Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
2676 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.1) | 0.42% | — | Docling CoreAI | 16/7/2026 | 17/7/2026 | Docling Core defines core data types and transformations for the document processing application Docling. In versions 2.5.0 and above, prior to 2.74.1, docling-core could allow local file:// image references and accepted inline data: content without a decoded-size limit. In applications that accept untrusted image… | |
| Analizada | Baja (3.7) | 0.46% | — | Coredns.io Coredns | 16/7/2026 | 22/7/2026 | CoreDNS is a DNS server written in Go. From 1.9.4 until 1.14.5, a network DNS client allowed to request AXFR for a CoreDNS zone can trigger a panic when CoreDNS is configured with k8s_external headless-service zone transfers and Kubernetes contains a headless service endpoint with no declared ports;… | |
| Analizada | Alta (7.5) | 0.66% | — | Coredns.io Coredns | 16/7/2026 | 22/7/2026 | CoreDNS is a DNS server written in Go. Prior to 1.14.4, a single 28-byte UDP datagram can crash the CoreDNS process when the proxyproto plugin is enabled because plugin/pkg/proxyproto/proxyproto.go PacketConn.ReadFrom handles a PROXY v2 header with non-UDP transport such as family byte 0x11, reassigns addr from a nil… | |
| Analizada | Media (5.3) | 0.54% | — | Coredns.io Coredns | 16/7/2026 | 22/7/2026 | CoreDNS is a DNS server written in Go. Prior to 1.14.5, the CoreDNS rewrite plugin supports edns0 rewrite rules with an optional revert flag, and two response rules, edns0SetResponseRule and edns0ReplaceResponseRule[T] in plugin/rewrite/edns0.go, call res.IsEdns0() and immediately dereference the returned *dns.OPT… | |
| Pendiente de análisis | Alta (8.2) | 0.61% | — | Nasa Core Flight SystemAINasa Health AND SafetyAI | 16/7/2026 | 17/7/2026 | A vulnerability exists in the Health & Safety (HS) application of NASA's Core Flight System (cFS). The flaw allows the application to crash via segmentation fault when processing a routine Housekeeping Telemetry request, leading to denial of service. | |
| Pendiente de análisis | Media (5.7) | 0.38% | — | Amazon Bedrock Agentcore Python SDKAI | 16/7/2026 | 17/7/2026 | AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform. Unintended logging of sensitive user content in the OpenTelemetry instrumentation in AWS Bedrock AgentCore Python SDK versions 1.4.8 and 1.5.0 might allow a… | |
| Aplazada | Alta (8.7) | 0.97% | — | Prompty CoreAIGray-matterAI | 16/7/2026 | 18/7/2026 | Prompty is a markdown file format (.prompty) for LLM prompts. From 2.0.0-alpha.1 until 2.0.0-beta.3, the @prompty/core TypeScript loader in runtime/typescript/packages/core/src/core/loader.ts used gray-matter without overriding executable js and javascript frontmatter engines, allowing an attacker-controlled .prompty… | |
| Aplazada | Media (5.4) | 0.26% | — | Sigstore-jsAISigstore CoreAI | 14/7/2026 | 15/7/2026 | sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 3.2.1, the preAuthEncoding function in @sigstore/core uses Node.js ascii encoding when converting the PAE string to bytes, allowing payloadType to be mutated after signing without invalidating the signature and breaking the… | |
| Analizada | Alta (7.5) | 1.2% | — | Microsoft Asp.net Core OdataMicrosoft Odata WEB API | 14/7/2026 | 24/7/2026 | Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. | |
| Analizada | Alta (7.5) | 1.2% | — | Microsoft Asp.net Core OdataMicrosoft Odata WEB API | 14/7/2026 | 16/7/2026 | Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. | |
| Aplazada | Alta (7.5) | 0.51% | — | Select-themes Struktur CoreAI | 13/7/2026 | 11/8/2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur Core allows PHP Local File Inclusion. This issue affects Struktur Core: from n/a before 2.7. | |
| Aplazada | Alta (8.8) | 0.23% | — | Purethemes Workscout-coreAI | 13/7/2026 | 13/7/2026 | Cross-Site Request Forgery (CSRF) vulnerability in purethemes WorkScout-Core workscout-core allows Authentication Bypass.This issue affects WorkScout-Core: from n/a through <= 1.7.08. | |
