Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

30.457 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
RecibidaAlta (7.1)0.43%—Linux KernelAI6/10/20267/10/2026
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOB read in smb3_enum_snapshots() If snapshot_array_size is smaller than GMT_TOKEN_SIZE, smb3_enum_snapshots() sets ret_data_len to sizeof(struct smb_snapshot_array) without verifying the actual length of the server's reply.…
RecibidaSin puntuar0.20%—Linux KernelAI6/10/20266/10/2026
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix reparse buffer bounds in cifs_query_reparse_point() In cifs_query_reparse_point(), the start >= end check before casting to struct reparse_data_buffer * only ensures the start pointer is within the response. It fails to verify that…
RecibidaSin puntuar0.22%—Linux KernelAI6/10/20266/10/2026
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix server->total_read for compound encrypted PDUs In receive_encrypted_standard(), server->total_read is left at the full decrypted frame size when walking sub-PDUs of a compound encrypted frame. As a result, cifs_handle_standard()…
RecibidaAlta (7.8)0.15%—Linux KernelAI6/10/20267/10/2026
In the Linux kernel, the following vulnerability has been resolved: drm/ttm: fix swapped-out resources never leaving their bulk_move range ttm_tt_swapout() returns the number of pages swapped out on success and a negative error code on failure; for a populated ttm it never returns zero. Commit b2ed01e7ad3d ("drm/ttm:…
RecibidaSin puntuar0.15%—Linux KernelAI6/10/20266/10/2026
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: restrict BAR0 fallback read to SR-IOV VFs only The BAR0 fallback read path was introduced as a workaround for SR-IOV VFs where the VRAM aperture is not available during early init. Restrict this workaround to only SR-IOV VFs where it's…
AplazadaAlta (7.1)0.25%—Wpsocialrocket Social RocketAI6/10/20267/10/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Socialrocket Social Rocket social-rocket allows Reflected XSS.This issue affects Social Rocket: from n/a through 1.3.5.
AplazadaMedia (6.5)0.25%—Themetechmount TruebookerAI6/10/20266/10/2026
Unauthenticated Settings Change in TrueBooker <= 1.2.9 versions.
AplazadaAlta (7.5)0.39%—Wclovers Woocommerce Multivendor MarketplaceAI6/10/20266/10/2026
Unauthenticated Broken Access Control in WooCommerce Multivendor Marketplace – REST API <= 1.6.3 versions.
AplazadaMedia (5.3)0.25%—Mailjet Email MarketingAI6/10/20266/10/2026
Unauthenticated Sensitive Data Exposure in Mailjet Email Marketing <= 6.2.3 versions.
AplazadaAlta (8.1)0.26%—HaakenAI6/10/20266/10/2026
Unauthenticated PHP Object Injection in Haaken <= 1.5 versions.
Pendiente de análisisMedia (5.4)0.19%—KeycloakAI6/10/20266/10/2026
A flaw was found in the OIDC implementation of Keycloak, specifically within the Device Authorization Grant flow. This component allows devices with limited input capabilities to obtain security tokens. The issue occurs because the flow fails to check the minimum authentication level required by a client…
Pendiente de análisisCrítica (9.3)1.8%💥 ExploitAtlassian Bitbucket Data CenterAIAtlassian Confluence Data CenterAIAtlassian Jira Service Management Data CenterAIAtlassian Jira Software Data CenterAI+45/10/20267/10/2026
This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center. Crowd Data Center, Crucible and Fisheye. This Arbitrary File Access vulnerability allows an unauthenticated attacker to access specific files within the web…
Pendiente de análisisMedia (6.9)0.29%—Docker BuildxAI5/10/20266/10/2026
Docker Buildx Bake does not request the expected fs.read approval for certain filesystem inputs. An untrusted Bake definition can expose a readable file through a pathless secret whose ID is interpreted as a client-side pathname, or consume a local OCI image layout outside the project after entitlement validation…
Pendiente de análisisMedia (5.4)0.15%—Maestro Grpc BrokerAI5/10/20266/10/2026
A flaw was found in the maestro gRPC broker. This vulnerability allows a remote attacker, with a valid client certificate, to bypass authentication. This bypass enables the attacker to subscribe to other consumers' event streams, leading to unauthorized information disclosure, or to publish forged agent status, which…
AplazadaAlta (7.5)0.28%—Insumermodel Mppx Condition GateAIInsumermodel Mppx Token GateAI5/10/20266/10/2026
mppx-condition-gate provides conditional free-access wrappers for mppx payment methods. Prior to @insumermodel/mppx-condition-gate 3.0.0 and @insumermodel/mppx-token-gate 1.0.4, the packages read a wallet address from the client-supplied credential.source, checked whether that public address met configured on-chain…
AplazadaMedia (4.3)0.17%—Stellarwp Event TicketsAI5/10/20266/10/2026
Missing Authorization vulnerability in Liquid Web / StellarWP Event Tickets event-tickets allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Event Tickets: from n/a through 5.30.0.
