Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 68 respecto a la semana anterior
Críticas / altas1421▲ 55 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
2573 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.5) | 0.34% | — | Xtendify WofficeAI | 6/10/2026 | 6/10/2026 | Subscriber SQL Injection in Woffice <= 5.4.35 versions. | |
| Aplazada | Alta (8.5) | 0.14% | — | Libreoffice CalcAI | 5/10/2026 | 6/10/2026 | LibreOffice Calc can link a cell range to an external data source, and the link is saved in the document. A document could name a Java database driver for such a link to be loaded from a remote location, so opening the document could run Java code from that location. In fixed versions an entry in a Java class path has… | |
| Aplazada | Media (6.7) | 0.12% | — | LibreofficeAI | 5/10/2026 | 6/10/2026 | URLs could be constructed which expanded environment variable or INI file values, so potentially sensitive information could be exfiltrated to a remote server on opening a document containing such links. The check added for CVE-2024-12426 did not cover every place a document can supply a URL. XForms instance data and… | |
| Aplazada | Media (6.7) | 0.11% | — | LibreofficeAI | 5/10/2026 | 6/10/2026 | LibreOffice can link to audio and video files from a document, and on Linux it plays them with GStreamer. A linked media file could be an HLS playlist that made GStreamer read the local files and remote URLs it listed while the document loaded, and their contents could end up in the document. In fixed versions… | |
| Aplazada | Media (6.7) | 0.12% | — | Libreoffice CalcAI | 5/10/2026 | 6/10/2026 | LibreOffice Calc can link a cell range to an external data source, and the link is saved in the document. A link of the sql type could name a folder of local text files as a database, so opening a document could read a local text file into the sheet. In fixed versions only the csv, html and xml data providers are… | |
| Aplazada | Media (6.7) | 0.11% | — | Libreoffice CalcAI | 5/10/2026 | 6/10/2026 | LibreOffice Calc can link a cell range to an external csv data source, and the link is saved in the document. Such a link was fetched while the document loaded, so opening a document could read a local file into the sheet, or make a request to a host of the document's choosing. In fixed versions external data links… | |
| Aplazada | Media (6.8) | 0.16% | — | Libreoffice CalcAI | 5/10/2026 | 6/10/2026 | LibreOffice Calc can link a cell range to an external data source, and the link is saved in the document. Through such a link a document could open an embedded Firebird database that wrote a file to any location the user could write to. In fixed versions an embedded Firebird database can open or create files only… | |
| Aplazada | Alta (8.4) | 0.35% | — | Mitel Mivoice Office 400AI | 5/10/2026 | 6/10/2026 | This vulnerability allows remote attackers to delete sensitive files on vulnerable installations of Mitel MiVoice Office 400. Authentication is required to exploit this vulnerability. The specific flaw exists within the web portal listening on TCP port 443, under Maintenance → File Management → File Browser, which is… | |
| Aplazada | Alta (8.8) | 0.22% | — | Apache OpenofficeAI | 2/10/2026 | 6/10/2026 | A code execution issue in the Java integration in Apache OpenOffice v4.1.16 and earlier allows a crafted untrusted document to trigger executing arbitrary (even remote) code when opened by the user. This issue is expected to be fixed in version 4.1.17, which is in the release candidate phase. Until then, users can… | |
| Aplazada | Alta (7.6) | 0.29% | — | Office Powerpoint MCP ServerAI | 1/10/2026 | 2/10/2026 | Office-PowerPoint-MCP-Server through 2.0.7 contains a path traversal vulnerability that allows MCP callers to write and read files outside the working directory by supplying absolute paths or ../ sequences. Attackers can steer an AI agent via prompt injection to abuse save_presentation, open_presentation, or… | |
| En análisis | Alta (7.5) | 0.35% | — | Microsoft Office OutlookAI | 25/9/2026 | 29/9/2026 | Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | |
| Externa | Sin puntuar | — | — | Microsoft OfficeAI | 25/9/2026 | — | Microsoft Office vulnerability that allows information disclosure. The vulnerability was addressed by updates released in July 2026, though the CVE was inadvertently omitted from the initial security bulletin. This is an informational update for tracking purposes. | |
