Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
16.777 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Media (6.8) | — | — | Veeam Agent FOR Microsoft WindowsAI | 7/10/2026 | 7/10/2026 | This vulnerability in Veeam Agent for Microsoft Windows allows any local user to terminate arbitrary processes on the system. | |
| Recibida | Media (4.1) | — | — | Veeam Agent FOR Microsoft WindowsAI | 7/10/2026 | 7/10/2026 | This vulnerability in Veeam Agent for Microsoft Windows allows a low-privileged local user to make the agent write files to arbitrary locations when an administrator installs it. | |
| Pendiente de análisis | Alta (8.8) | — | — | Microsoft KiotaAI | 6/10/2026 | 6/10/2026 | Kiota is an OpenAPI based HTTP Client code generator. From 0.5.0 until 1.35.0, Kiota's Java and PHP documentation-comment sanitizers delete block-comment terminators rather than neutralizing them, allowing overlapping characters to reform a terminator and place attacker-controlled OpenAPI text outside a generated… | |
| Pendiente de análisis | Baja (3.1) | — | — | Microsoft KiotaAI | 6/10/2026 | 6/10/2026 | Kiota is an OpenAPI based HTTP Client code generator. From 1.25.1 until 1.35.0, Kiota copies x-ai-capabilities.response_semantics.oauth_card_path from an attacker-controlled or compromised OpenAPI description into a generated API plugin manifest without validating that the value is a safe package-relative file… | |
| Pendiente de análisis | Crítica (9.1) | — | — | Microsoft MsquicAI | 6/10/2026 | 6/10/2026 | MsQuic is a cross-platform C implementation of the IETF QUIC protocol exposed to C, C++, C#, and Rust. Prior to 2.4.20, 2.5.11, and 2.6.1, MsQuic clients using the OpenSSL or QuicTLS TLS backend do not properly verify that a server certificate matches the intended target server hostname. An on-path attacker can… | |
| Aplazada | Crítica (9.1) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the press_key tool in ufo/client/mcp/http_servers/mobile_mcp_server.py accepts a free-form key_code parameter and passes it to `adb shell input keyevent`. The adb client joins the arguments into a remote… | |
| Aplazada | Media (6.5) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the /api/task_result/{task_name} endpoint calls SessionManager.get_result_by_task() in ufo/server/services/session_manager.py, which acquires a non-reentrant lock and then calls… | |
| Aplazada | Alta (7.5) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the run_shell tool in the CommandLineExecutor component of ufo/client/mcp/local_servers/cli_mcp_server.py validates only the first token of the bash_command parameter and permits explorer.exe. On Windows,… | |
| Aplazada | Media (6.4) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, authenticated device registration through /api/devices can supply a permitted attacker-controlled WebSocket endpoint while aip/transport/websocket.py applies pinned_addresses only to the initial… | |
| Aplazada | Media (5.4) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the execute_command tool in ufo/client/mcp/http_servers/linux_mcp_server.py treats sort and uniq as read-only commands while the free-form command parameter can select their file-output forms. An… | |
| Aplazada | Alta (8.8) | — | — | Microsoft UFOAI | 6/10/2026 | 6/10/2026 | Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.10, the type_text and launch_app tools in ufo/client/mcp/http_servers/mobile_mcp_server.py pass the authenticated caller-controlled text and package_name parameters into adb shell command argument positions… | |
| En análisis | Alta (8.8) | 0.50% | 💥 PoC | Microsoft Exchange ServerAI | 2/10/2026 | 6/10/2026 | Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network. | |
| Pendiente de análisis | Crítica (9.3) | 0.25% | — | Microsoft Netx DUOAI | 29/9/2026 | 30/9/2026 | NetX Duo's WebSocket client resets the unmasking cursor to the first `NX_PACKET` each time it advances through a chained packet, while the loop's upper bound belongs to the current packet. With the standard contiguous packet-pool layout, a masked server frame split across two packets therefore drives the XOR loop… | |
| Pendiente de análisis | Alta (7.5) | 0.17% | — | Microsoft Netx SecureAI | 29/9/2026 | 30/9/2026 | The `_nx_secure_x509_asn1_tlv_block_parse()` function parses ASN.1 TLV (tag-length-value) blocks out of DER-encoded data. It is the primitive underneath all X.509 certificate parsing in NetX Secure, and therefore runs on certificates supplied by a remote peer during the TLS handshake. The function reads the one-byte… | |
| Pendiente de análisis | Alta (8.5) | 0.10% | — | Microsoft ThreadxAI | 29/9/2026 | 2/10/2026 | An unprivileged, memory-protected ThreadX module can have the kernel read and write memory at addresses of its choosing, in privileged mode, and can use that to clear the MPU enable bit and remove its own isolation boundary. The Module Manager decided whether a privileged service could dereference an object address a… | |
| Pendiente de análisis | Alta (8.6) | 0.12% | — | Microsoft LevelxAI | 29/9/2026 | 29/9/2026 | Mounting an attacker-controlled NAND flash image (`lx_nand_flash_open()`) triggers an unbounded out-of-bounds heap **write** in LevelX's NAND flash-translation-layer metadata parser that overwrites a driver function pointer in the control block, giving a demonstrated control-flow hijack — RIP set to a full 8-byte… | |
| Pendiente de análisis | Alta (8.7) | 0.25% | — | Microsoft NetxAI | 29/9/2026 | 29/9/2026 | An unauthenticated client can drain the RTSP server's packet pool with a couple of dozen requests that carry a Session header the parser cannot convert. The Session branch returns the raw NetX error code instead of an RTSP status code: ```c /* addons/rtsp/nx_rtsp_server.c:2754 */ if (status) ``` Every other branch of… | |
| En análisis | Media (4.7) | 0.14% | — | Microsoft Network MonitorAI | 29/9/2026 | 29/9/2026 | Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service | |
| En análisis | Alta (7.5) | 0.35% | — | Microsoft Office OutlookAI | 25/9/2026 | 29/9/2026 | Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | |
| Externa | Sin puntuar | — | — | Microsoft OfficeAI | 25/9/2026 | — | Microsoft Office vulnerability that allows information disclosure. The vulnerability was addressed by updates released in July 2026, though the CVE was inadvertently omitted from the initial security bulletin. This is an informational update for tracking purposes. | |
| Analizada | Alta (8.8) | 0.43% | — | Microsoft 365 AppsMicrosoft Office 2021Microsoft Office 2024 | 23/9/2026 | 5/10/2026 | Microsoft Office Outlook Remote Code Execution Vulnerability | |
| Aplazada | Media (6.9) | 0.14% | — | Watchdog AntivirusAIMicrosoft WindowsAI | 20/9/2026 | 22/9/2026 | Missing Authorization in the IOCTL handlers of the wsdkd.sys kernel drivers in Watchdog WatchDog Antivirus 1.8.640 (driver versions 1.3.0.0 and earlier) on Microsoft Windows allows local, low-privileged attackers to delete arbitrary files with SYSTEM privileges, bypassing NTFS access controls and potentially disabling… | |
| Analizada | Alta (7.8) | 0.26% | — | Microsoft Edge Chromium | 18/9/2026 | 24/9/2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.7) | 0.84% | — | Microsoft 365 Copilot | 17/9/2026 | 28/9/2026 | Incorrect permission assignment for critical resource in M365 Copilot allows an authorized attacker to disclose information over a network. | |
| Analizada | Crítica (9.9) | 0.78% | — | Microsoft Azure Horizondb | 17/9/2026 | 25/9/2026 | Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a network. |