
AnalizadaCrítica (10)3.9%⚠ Explotación activaAdobe CommerceAdobe Commerce B2BAdobe Magento7/9/20269/9/2026
Adobe Commerce is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user…
AnalizadaCrítica (10)13%⚠ Explotación activaN-able N-central6/9/20269/9/2026
N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
AnalizadaCrítica (9.2)1.8%⚠ Explotación activaMikrotik Routeros5/9/202611/9/2026
RouterOS contains an argument-handling flaw in the SSH login path involving usernames that begin with a prohibited character, allowing for the trusted RouterOS policy mask to be changed, leading to privilege escalation. Exploitation requires an unauthenticated SSH session to reach the RouterOS login helper.This issue…
AnalizadaMedia (6.9)1.0%⚠ Explotación activaMikrotik Routeros5/9/202626/9/2026
RouterOS SSH enters the connection protocol after a client-requested rekey even though user authentication was never attempted, allowing an unauthenticated client to open a session channel and send an exec request. On affected builds the server dispatches the command, enabling unauthenticated creation, overwrite, and…
AnalizadaAlta (8.8)1.6%⚠ Explotación activaMikrotik Routeros5/9/202611/9/2026
RouterOS accepts a "related" btest connection before the corresponding primary session has completed authentication. An unauthenticated client can use this state to start an IPv4 UDP test. With "random-data=false", the sender transmits an uninitialized tail from a kernel packet buffer. A separate unchecked, inverted…
AnalizadaAlta (8.8)49%⚠ Explotación activaGoogle ChromeGoogle V83/9/202621/9/2026
Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
AnalizadaAlta (7.8)11%⚠ Explotación activaSonicwall Sma8200vSonicwall Sma6210 FirmwareSonicwall Sma7210 Firmware1/9/202621/9/2026
Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary…