Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
267 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.82% | — | Automatic1111 Stable-diffusion-webui | 20/3/2025 | 17/6/2026 | automatic1111/stable-diffusion-webui version 1.10.0 contains a vulnerability where the server fails to handle excessive characters appended to the end of multipart boundaries. This flaw can be exploited by sending malformed multipart requests with arbitrary characters at the end of the boundary, leading to excessive… | |
| Aplazada | Media (5.3) | 0.36% | — | Webuidesigning NebulaxAI | 23/12/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in webuidesigning NebulaX Theme up to 5.0 on WordPress. This issue affects the function nebula_send_to_hubspot of the file libs/Legacy/Legacy.php. The manipulation leads to sql injection. The attack may be initiated remotely. The patch is named… | |
| Modificada | Alta (7.3) | 0.32% | — | Lollms-webui | 14/11/2024 | 17/6/2026 | parisneo/lollms-webui version 9.6 is vulnerable to Cross-Site Scripting (XSS) and Open Redirect due to inadequate input validation and processing of SVG files during the upload process. The XSS vulnerability allows attackers to embed malicious JavaScript code within SVG files, which is executed upon rendering, leading… | |
| Analizada | Media (4.4) | 0.32% | — | Lollms-webui | 11/10/2024 | 17/6/2026 | A path traversal vulnerability exists in the parisneo/lollms-webui repository, specifically in the `lollms_file_system.py` file. The functions `add_rag_database`, `toggle_mount_rag_database`, and `vectorize_folder` do not implement security measures such as `sanitize_path_from_endpoint` or `sanitize_path`. This allows… | |
| Rechazada | Sin puntuar | — | — | Openwebui Open Webui | 10/10/2024 | 11/9/2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | |
| Modificada | Media (5.4) | 0.37% | — | Openwebui Open Webui | 10/10/2024 | 17/6/2026 | In version v0.3.8 of open-webui, an improper privilege management vulnerability exists in the API endpoints GET /api/v1/documents/ and POST /rag/api/v1/doc. This vulnerability allows a lower-privileged user to access and overwrite files managed by a higher-privileged admin. By exploiting this vulnerability, an… | |
| Modificada | Media (6.5) | 0.37% | — | Openwebui Open Webui | 9/10/2024 | 17/6/2026 | An Insecure Direct Object Reference (IDOR) vulnerability exists in open-webui/open-webui version v0.3.8. The vulnerability occurs in the API endpoint `http://0.0.0.0:3000/api/v1/memories/{id}/update`, where the decentralization design is flawed, allowing attackers to edit other users' memories without proper… | |
| Modificada | Alta (8.8) | 1.0% | — | Openwebui Open Webui | 7/8/2024 | 17/6/2026 | Attacker controlled files can be uploaded to arbitrary locations on the web server's filesystem by abusing a path traversal vulnerability. | |
| Modificada | Media (6.1) | 0.66% | — | Openwebui Open Webui | 7/8/2024 | 17/6/2026 | Attackers can craft a malicious prompt that coerces the language model into executing arbitrary JavaScript in the context of the web page. | |
| Analizada | Baja (3.3) | 0.16% | — | Lollms-webui | 24/6/2024 | 17/6/2026 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the 'Servers Configurations' function of the parisneo/lollms-webui, versions 9.6 to the latest. The affected functions include Elastic search Service (under construction), XTTS service, Petals service, vLLM service, and Motion Ctrl service, which lack CSRF… | |
| Analizada | Baja (3.3) | 0.67% | 💥 Exploit | Lollms-webui | 23/6/2024 | 17/6/2026 | A Path Traversal vulnerability exists in the parisneo/lollms-webui, specifically within the 'add_reference_to_local_mode' function due to the lack of input sanitization. This vulnerability affects versions v9.6 to the latest. By exploiting this vulnerability, an attacker can predict the folders, subfolders, and files… | |
| Analizada | Alta (8.8) | 0.17% | — | Lollms-webui | 10/6/2024 | 17/6/2026 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the restart_program function of the parisneo/lollms-webui v9.6. This vulnerability allows attackers to trick users into performing unintended actions, such as resetting the program without their knowledge, by sending specially crafted CSRF forms. This issue… | |
| Aplazada | Alta (8.2) | 0.40% | — | Ansibleguy-webuiAI | 28/5/2024 | 17/6/2026 | ansibleguy-webui is an open source WebUI for using Ansible. Multiple forms in versions < 0.0.21 allowed injection of HTML elements. These are returned to the user after executing job actions and thus evaluated by the browser. These issues have been addressed in version 0.0.21 (0.0.21.post2 on pypi). Users are advised… | |