| Aplazada | Baja (2.1) | 0.33% | — | BahmnicoreAI | 12/7/2026 | 13/7/2026 | A vulnerability was detected in Bahmni bahmnicore up to 0.93. This affects the function additionalParams of the file /openmrs/ws/rest/v1/bahmnicore/sql of the component Search Endpoint. Performing a manipulation of the argument test results in sql injection. The attack can be initiated remotely. The exploit is now… | |
| Analizada | Media (5.4) | 0.23% | — | Centarro Commerce Core | 10/7/2026 | 6/8/2026 | Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Commerce Core allows Stored XSS. This issue affects Commerce Core versions: from 3.3.0 to 3.3.6. | |
| Aplazada | Media (6.1) | 0.34% | — | Logto CoreAI | 10/7/2026 | 13/7/2026 | Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, @logto/core reflected the SAML RelayState, SAMLResponse, and actionUrl into a Logto-origin auto-submit HTML form in packages/core/src/saml-application/SamlApplication/utils.ts without HTML-attribute escaping. A SAML application… | |
| Aplazada | Alta (7.1) | 0.35% | — | PimcoreAI | 9/7/2026 | 10/7/2026 | Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, the Studio API class definition creation endpoint POST /pimcore-studio/api/class/definition/configuration-view/detail/create is guarded by the objects permission instead of the classes permission, allowing a standard… | |
| Aplazada | Alta (7.7) | 0.41% | — | Pimcore Studio Backend BundleAI | 9/7/2026 | 10/7/2026 | Pimcore Studio Backend Bundle is the backend bundle for Pimcore Studio. Prior to 2025.4.6 and 2026.1.6, an authenticated user can extract the admin password hash and other database content through time-based blind SQL injection in the DateFilter column key parameter. The POST /pimcore-studio/api/website-settings… | |
| Aplazada | Alta (8.8) | 0.67% | — | PimcoreAI | 9/7/2026 | 10/7/2026 | Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, an unauthenticated attacker who knows a valid admin username can take over any Pimcore admin account by sending a password reset request with an attacker-controlled resetPasswordUrl. The server generates a real… | |
| Pendiente de análisis | Alta (8.6) | 0.62% | — | Siemens Cpci85AISiemens SicoreAI | 9/7/2026 | 9/7/2026 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application contains insufficient validation of authentication credentials when processing administrative account modifications through the web API. This… | |
| Pendiente de análisis | Media (6.3) | 0.23% | — | Siemens Cpci85AISiemens Sicore Base SystemAI | 9/7/2026 | 9/7/2026 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application ships with a default configuration that disables all OPC UA security mechanisms. This could allow an attacker to gain unauthorized access and… | |
| Pendiente de análisis | Alta (8.4) | 0.18% | — | Siemens Cpci85AISiemens SicoreAI | 9/7/2026 | 9/7/2026 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application contains a vulnerability in its firmware update mechanism's signature validation process. This could allow an attacker to install malicious… | |
| Pendiente de análisis | Alta (7.1) | 0.41% | — | Siemens Cpci85AISiemens SicoreAI | 9/7/2026 | 9/7/2026 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application includes a debugging interface that is accessible through HTTP endpoints. This could allow an authenticated attacker to disrupt the system by… | |
| Aplazada | Crítica (9.4) | 0.14% | — | XEN VarstoredAITianocore OvmfAI | 9/7/2026 | 29/9/2026 | varstored is a component of the Xapi toolstack handling UEFI Variables for a VM. It has a communication path with OVMF inside the VM involving mapping a buffer prepared by OVMF. Within varstored, there were insufficient compiler barriers, creating TOCTOU issues with data in the shared buffer. The exact vulnerable… | |
| Aplazada | Alta (7.4) | 0.27% | — | CorewcfAI | 8/7/2026 | 10/7/2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF SPNEGO SecurityContextToken negotiation can expose the proof key recovered from the RSTR when TransportWithMessageCredential with Windows client credentials and session establishment are used,… | |
| Aplazada | Alta (7.4) | 0.19% | — | CorewcfAI | 8/7/2026 | 10/7/2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF WS-Security endorsing and supporting signature verification does not ensure the selected ds:Signature covers the expected Security header target, allowing an attacker with one captured signed… |