Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2740▼ 483 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
14.243 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.8) | 0.44% | 💥 PoC | Metabox Meta BOX AIOAIMetabox Meta BOX Frontend SubmissionAIMetabox Meta BOX User ProfileAI | 22/9/2026 | 22/9/2026 | The Meta Box AIO plugin for WordPress is vulnerable to Privilege Escalation to Administrator in versions up to, and including, 3.11.0. This is due to a chained flaw: the populate_via_query_string() function in the mb-frontend-submission component unconditionally overrides the form's target object_id from the GET… | |
| Aplazada | Media (6.2) | 0.12% | — | Crmeb Knowledge-paid SystemAI | 21/9/2026 | 1/10/2026 | CRMEB Knowledge-Paid System crmeb_zzff_class 1.4.4 has a backend verification function that returns the wrong type of value, causing errors and leaking sensitive information. | |
| Aplazada | Crítica (9.8) | 0.60% | — | Perl Email-senderAI | 21/9/2026 | 22/9/2026 | Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches the shell in _sendmail_pipe. On MSWin32 the envelope sender and every recipient go into a single command string, which open() passes to a shell. Every other… | |
| Aplazada | Crítica (9.8) | 0.56% | — | MailuAIMailu Helm-chartsAI | 21/9/2026 | 24/9/2026 | Mailu is a mail server distributed as a set of Docker images. From Mailu 2.0 until 2024.06.55 and prior to Mailu helm-charts 2.7.3, deployments with PROXY_AUTH_WHITELIST configured but REAL_IP_HEADER unset trusted a client-controlled X-Forwarded-By header for header-based proxy authentication. The proxy_hide_header… | |
| Pendiente de análisis | Media (5.3) | 0.82% | — | FetchmailAI | 21/9/2026 | 1/10/2026 | A stack-based buffer overflow flaw was found in fetchmail when built with NTLM support. A malicious or compromised mail server advertising NTLM authentication can send a crafted Type 2 challenge that causes fetchmail to write past a fixed stack buffer while building the NTLM authenticate response. This may lead to… | |
| Analizada | Crítica (9.1) | 0.75% | — | Apache Airflow | 21/9/2026 | 25/9/2026 | Apache Airflow: the Core API logout endpoint revokes only a session token presented as the _token cookie. When a client logs out presenting its credential as an Authorization bearer header instead, the endpoint returns its normal logout response but revokes nothing, so the token remains valid until it expires. An… | |
| Analizada | Media (4.2) | 0.73% | — | Apache Airflow | 21/9/2026 | 25/9/2026 | When a request to the Airflow core API carries both a session cookie and an explicit `Authorization: Bearer` token, Airflow resolves the caller from the cookie and ignores the bearer token, inverting the intended precedence of bearer over cookie. The request then executes -- and is recorded in the audit log -- as the… | |
| Analizada | Media (4.3) | 0.64% | — | Apache Airflow | 21/9/2026 | 25/9/2026 | Apache Airflow's `/assets/events` API returned asset events for every Dag in the deployment, with no filter restricting them to the Dags the caller is authorized to read. Any authenticated user holding asset-read access could therefore enumerate asset events — including the source Dag ID, task ID, run ID and event… | |
| Aplazada | Alta (8.2) | 0.44% | — | Ansible Freebsd Jail Connection PluginAI | 21/9/2026 | 24/9/2026 | Ansible FreeBSD Jail Connection Plugin is an Ansible connection plugin for FreeBSD Jails via jexec. Through version 1.3.0, the jailexec connection plugin's put_file resolved a transfer's destination to a path on the jail host ( + ) and ran mkdir -p and mv there as root on the host. Those commands follow symbolic… | |
| Aplazada | Media (5.1) | 0.18% | — | Uvdesk Core-frameworkAISwiftmailerAI | 21/9/2026 | 24/9/2026 | UVdesk core-framework before 1.1.7 contains a stored cross-site scripting vulnerability in the SwiftMailer configuration identifier parameter of the createMailerConfiguration action. Attackers with ROLE_AGENT can inject malicious script into the identifier field, which is persisted and executed when other members… | |
| Pendiente de análisis | Alta (8.8) | 0.65% | — | Redhat Openshift Container PlatformAIKubernetes Cri-oAI | 21/9/2026 | 1/10/2026 | A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious checkpointed container to bypass the destination Kubernetes security context. The restored process may retain credentials, Linux capabilities, no_new_privs, and seccomp state from the checkpoint instead of enforcing the… | |