| Pendiente de análisis | Crítica (9.8) | 0.96% | — | Onlyoffice Document EditingAI | 25/9/2026 | 29/9/2026 | When OnlyOffice/Document Editing is available, an unauthenticated remote attacker with access to an existing supported public Briefcase document can abuse unsigned save fields to perform path-traversal writes and execute commands as zimbra. | |
| Analizada | Alta (8.8) | 0.43% | — | Microsoft 365 AppsMicrosoft Office 2021Microsoft Office 2024 | 23/9/2026 | 5/10/2026 | Microsoft Office Outlook Remote Code Execution Vulnerability | |
| Aplazada | Media (5.4) | 0.17% | — | LibreofficeAI | 22/9/2026 | 22/9/2026 | LibreOffice can import PICT images, which may be embedded in documents. An out of bounds read existed when importing an image that uses a colour palette. The palette index held in the image data was used without being checked against the number of entries the palette has, so an index past the last entry read memory… | |
| Aplazada | Media (5.4) | 0.19% | — | LibreofficeAI | 22/9/2026 | 22/9/2026 | LibreOffice converts CFF fonts to Type 1 when it subsets a font, which happens when a document is exported to PDF, and CFF fonts may be embedded in documents. A stack buffer overflow existed in that conversion. The converted operators were written into a fixed size buffer with no check that they still fit, so a glyph… | |
| Aplazada | Media (5.4) | 0.17% | — | LibreofficeAI | 22/9/2026 | 22/9/2026 | LibreOffice can read CFF fonts, which may be embedded in documents. A stack buffer overflow existed when reading the hints of a glyph. The number of hints was checked against the wrong bound, so a glyph declaring more hints than the array can hold wrote past its end. In fixed versions the hint count is checked against… | |
| Aplazada | Media (5.4) | 0.17% | — | Libreoffice DrawAI | 22/9/2026 | 22/9/2026 | LibreOffice Draw can import PDF documents. A heap buffer overflow existed when importing a stream object. The length of the stream was taken from the object's own dictionary and was not checked against the number of bytes actually present, so copying the stream read and wrote past the end of the buffer holding it. In… | |
| Aplazada | Media (5.4) | 0.11% | — | Libreoffice DrawAI | 22/9/2026 | 22/9/2026 | LibreOffice Draw can import PDF documents. A heap buffer overflow existed when importing an encrypted document. The length of the decryption key was taken from the document's own encryption dictionary and was used to fill a fixed size key buffer without being checked against it, so a length larger than that buffer… | |
| Aplazada | Media (5.4) | 0.17% | — | LibreofficeAI | 22/9/2026 | 22/9/2026 | LibreOffice can import WMF graphics, which may be embedded in documents. A heap buffer overflow existed when importing a text record that carries its own character advance widths. The count of advance values and the length of the text were read separately from the file and were not required to agree, so drawing the… | |
| Pendiente de análisis | Alta (8.8) | 0.08% | — | Crowdstrike Falcon SensorAICrowdstrike Laroux Malware Cleanup ToolAIMicrosoft OfficeAI | 15/9/2026 | 18/9/2026 | CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. The vulnerability only exists when the Microsoft Office File Malicious Macro Removal Windows policy setting is enabled and customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings.… | |
| Aplazada | Baja (2) | 0.33% | — | Fengoffice Feng OfficeAI | 13/9/2026 | 14/9/2026 | A vulnerability was determined in Fengoffice Feng Office up to 3.11.13.11. Affected by this vulnerability is the function getTitle of the file application/views/task/add_task.php of the component Task Title Output. Executing a manipulation of the argument og_objects.name can lead to cross site scripting. The attack… | |
| Aplazada | Baja (2) | 0.33% | — | Fengoffice Feng OfficeAI | 13/9/2026 | 16/9/2026 | A vulnerability was found in Fengoffice Feng Office up to 3.11.13.11. Affected is the function update_system_module_order/update_dimension_order of the file application/controllers/MoreController.class.php of the component Reorder Handlers. Performing a manipulation of the argument modules/dims results in sql… | |
| Aplazada | Media (5.5) | 0.41% | — | Fengoffice Feng OfficeAI | 13/9/2026 | 14/9/2026 | A vulnerability has been found in Fengoffice Feng Office up to 3.11.13.11. This impacts the function Contacts::instance->findAll of the file application/models/CompanyWebsite.class.php of the component Legacy API. Such manipulation of the argument auth leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (5.5) | 0.54% | — | Microsoft 365 AppsMicrosoft ExcelMicrosoft 365Microsoft Office 2016+3 | 8/9/2026 | 17/9/2026 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. |