Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
375 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Baja (2.5) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In ssh in OpenSSH before 10.6, a $ or \ character can occur in a command-line username, leading to injection. | |
| Recibida | Baja (2.9) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH through 10.6, in certain environments such as QNX 6 and SCO OpenServer 5, sshd-session can unexpectedly have root privileges. This is related to the GatewayPorts and StreamLocalForwarding configuration options, and lack of support for file-descriptor passing and unprivileged allocation of PTY… | |
| Recibida | Baja (3.1) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH through 10.6, use of the macOS 27 (or later) SDK has the side effect of loss of sandboxing, which is potentially unexpected. | |
| Recibida | Baja (3.6) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH before 10.6, the value "none" for a configuration option is sometimes interpreted as a filename but was intended to mean that a feature is disabled. | |
| Recibida | Baja (2.5) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH before 10.6, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarding but was not, a different vulnerability than CVE-2026-73283. | |
| Recibida | Media (6.5) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd and ssh in OpenSSH before 10.6, there is no check for whether the maximum packet length is exceeded during decompression of highly compressed data. | |
| Recibida | Baja (2.5) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In ssh-keygen in OpenSSH before 10.6, certificates could have incorrect expiration times because of Daylight Saving mishandling. There can be a slightly more severe effect on users in certain Antarctic locations. | |
| Recibida | Baja (3.7) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd and ssh in OpenSSH before 10.6, an LZ77 dictionary coder can be used even though this is contraindicated by the arXiv 2609.07709 "Crossing the Streams" findings. | |
| Recibida | Baja (2.2) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH before 10.6, GSSAPIAuthentication authentication state can incorrectly be persisted across authentication attempts. | |
| Recibida | Baja (2.2) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sshd in OpenSSH before 10.6, credentials can incorrectly persist after failure of a GSSAPIAuthentication authentication attempt. | |
| Recibida | Media (4.2) | — | — | Openbsd OpensshAI | 6/10/2026 | 6/10/2026 | In sftp in OpenSSH before 10.6, a server can trigger directory traversal (causing files to be written to unintended locations) during a recursive copy operation. | |
| Aplazada | Crítica (9.2) | 0.37% | — | Openbsd LdapdAI | 30/9/2026 | 1/10/2026 | In ldapd in OpenBSD 7.8 before errata 057 and 7.9 before errata 021, delegated BSD authentication results are correlated only by the LDAP child process client file descriptor and LDAP message ID. After a connection closes, a later connection that reuses the same file descriptor and message ID can receive the earlier… | |
| Pendiente de análisis | Media (6) | 0.60% | — | OpenbsdAI | 8/9/2026 | 10/9/2026 | OpenBSD before commit 1ee99df contains an inverted comparison vulnerability in the ieee80211_michael_mic_failure() function within sys/net80211/ieee80211_crypto_tkip.c that allows unauthenticated attackers within RF range to trigger denial of service by sending two malformed TKIP frames separated by more than 60… | |
| Pendiente de análisis | Media (5.3) | 0.14% | — | Okta Privileged AccessAIOpenbsd OpensshAI | 25/8/2026 | 28/8/2026 | The Okta Privileged Access client does not reject a leading hyphen in the username portion of an SSH target. As a result, the value may be interpreted as a command-line option by the underlying SSH process. | |
| Analizada | Baja (2.5) | 0.09% | — | Openbsd Openssh | 11/8/2026 | 4/9/2026 | In sshd in OpenSSH before 10.5, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarding but was not. | |
| Analizada | Media (4.8) | 0.16% | — | Openbsd Openssh | 11/8/2026 | 4/9/2026 | In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operations are concurrent. | |
| Analizada | Baja (3.5) | 0.16% | — | Openbsd Openssh | 11/8/2026 | 4/9/2026 | In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension. | |
| Pendiente de análisis | Alta (8.2) | 0.27% | — | OpensslAIGoogle BoringsslAICryptography.io CryptographyAIOpenbsd LibresslAI | 3/8/2026 | 10/9/2026 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_decrypt_pem, and pkcs7_decrypt_smime reported the outcome of decrypting a RecipientInfo's encryptedKey in several distinguishable ways, one of which disclosed the… | |
| Aplazada | Crítica (9.8) | 1.6% | 💥 Exploit | KopiaAIOpenbsd OpensshAI | 16/7/2026 | 16/7/2026 | Kopia is a cross-platform backup tool for Windows, macOS, and Linux with fast incremental backups, client-side end-to-end encryption, compression, and data deduplication. Prior to 0.23.0, Kopia's HTTP server started with --without-password accepts unauthenticated requests to /api/v1/repo/exists and forwards… | |
| Analizada | Crítica (9.4) | 0.30% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client side.) | |
| Analizada | Media (6.5) | 0.29% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay. | |
| Analizada | Alta (7.5) | 0.62% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive authentication attempts) because MaxAuthTries was mishandled for GSSAPIAuthentication. | |
| Analizada | Alta (7.5) | 0.16% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not. | |
| Analizada | Media (6.5) | 0.18% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Directory. | |
| Analizada | Media (5.4) | 0.18% | — | Openbsd Openssh | 8/7/2026 | 9/7/2026 | internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument would have helped to ensure the intended security properties of an SFTP connection. |