Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2532▼ 361 respecto a la semana anterior
Críticas / altas1338▲ 69 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
401.084 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2) | 0.28% | — | Bytecodealliance WasmtimeAI | 2/10/2026 | 2/10/2026 | Wasmtime is a runtime for WebAssembly. From 46.0.0 until 46.0.2 and 47.0.3, fuel and epoch preemption checks inside bulk operations including memory.copy, table.grow, and array.copy can expose invalid intermediate state when an embedder mutates a Store in Store::epoch_deadline_callback or continues using a Store after… | |
| Aplazada | Alta (7) | 0.28% | — | Apache Traffic ServerAI | 2/10/2026 | 2/10/2026 | Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3. Users are recommended to upgrade to version 9.2.15 or 10.1.4, which fixes the issue. This CVE supersedes CVE-2026-41920, whose record listed the affected 9.x… | |
| Aplazada | Alta (7.2) | 0.27% | — | Limesurvey Community EditionAI | 2/10/2026 | 2/10/2026 | An authenticated LimeSurvey Community Edition 7.4.0 user with the global Surveys: create permission can store a JavaScript-breaking value in the date_min attribute of a Date/Time question. When another user renders the affected question, LimeSurvey inserts the stored value into a single-quoted inline JavaScript… | |
| Pendiente de análisis | Alta (8.5) | 0.14% | — | NXAI | 2/10/2026 | 2/10/2026 | Nx is a monorepo solution for TypeScript and polyglot codebases. From 14.6.0 until 22.7.9 and 23.1.2, Nx creates Unix domain sockets for its daemon and isolated plugin workers in shared temporary locations without owner-only directory and socket permissions. Another unprivileged local account on a shared build server,… | |
| Pendiente de análisis | Media (5.8) | 0.17% | — | NXAI | 2/10/2026 | 2/10/2026 | Nx is a monorepo solution for TypeScript and polyglot codebases. From 13.10.0 until 22.7.10 and 23.2.1, Nx migration planning reads the nx-migrations.migrations value from a target package manifest without validating that it is a contained relative path. A hostile direct dependency or a package introduced through a… | |
| Aplazada | Alta (8.8) | 0.32% | — | FsspecAI | 2/10/2026 | 2/10/2026 | fsspec is a specification and Python implementation framework for filesystem interfaces. From 0.9.0 until 2026.6.0, fsspec.implementations.reference.ReferenceFileSystem evaluates fields from Kerchunk reference JSON documents through unrestricted jinja2.Template(...).render(...) calls in… | |
| Aplazada | Crítica (9.5) | 0.39% | — | TinypoolAI | 2/10/2026 | 2/10/2026 | Tinypool is a minimal Node.js worker thread pool implementation. Prior to 2.1.2, Tinypool reads filename from a caller-supplied options object in pool.run(task, options) without requiring an own property, so a polluted Object.prototype.filename can replace the intended worker module. Applications are affected only… | |
| Aplazada | Crítica (9.5) | 0.50% | — | TinypoolAI | 2/10/2026 | 2/10/2026 | Tinypool is a minimal Node.js worker thread pool implementation. Prior to 2.1.1, Tinypool constructs ThreadPool.options from a normal options object and reads the execArgv and env worker options in dist/index.js, allowing values inherited from a polluted Object.prototype to be copied into own properties and passed to… | |
| Aplazada | Alta (7.1) | 0.24% | — | Meari IOT Cloud PlatformAI | 2/10/2026 | 3/10/2026 | The Meari IoT Cloud Platform OpenAPI Service is vulnerable to an authorization flaw that allows authenticated users to access the complete device shadow of any device by specifying its device ID. This vulnerability exposes sensitive information, such as device credentials, owner details, network data, and telemetry,… | |
| Pendiente de análisis | Media (6.3) | 0.29% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 16.3.0 until 16.3.8, pending use cache fills for the same key are shared without separating Draft Mode requests from regular requests. An overlapping regular request can receive unauthenticated unpublished content from an editor's Draft Mode… | |
| Pendiente de análisis | Media (6.3) | 0.27% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 15.0.0 until 15.5.27 and 16.3.8, self-hosted applications using the Pages Router with statically generated or Incremental Static Regeneration pages can key a response cache entry without sufficiently binding it to the source route. A request… | |
