Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

6557 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaBaja (2.1)0.32%—Xinhu Rainrock RockoaAI1/9/20261/9/2026
A vulnerability was determined in Xinhu Rainrock RockOA up to 2.3.2. The impacted element is the function toaddval of the file /index.php?m=index&a=publicsavevalue&ajaxbool=true. Executing a manipulation of the argument Value can lead to sql injection. The attack may be performed from remote. The exploit has been…
AplazadaBaja (2.1)0.32%—Xinhu Rainrock RockoaAI1/9/20261/9/2026
A weakness has been identified in Xinhu Rainrock RockOA up to 2.7.6. Affected by this issue is the function getOrder of the file webmain/webmainAction.php. Executing a manipulation of the argument highorder can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the…
Pendiente de análisisAlta (7.5)0.79%—Openshift Oauth-serverAIGolang.org X TextAI1/9/20267/10/2026
A flaw was found in openshift/oauth-server. The OAuth login and error page endpoints pass the unauthenticated Accept-Language header to golang.org/x/text/language.ParseAcceptLanguage() without input validation. A bypass of the CVE-2022-32149 mitigation exists: the upstream guard counts only '-' characters but the…
AplazadaMedia (5.4)0.19%—Hono Oauth-providersAI31/8/20269/9/2026
@hono/oauth-providers is Authentication middleware for Hono. Prior to version 0.8.6, the built-in social login providers accept an OAuth callback even when the `state` value is absent on both sides, so the anti-CSRF check passes for a callback that never came from a genuine login attempt. This defeats the…
AplazadaMedia (6)0.50%—OasdiffAI31/8/20269/9/2026
oasdiff is a command-line and Go package that compares and detects breaking changes in OpenAPI specs. From version 1.13.2 through version 1.18.0, oasdiff did not enforce --allow-external-refs=false (library: openapi3.Loader.IsExternalRefsAllowed = false) when loading a spec from a git revision (the rev:path form, e.g.…
AplazadaAlta (8.3)0.50%—Oasdiff-actionAI31/8/20269/9/2026
oasdiff-action is a GitHub Action that detects breaking changes in OpenAPI specs and post a review on every pull request. Before version 0.0.51, the oasdiff actions resolved external $refs in the OpenAPI spec by default (allow-external-refs: true). When an action runs on a pull request whose spec is…
AplazadaMedia (5.5)0.52%—Soarkey StudentmanagementAI31/8/202631/8/2026
A weakness has been identified in Soarkey StudentManagement and 学生信息管理系统 up to e08f7f1d5015af407aa4cca0ada3dea189b4937e. This impacts the function AdminDao.doGet of the file code/src/service/AdminDao.java of the component Administrative Servlet. Executing a manipulation of the argument action can lead to authorization…
AplazadaBaja (2.1)0.33%—Soarkey StudentmanagementAISoarkey XueshengxinxiguanlixitongAI31/8/20261/9/2026
A security flaw has been discovered in Soarkey StudentManagement and 学生信息管理系统 up to e08f7f1d5015af407aa4cca0ada3dea189b4937e. This affects the function CourseDao.course_ranking of the file code/src/dao/CourseDao.java. Performing a manipulation of the argument cno results in sql injection. It is possible to initiate…
AplazadaBaja (2.1)0.12%—Ash-project ASH CloakAI30/8/20261/9/2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ash-project ash_cloak allows anyone with access to logs, error trackers, or crash reports, or anyone who can trigger a validation error, to recover the plaintext of a field the library encrypts. AshCloak.Transformers.SetUpEncryption removes…
AplazadaMedia (5.9)0.37%—ASH CloakAI30/8/20261/9/2026
Deserialization of Untrusted Data vulnerability in ash-project ash_cloak allows an attacker who can influence the bytes of an encrypted column to crash the BEAM node, by triggering unbounded atom creation or a decompression bomb during decryption. AshCloak.Calculations.Decrypt decodes the decrypted binary with…
AplazadaCrítica (9.3)1.1%—Tenda Hg10AIBOA WEB ServerAI30/8/20261/9/2026
A weakness has been identified in Tenda HG10 300001138. Affected by this issue is the function formIPv6Routing of the file /boaform/admin/formIPv6Routing of the component Boa Web Server. This manipulation of the argument destNet causes buffer overflow. The attack is possible to be carried out remotely. The exploit has…
Pendiente de análisisAlta (8.6)0.32%—Pac4j-oidcAIKeycloakAI29/8/202610/9/2026
pac4j-oidc before 6.5.6 fails to verify access token signatures, issuers, audiences, or expiry when extracting Keycloak realm and client roles. Attackers can forge access tokens with administrative roles paired with valid ID tokens to bypass authorization checks in applications relying on pac4j role validation.