| Aplazada | Media (4.3) | 0.30% | — | SvnwebuiAI | 24/5/2024 | 17/6/2026 | svnWebUI v1.8.3 was discovered to contain an arbitrary file deletion vulnerability via the dirTemps parameter under com.cym.controller.UserController#importOver. This vulnerability allows attackers to delete arbitrary files via a crafted POST request. | |
| Analizada | Crítica (9.8) | 1.5% | — | Lollms-webui | 22/5/2024 | 17/6/2026 | A remote code execution (RCE) vulnerability exists in the parisneo/lollms-webui, specifically within the 'open_file' module, version 9.5. The vulnerability arises due to improper neutralization of special elements used in a command within the 'open_file' function. An attacker can exploit this vulnerability by crafting… | |
| Analizada | Media (6.4) | 0.41% | — | Openwebui Open Webui | 16/4/2024 | 17/6/2026 | Open WebUI is a user-friendly WebUI for LLMs. Open-webui is vulnerable to authenticated blind server-side request forgery. This vulnerability is fixed in 0.1.117. | |
| Analizada | Alta (8.2) | 0.70% | — | Lollms-webui | 16/4/2024 | 17/6/2026 | parisneo/lollms-webui is vulnerable to authentication bypass due to insufficient protection over sensitive endpoints. The application checks if the host parameter is not '0.0.0.0' to restrict access, which is inadequate when the application is bound to a specific interface, allowing unauthorized access to endpoints… | |
| Analizada | Crítica (9.8) | 40% | — | Lollms-webui | 16/4/2024 | 17/6/2026 | An SQL injection vulnerability exists in the `delete_discussion()` function of the parisneo/lollms-webui application, allowing an attacker to delete all discussions and message data. The vulnerability is exploitable via a crafted HTTP POST request to the `/delete_discussion` endpoint, which internally calls the… | |
| Analizada | Alta (7.5) | 0.78% | — | Lollms-webui | 16/4/2024 | 17/6/2026 | parisneo/lollms-webui is vulnerable to a denial of service (DoS) attack due to uncontrolled resource consumption. Attackers can exploit the `/open_code_in_vs_code` and similar endpoints without authentication by sending repeated HTTP POST requests, leading to the opening of Visual Studio Code or the default folder… | |
| Analizada | Crítica (9.8) | 0.81% | — | Cym1102 Nginxwebui | 13/4/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in cym1102 nginxWebUI up to 3.9.9. This issue affects the function exec of the file /adminPage/conf/reload. The manipulation of the argument nginxExe leads to deserialization. The attack may be initiated remotely. The exploit has been disclosed to the… | |
| Analizada | Crítica (9.8) | 2.9% | — | Cym1102 Nginxwebui | 13/4/2024 | 17/6/2026 | A vulnerability classified as critical was found in cym1102 nginxWebUI up to 3.9.9. This vulnerability affects unknown code of the file /adminPage/main/upload. The manipulation of the argument file leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may… | |
| Analizada | Crítica (9.8) | 0.52% | — | Cym1102 Nginxwebui | 13/4/2024 | 17/6/2026 | A vulnerability classified as critical has been found in cym1102 nginxWebUI up to 3.9.9. This affects the function handlePath of the file /adminPage/conf/saveCmd. The manipulation of the argument nginxPath leads to improper certificate validation. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Crítica (9.8) | 0.90% | — | Cym1102 Nginxwebui | 13/4/2024 | 17/6/2026 | A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been rated as critical. Affected by this issue is the function findCountByQuery of the file /adminPage/www/addOver. The manipulation of the argument dir leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to… | |
| Analizada | Alta (7.5) | 0.92% | — | Cym1102 Nginxwebui | 13/4/2024 | 17/6/2026 | A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been declared as problematic. Affected by this vulnerability is the function upload of the file /adminPage/main/upload. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public… | |
| Aplazada | Media (6.3) | 0.68% | — | GradioAIAutomatic1111 Stable-diffusion-webuiAI | 12/4/2024 | 17/6/2026 | stable-diffusion-webui is a web interface for Stable Diffusion, implemented using Gradio library. Stable-diffusion-webui 1.7.0 is vulnerable to a limited file write affecting Windows systems. The create_ui method (Backup/Restore tab) in modules/ui_extensions.py takes user input into the config_save_name variable on… |