| Pendiente de análisis | Baja (2.3) | 0.17% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 16.0.0 until 16.3.8, the next dev development server exposes a Model Context Protocol endpoint without reliably restricting cross-site requests. A malicious website visited by a developer can reach the endpoint and read the project's disk… | |
| Pendiente de análisis | Media (6.3) | 0.17% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 16.0.0 until 16.3.8, the `next dev` development server exposes a Model Context Protocol endpoint without reliably restricting cross-site requests. A malicious website visited by a developer can reach the endpoint and read the project's disk… | |
| Pendiente de análisis | Media (6.3) | 0.27% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 15.0.0 until 15.5.27 and 16.3.8, applications with a root-level catch-all page and statically generated or Incremental Static Regeneration routes can use a shared response cache key that is insufficiently scoped to the source route. A single… | |
| Pendiente de análisis | Alta (8.3) | 0.27% | — | Vercel Next.jsAI | 2/10/2026 | 2/10/2026 | Next.js is a React framework for building full-stack web applications. From 16.0.0 until 16.3.8, Image Optimization can follow attacker-controlled DNS resolution for a remote URL that matches images.remotePatterns, allowing the optimized image fetch to reach private IP addresses after the URL passes the allow-list… | |
| Pendiente de análisis | Alta (7.5) | 0.34% | — | Crmne Ruby LLMAI | 2/10/2026 | 2/10/2026 | crmne/ruby_llm at commit fa6f279847d6d7027814539d9c0dfc3bbdfd2a83 contains a polynomial-time regular expression denial-of-service condition in Mistral model capability matching on Ruby 3.1.x | |
| Aplazada | Sin puntuar | 0.27% | — | Modelscope AgentscopeAI | 2/10/2026 | 2/10/2026 | agentscope v1.0.20 contains code injection in execute_shell_command (src/agentscope/tool/_coding/_shell.py). Depending on the exposed entry, an attacker can trigger attacker-controlled code or command execution. | |
| Aplazada | Sin puntuar | 0.21% | — | FinrobotAI | 2/10/2026 | 2/10/2026 | FinRobot 1.0.0 contains code injection in CodingUtils.create_file_with_code (). | |
| Aplazada | Sin puntuar | 0.21% | — | FinrobotAI | 2/10/2026 | 2/10/2026 | FinRobot v1.0.0 is vulnerable to Code Injection in CodingUtils.modify_code. | |
| Aplazada | Alta (7.5) | 0.43% | — | SuperagiAI | 2/10/2026 | 2/10/2026 | TransformerOptimus SuperAGI v0.0.14 contains an incorrect access control vulnerability in delete_user_knowledge in superagi/controllers/knowledges.py. In affected source snapshots, POST /knowledges/delete/{knowledge_id} deletes the selected knowledge object without requiring authentication in the route and without… | |
| Aplazada | Sin puntuar | 0.23% | — | SuperagiAI | 2/10/2026 | 2/10/2026 | TransformerOptimus SuperAGI v0.0.14 is vulnerable to Incorrect Access Control in the tool controller. In affected source snapshots, get_tool and update_tool in superagi/controllers/tool.py accept a caller-supplied tool_id and fail to verify organization ownership through the associated toolkit. A remote authenticated… | |
| Aplazada | Sin puntuar | 0.21% | — | SuperagiAI | 2/10/2026 | 2/10/2026 | TransformerOptimus SuperAGI v0.0.14 is vulnerable to Incorrect Access Control in the agent template controller. In affected source snapshots, save_agent_as_template and publish_template in superagi/controllers/agent_template.py accept caller-supplied agent_id or agent_execution_id values and do not verify that the… | |
| Aplazada | Sin puntuar | 0.36% | — | VannaAI | 2/10/2026 | 2/10/2026 | vanna v2.0.2 contains a code injection vulnerability in VannaBase.get_plotly_figure (src/vanna/legacy/base/base.py). Depending on the exposed entry, an attacker can trigger attacker-controlled code or command execution. | |
| Aplazada | Alta (8.1) | 0.39% | — | Taskingai QR Code GeneratorAI | 2/10/2026 | 2/10/2026 | In TaskingAI v0.3.0 in the QR Code Generator plugin save_base64_image function, a path traversal vulnerability allows attackers to write image files to arbitrary locations on the server filesystem by manipulating the project_id parameter. | |
| Aplazada | Sin puntuar | 0.14% | — | TaskingaiAI | 2/10/2026 | 2/10/2026 | In TaskingAI v0.3.0 in the DALL-E 3 image generation tool save_url_image function, a path traversal vulnerability allows attackers to write downloaded images to arbitrary locations on the server filesystem by manipulating the project_id parameter. |