AplazadaAlta (8.7)0.44%—Joomla Sexy Polling ReloadedAI28/8/202628/8/2026
Joomla Extension - Jefferson49 - Unauthenticated blind SQLi in Sexy Polling Reloaded < 5.6.1
AplazadaCrítica (9.8)0.43%💥 PoCWpmudev Wpmu DEV DashboardAI28/8/202628/8/2026
The WPMU DEV Dashboard plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.0.1. This is due to inconsistent and ambiguous HMAC message construction between the unauthenticated `wdpsso_step1` and `wdpsso_step2` AJAX actions, where step 1 signs and discloses an unseparated…
AnalizadaAlta (8.2)0.32%—Broadcom Spring Authorization Server27/8/202631/8/2026
Spring Authorization Server's default consent page renders user-controlled values without HTML entity encoding. When using the DefaultConsentPage, an attacker can craft an OAuth2 authorization request containing a malicious value that is stored server-side and later rendered unencoded in the default consent page…
AnalizadaAlta (7.6)0.43%—Broadcom Spring Cloud Commons27/8/20261/9/2026
There is no allow list for property keys when Spring Cloud Commons writable /actuator/env is enabled. Spring Cloud Commons 5.0.0 - 5.0.2 Spring Cloud Commons 4.3.0 - 4.3.3 Spring Cloud Commons 4.0.0 - 4.2.6 Spring Cloud Commons 3.1.10 and earlier
AplazadaAlta (7.5)0.49%—CcoapAI27/8/20261/9/2026
ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a vulnerability in the option parsing logic that causes a segmentation fault when processing malformed COAP messages with insufficient option data.
AplazadaAlta (7.5)0.49%—CcoapAI27/8/20261/9/2026
ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_dump_msg() function when processing COAP messages containing options with zero length.
AplazadaAlta (7.5)0.38%—CcoapAI27/8/20268/9/2026
A null pointer dereference vulnerability exists in the server-side session management logic of ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5. The issue is caused by a race condition between the request dispatch thread and the session cleanup thread when accessing shared session list nodes without proper…
AplazadaAlta (7.5)0.49%—CcoapAI27/8/20261/9/2026
ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_server_handle_session() function when processing COAP messages containing URI_PATH options with NULL data pointers. When the server searches for a URI_PATH option matching the string "separate", it directly…
AplazadaAlta (7.5)0.49%—CcoapAI27/8/20261/9/2026
ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 lcontains a vulnerability in the option parsing logic that causes a segmentation fault when processing COAP messages containing invalid option numbers.
AplazadaAlta (7.2)0.54%—Fluent Boards PROAI27/8/202628/8/2026
Editor PHP Object Injection in Fluent Boards Pro <= 2.0.11 versions.
AplazadaMedia (6.8)0.50%—Fluent Boards PROAI27/8/202628/8/2026
Editor Arbitrary File Deletion in Fluent Boards Pro <= 2.0.11 versions.
AplazadaCrítica (9.1)0.50%—Fluent Boards PROAI27/8/202628/8/2026
Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions.
AplazadaMedia (6.5)0.22%—Fluent Boards PROAI27/8/202628/8/2026
Subscriber Cross Site Scripting (XSS) in Fluent Boards Pro <= 2.0.11 versions.