Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
6789 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Alta (8.8) | — | — | Koinonia LinkAI | 7/10/2026 | 7/10/2026 | The Koinonia Link WordPress plugin before 1.1.5 does not check that a user is allowed to change roles before saving a role selection submitted with a profile update, allowing any authenticated user, such as a subscriber, to grant themselves the Administrator role. | |
| Aplazada | Media (6.8) | — | — | Tp-link Tapo C500AI | 6/10/2026 | 6/10/2026 | TP-Link Tapo C500 v2.0 contains an out-of-bounds stack write vulnerability in its ONVIF PTZ SOAP handlers. An authenticated ONVIF client can submit an excessive number of preset-related elements, causing writes beyond the bounds of fixed-size stack arrays and resulting in a crash of the affected service. Successful… | |
| Aplazada | Alta (7.1) | — | — | Tp-link Tapo C500AI | 6/10/2026 | 6/10/2026 | TP-Link Tapo C500 v2.0 contains an out-of-bounds function-pointer dispatch in its TDP (TP-Link Device Protocol) daemon. A single unauthenticated UDP datagram can cause an invalid indirect call, crashing the main service and resulting in a denial-of-service condition. Successful exploitation may allow an… | |
| Aplazada | Crítica (10) | 2.1% | — | Totolink X6000rAI | 6/10/2026 | 6/10/2026 | A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230116. The impacted element is the function firmware_check of the file /cgi-bin/cstecgi.cgi of the component UploadFirmwareFile Handler. Such manipulation of the argument file_name leads to os command injection. The attack may be performed… | |
| Aplazada | Baja (2.1) | 0.35% | — | Totolink A3002muAI | 5/10/2026 | 6/10/2026 | A vulnerability was detected in Totolink A3002MU 1.0.0-B20230403.1455. This impacts the function sub_44B250 of the file /boafrm/formUploadFile of the component File Upload Handler. The manipulation of the argument filename results in path traversal. The attack can be executed remotely. The exploit is now public and… | |
| Aplazada | Crítica (9.3) | 0.64% | — | Totolink A3002muAI | 5/10/2026 | 6/10/2026 | A security vulnerability has been detected in Totolink A3002MU 1.0.0-B20230403.1455. This affects an unknown function of the file /boafrm/formIpQoS of the component QoS Rule Handler. The manipulation of the argument addQos/comment/entry_name leads to stack-based buffer overflow. Remote exploitation of the attack is… | |
| Aplazada | Crítica (9.3) | 0.78% | — | Totolink A3002muAI | 5/10/2026 | 6/10/2026 | A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455. The impacted element is the function sub_40FCFC of the file /bin/boa of the component Authentication Check. Executing a manipulation can lead to improper authorization. The attack may be launched remotely. The exploit has been made available to… | |
| Pendiente de análisis | Baja (3.6) | 0.12% | — | Mathworks SimulinkAI | 2/10/2026 | 6/10/2026 | MathWorks Simulink before R2026b, when showing a crafted .slx file, can have blocks that are never visible in the Simulink Editor but will cause code execution. | |
| Aplazada | Alta (7.2) | 0.24% | — | NO External LinksAI | 2/10/2026 | 3/10/2026 | The No External Links plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Log URL via /goto/{base64} Redirect in all versions up to, and including, 5.2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in… | |
| Aplazada | Media (5.4) | 0.18% | — | Tp-link Kasa Ec70AITp-link Kasa Ec71AI | 1/10/2026 | 2/10/2026 | Kasa EC70 v4 and EC71 v4 do not logically disable the production debug interface at the firmware or chip level and do not lock the bootloader. Although the debug traces are physically severed during manufacturing, an attacker with physical access can restore the connection, interrupt the boot process, and manipulate… | |
| Aplazada | Alta (7.7) | 0.23% | — | Tp-link Deco M9 PlusAI | 1/10/2026 | 1/10/2026 | A stack-based buffer overflow vulnerability exists in the TDDPv2 service (/usr/bin/tddp) on Deco M9 Plus due to insufficient validation of decrypted request data length before it is copied into a fixed-size stack buffer in the subtype 0x91 handler. Successful exploitation may allow an adjacent, unauthenticated… | |
| Aplazada | Alta (7.7) | 1.0% | — | Tp-link Archer Ax90AI | 1/10/2026 | 2/10/2026 | A command injection vulnerability exists in the TDDPv2 service (/usr/bin/tddp) on Archer AX90 V1. An unauthenticated adjacent-network attacker can exploit the setProductVer command handler to execute arbitrary operating system commands as root during device boot. Successful exploitation may result in complete device… | |