AplazadaMedia (4.3)0.21%—Joomsky JS Support TicketAI5/10/20266/10/2026
Authorization Bypass Through User-Controlled Key vulnerability in Ahmad JS Help Desk js-support-ticket allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JS Help Desk: from n/a through 4.0.0.
Pendiente de análisisMedia (6.5)0.22%—KeycloakAI5/10/20266/10/2026
A flaw was found in the Dynamic Client Registration flow of the Keycloak identity and access management server. The issue occurs because the registration process fails to filter security-sensitive client attributes when a new client is created. An attacker with a valid Initial Access Token can register a client that…
Pendiente de análisisMedia (5.7)0.20%—KeycloakAI5/10/20266/10/2026
A flaw was found in the User Session Note mapper of the Keycloak identity and access management solution. The issue occurs because the mapper does not validate whether a requested session note contains sensitive internal credentials, such as federated access tokens from external identity providers. This allows a…
Pendiente de análisisMedia (4)0.12%—KeycloakAI5/10/20266/10/2026
A flaw was found in the X.509 client-certificate authenticator of Keycloak, a solution for identity and access management. The issue occurs when the server is configured to check certificate revocation using CRL Distribution Points or OCSP. An attacker can provide a specially crafted certificate that points to a…
AplazadaMedia (5.3)0.20%—Mayswind EzbookkeepingAI4/10/20266/10/2026
ezBookkeeping 1.2.0 before 2.0.1 contains a privilege escalation vulnerability that allows attackers holding an API token to obtain a full session token via /api/v1/tokens/refresh.json. Because TokenRefreshHandler never checks token type, attackers can exchange short-lived or IP-restricted API tokens for 30-day normal…
AplazadaMedia (4.3)0.16%—Helpdesk Support Ticket System FOR WoocommerceAI3/10/20266/10/2026
The Helpdesk Support Ticket System for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.1.6 via the 'id' parameter due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with subscriber-level…
AplazadaMedia (6.9)0.33%💥 PoCKenerAI2/10/20266/10/2026
Kener 4.0.0 before 4.1.6 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve hidden or inactive monitor data by querying dashboard API handlers lacking visibility filters. Attackers can supply a known or guessed monitor tag to endpoints such as monitor-bar and…
AplazadaAlta (8.7)0.37%—Mooncake Transfer EngineAI2/10/20266/10/2026
Mooncake transfer engine before 0.3.12 contains an out-of-bounds read vulnerability in the readString function of include/common.h that allows unauthenticated attackers to crash the service by sending a zero-length handshake frame. Attackers can connect to the handshake port listening on all interfaces and send an…
Pendiente de análisisMedia (5.1)0.11%—Wso2 Message BrokerAI2/10/20266/10/2026
Armatura One's message broker logs client connection credentials and the associated password in plain text during normal operation. Any party with read access to this log, or to a backup or support bundle that includes it, can obtain the logged credential.