Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
2448 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 3.0.0 until 4.1.1, tiled TIFF decoding allocates a destination buffer using TileWidth but TiffDecompressorsFactory.Create constructs T4, T6, and Modified Huffman decompressors using the full frame width. TiffDecoderCore.DecodeTilesChunky can therefore direct frame-width fax… | |
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 3.0.0 until 4.1.1, decoding a strip TIFF using CCITT Group 3 or Modified Huffman compression can pass attacker-expanded runs to BitWriterUtils.WriteBits without first checking the current row width. T4TiffCompression.WritePixelRun can accumulate oversized makeup-code runs, and… | |
| Pendiente de análisis | Media (5.3) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, ExifReader.ReadValues64 trusts the 64-bit BigTIFF IFD entry count and iterates once per declared entry. When fewer than 20 bytes remain, ExifReader.ReadValue64 returns without advancing the stream or terminating the outer loop, so a small malformed BigTIFF… | |
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 2.1.0 until 4.1.2, the TIFF CCITT Group 4 encoder allocates Width times rowsPerStrip bytes even though T6BitCompressor.CompressStrip can emit encoded row data and two 12-bit end-of-facsimile-block codes beyond that capacity. TiffCcittCompressor.WriteCode performs unchecked… | |
| Pendiente de análisis | Media (5.3) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 1.0.0-beta0001 until 4.1.2, ICC CLUT parsing calculates allocation sizes from attacker-declared channel and grid dimensions before confirming that the profile contains the declared values. IccDataReader.ReadClutF32 can request a large float array, and earlier public… | |
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, decoding an attacker-supplied 32-bit floating-point TIFF as Image<HalfVector4> and applying HistogramEqualization can produce a non-finite or out-of-range luminance in ColorNumerics.GetBT709Luminance. GrayscaleLevelsRowOperation.Invoke uses the resulting… | |
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 4.0.0 until 4.1.2, ICC LUT16 conversion accepts more than four output channels even though ClutCalculator.Calculate and LutEntryCalculator.CalculateLut store intermediate and output values in Vector4. When DecoderOptions.ColorProfileHandling is set to Convert, a malformed… | |
| Pendiente de análisis | Media (5.9) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 4.0.0 until 4.1.2, ExrBaseDecompressor.UndoZipCompression accepts a nonempty ZIP or ZIPS inflate result that is shorter than the EXR block's required size. ZipExrCompression.Decompress reconstructs the returned prefix while ExrDecoderCore processes the full expected block from… | |
| Pendiente de análisis | Alta (7.5) | — | — | Sixlabors ImagesharpAI | 6/10/2026 | 6/10/2026 | ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, the TIFF CCITT Group 3 encoder allocates an undersized compressed-data buffer for narrow 1-bit images. TiffCcittCompressor.Initialize does not reserve enough space for the row data and T4 end-of-line codes, and T4BitCompressor.CompressStrip reaches unchecked… | |
| Aplazada | Media (6.5) | 0.16% | — | Ghozylab Image Slider WidgetAI | 5/10/2026 | 6/10/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab Image Slider Widget image-slider-widget allows Stored XSS.This issue affects Image Slider Widget: from n/a through 1.1.130. | |
| Aplazada | Media (6.4) | 0.19% | — | Twenty20 Image Before AfterAI | 3/10/2026 | 6/10/2026 | The Twenty20 Image Before-After plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'offset' Shortcode Attribute in all versions up to, and including, 2.0.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access… | |
| Aplazada | Media (6.1) | 0.22% | — | Ewww Image OptimizerAI | 3/10/2026 | 6/10/2026 | The EWWW Image Optimizer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via REQUEST_URI Parameter Key in all versions up to, and including, 8.7.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in… | |
| Pendiente de análisis | Baja (1.8) | 0.12% | — | ImagemagickAI | 3/10/2026 | 6/10/2026 | ImageMagick before 7.1.2-32 and 6.9.13-57 contains a policy bypass vulnerability in LoadPolicyCache that silently skips security policy rules when policy.xml uses an alternate DOCTYPE. A valid DOCTYPE not ending in ']>' makes the parser consume the rest of the file, so no policy rules are applied and restricted… | |