| Aplazada | Alta (7.1) | 0.14% | — | Tp-link Tapo C120AITp-link Tapo C200AI | 1/10/2026 | 6/10/2026 | Tapo C120 v1 and C200 v5 contain a NULL pointer dereference in the HTTPS onboarding connect request parser. The interface is reachable without authentication after initial setup and does not validate that a password field is present for certain authentication and encryption parameter combinations, allowing a malformed… | |
| Aplazada | Alta (7.1) | 0.25% | — | Tp-link Tapo C120AITp-link Tapo C200AI | 1/10/2026 | 1/10/2026 | Tapo C120 v1 and C200 v5 do not enforce authentication for do method HTTPS onboarding connect actions after initial setup. An unauthenticated adjacent attacker can submit unauthorized wireless configuration parameters, causing the camera to attempt connection to a different network. Successful exploitation disconnects… | |
| Aplazada | Media (5.3) | 0.15% | — | Tp-link Tapo C120AITp-link Tapo C200AI | 1/10/2026 | 1/10/2026 | Tapo C120 v1 and C200 V5 contain a vulnerability in the HTTPS onboarding scan function due to missing authentication. After initial setup, an unauthenticated attacker on the same local network can invoke the scan action and retrieve nearby wireless access-point metadata, including SSIDs, BSSIDs, authentication and… | |
| Aplazada | Alta (8.7) | 0.24% | — | Tp-link Tapo C120AITp-link Tapo C200AI | 1/10/2026 | 1/10/2026 | Tapo C120 v1 and C200 V5 do not adequately protect login challenge data or sanitize attacker-controlled input processed by the MacTool handler. An unauthenticated attacker on the same local network can replay login challenge data to obtain an administrative session, enable a privileged service that becomes accessible… | |
| Aplazada | Alta (8.5) | 0.92% | — | Tp-link Tl-wr841nAI | 1/10/2026 | 2/10/2026 | TP-Link TL-WR841N contains an authenticated OS command injection vulnerability in the IPv6 WAN configuration. A crafted IPv6 Gateway value is improperly incorporated into a system command, allowing an authenticated administrator to execute arbitrary operating system commands. Successful exploitation may allow… | |
| Aplazada | Crítica (9.1) | 0.35% | — | Ptzoptics Move 4K 12XAIPtzoptics Move 4K 20XAIPtzoptics Move 4K 30XAIPtzoptics Link 4K 12XAI+35 | 30/9/2026 | 30/9/2026 | Missing authentication for critical function vulnerability for all PTZOptics cameras and the Firmware Upgrade Tool - Firmware Update modules. A missing authentication vulnerability in the firmware update mechanism of affected PTZOptics cameras allows an unauthenticated user to install modified firmware on the device… | |
| Aplazada | Media (5.4) | 0.10% | — | Razorpay Payment Links FOR WoocommerceAI | 30/9/2026 | 30/9/2026 | Unauthenticated Cross Site Request Forgery (CSRF) in Razorpay Payment Links for WooCommerce <= 2.1.5 versions. | |
| Aplazada | Alta (7.1) | 0.15% | — | Premmerce Permalink ManagerAI | 30/9/2026 | 30/9/2026 | Unauthenticated Cross Site Scripting (XSS) in Premmerce Permalink Manager for WooCommerce <= 2.3.13 versions. | |
| Aplazada | Media (5.8) | 0.21% | — | Pluginrx Broken Link NotifierAI | 30/9/2026 | 30/9/2026 | The Broken Link Notifier WordPress plugin before 2.0.0.1 does not re-validate the destination of redirects when checking links, allowing unauthenticated attackers to bypass its internal-address filter and make the server send requests to internal services. | |
| Aplazada | Crítica (9.8) | 0.29% | — | Totolink N150rtAI | 29/9/2026 | 30/9/2026 | A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formPortFw (port-forwarding configuration handler) and is triggered by the ip_subnet and fw_ip request parameters during the rule-addition… | |
| Aplazada | Alta (8.8) | 0.28% | — | Totolink N150rtAI | 29/9/2026 | 30/9/2026 | A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formAjaxSet using the topicurl=setting/setWiFiRepeaterConfig branch and the ApCliWEPKey field. | |
| Aplazada | Alta (8.8) | 0.33% | — | Totolink N150rtAI | 29/9/2026 | 30/9/2026 | A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formFilter (access-control / URL filter configuration handler) and is triggered by the url request parameter when the addFilterUrl (or… | |
| Aplazada | Alta (8.5) | 0.54% | — | Dlink Di-8400AI | 28/9/2026 | 28/9/2026 | A security flaw has been discovered in D-Link DI-8400 16.07. This vulnerability affects the function menu_nat_more_asp of the file menu_nat_more.asp of the component Web Administration Service. The manipulation of the argument opt results in stack-based buffer overflow. The attack can be launched remotely. The exploit… |