| Aplazada | Alta (7.5) | 0.43% | — | Probe-image-sizeAI | 2/10/2026 | 2/10/2026 | probe-image-size gets image dimensions without downloading the entire file. Prior to 7.4.0, lib/parse_sync/svg.js and lib/parse_stream/svg.js use the searching regular expression /<[-_.:a-zA-Z0-9][^>]*>/, which repeatedly scans to the end of input when attacker-controlled data contains many less-than characters… | |
| Pendiente de análisis | Crítica (9.1) | 0.41% | 💥 PoC | Image-downloaderAI | 2/10/2026 | 3/10/2026 | Path traversal in image-downloader 4.3.0 allows an attacker who can control the download URL to cause downloaded response data to be written outside the configured destination directory. | |
| En análisis | Media (6.3) | 0.24% | — | ImagerAI | 1/10/2026 | 1/10/2026 | Imager versions before 1.037 for Perl overflow a heap buffer fetching float samples from a paletted image in i_gsampf_fp. For a paletted image, getsamples() with type "float" allocates a buffer of one sample per pixel and fetches every requested channel of each pixel into it. Requesting more than one channel writes… | |
| En análisis | Alta (7.5) | 0.39% | — | ImagerAI | 1/10/2026 | 1/10/2026 | Imager versions before 1.037 for Perl exit the process reading a raw image with an out-of-range raw_datachannels value in i_readraw_wiol. Nothing range-checks raw_datachannels. The line buffer is sized as the image width times the channel count with no overflow check, so a negative or very large count requests an… | |
| Aplazada | Alta (8.8) | 0.13% | — | Fifu Featured Image From URLAI | 1/10/2026 | 1/10/2026 | The Featured Image from URL (FIFU) WordPress plugin before 6.0.8, Featured Image from URL (FIFU) Premium WordPress plugin before 8.2.8 do not correctly enforce the REST API nonce, disabling the check for the whole request when a crafted URL is used, which could allow attackers to make a logged-in administrator perform… | |
| Aplazada | Media (4.9) | 0.21% | — | Shortpixel Image OptimizerAI | 30/9/2026 | 30/9/2026 | Subscriber PHP Object Injection in ShortPixel Image Optimizer <= 6.5.5 versions. | |
| Aplazada | Media (6.5) | 0.18% | — | Ewww Image OptimizerAI | 30/9/2026 | 30/9/2026 | Contributor Cross Site Scripting (XSS) in EWWW Image Optimizer <= 8.7.7 versions. | |
| Aplazada | Media (4.4) | 0.17% | — | Ewww Image OptimizerAI | 30/9/2026 | 30/9/2026 | The EWWW Image Optimizer WordPress plugin before 8.8.0 does not confine a WebP-derivative file migration routine to the current site's own uploads directory, letting an attacker with Administrator-level access rename or delete existing WebP-derivative image files outside that scope, including, on a multisite network,… | |
| Aplazada | Media (6.6) | 0.35% | — | Ewww Image OptimizerAI | 30/9/2026 | 30/9/2026 | The EWWW Image Optimizer WordPress plugin before 8.8.0 does not prevent authenticated users with author-level permissions from storing a serialized value in a post meta field that is deserialized when the post is rendered, allowing them to perform PHP Object Injection, which can lead to remote code execution when a… | |
| Aplazada | Media (4.3) | 0.18% | — | Image OptimizerAI | 30/9/2026 | 30/9/2026 | The Image Optimizer WordPress plugin before 1.7.7 does not enforce its intended capability check on several of its read REST routes, allowing any authenticated user to read attachment metadata and site-wide statistics that should be restricted to administrators. | |
| Aplazada | Alta (7.5) | 0.22% | — | Robin Image OptimizerAI | 30/9/2026 | 30/9/2026 | The Robin Image Optimizer WordPress plugin before 2.0.8 does not escape values that its bundled HTML parser re-emits into element attributes when a non-default image delivery mode is enabled, allowing unauthenticated users to submit content that is stored and later executed as Cross-Site Scripting in the browser of… | |
| Aplazada | Media (4.3) | 0.16% | — | Robin Image OptimizerAI | 30/9/2026 | 30/9/2026 | The Robin Image Optimizer WordPress plugin before 2.0.8 does not check the user's capabilities before dispatching one of its bundled admin framework's request handlers, allowing users with a subscriber-level account to render admin-only Robin Image Optimizer WordPress plugin before 2.0.8 pages and disclose the Robin… |