| Aplazada | Media (5.1) | 0.60% | — | 1millionbot AI Chat PlatformAI | 21/9/2026 | 22/9/2026 | Cross-Site Scripting (XSS) vulnerability due to inadequate input sanitisation in the client-side rendering engine of the 1millionbot AI Chat Platform. An unauthenticated remote user could cause external hyperlinks to be rendered in the web interface by sending messages containing Markdown syntax and certain… | |
| Aplazada | Media (6.9) | 0.54% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 21/9/2026 | A weakness has been identified in aiyiyi121 SxDevOps 1.0/1.1. Impacted is an unknown function of the file backend/sxdevops/settings.py. This manipulation causes information disclosure. It is possible to initiate the attack remotely. Patch name: 2b4bf8585c3e731e7a8af30801ea46680bc783f9. It is suggested to install a… | |
| Aplazada | Media (6.9) | 0.50% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 23/9/2026 | A security flaw has been discovered in aiyiyi121 SxDevOps 1.0/1.1. This issue affects some unknown processing of the file backend/sxdevops/settings.py of the component Settings Handler. The manipulation results in hard-coded credentials. The attack may be performed from remote. The patch is identified as… | |
| Aplazada | Media (6.9) | 0.50% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 22/9/2026 | A vulnerability was identified in aiyiyi121 SxDevOps 1.0/1.1. This vulnerability affects the function ensure_default_superuser of the file rbac/services.py. The manipulation leads to hard-coded credentials. The attack is possible to be carried out remotely. The identifier of the patch is… | |
| Aplazada | Media (5.1) | 0.45% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 21/9/2026 | A vulnerability was determined in aiyiyi121 SxDevOps 1.0/1.1. This affects the function update of the file backend/rbac/serializers.py of the component UserSerializer. Executing a manipulation can lead to improper privilege management. The attack can be executed remotely. This patch is called… | |
| Aplazada | Media (5.1) | 0.73% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 22/9/2026 | A vulnerability was found in aiyiyi121 SxDevOps 1.0/1.1. Affected by this issue is the function generate_host_task of the file backend/aiops/services.py of the component Command Handler. Performing a manipulation of the argument command results in command injection. Remote exploitation of the attack is possible. The… | |
| Aplazada | Media (5.1) | 1.6% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 21/9/2026 | A vulnerability has been found in aiyiyi121 SxDevOps 1.0/1.1. Affected by this vulnerability is the function paramiko.SSHClient.exec_command of the file backend/ops/host_tasks.py of the component TASK_RUN_COMMAND. Such manipulation of the argument command leads to command injection. The attack may be launched… | |
| Aplazada | Media (5.1) | 1.9% | — | Aiyiyi121 SxdevopsAI | 20/9/2026 | 21/9/2026 | A flaw has been found in aiyiyi121 SxDevOps 1.0/1.1. Affected is the function subprocess.Popen of the file backend/aiops/services.py of the component MCP STDIO Server Management. This manipulation of the argument endpoint_or_command causes command injection. The attack may be initiated remotely. Patch name:… | |
| Aplazada | Media (5.5) | 0.69% | — | KamailioAI | 20/9/2026 | 22/9/2026 | A weakness has been identified in Kamailio up to 5.8.8/6.0.7/6.1.4/6.2.0-dev1. The impacted element is the function shm_malloc of the file src/modules/cdp/receiver.c of the component CDP Diameter Receiver. Executing a manipulation can lead to heap-based buffer overflow. It is possible to launch the attack remotely.… | |
| Aplazada | Media (5.3) | 0.62% | — | Wordlift AI Powered SEO SchemaAI | 19/9/2026 | 21/9/2026 | The WordLift – AI powered SEO – Schema plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.54.10 via the JSON-LD REST API endpoints. This is due to the plugin registering the /wordlift/v1/jsonld/ routes (jsonld/{id}, jsonld/http/{item_id},… | |
| Aplazada | Media (5.3) | 0.30% | — | Mailchimp FOR WoocommerceAI | 19/9/2026 | 21/9/2026 | The Mailchimp for WooCommerce WordPress plugin before 6.1.1 does not verify that the requesting user holds the required capability in the permission callback for several of its REST API routes, allowing unauthenticated users to reach administrator-oriented endpoints and trigger a persistent state change. | |
| Aplazada | Crítica (9.1) | 0.31% | — | Cocos AIAI | 18/9/2026 | 24/9/2026 | Cocos AI is a confidential computing system for running AI workloads inside trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) AMD SEV-SNP verification path does not enforce attestation freshness when the expected reportData value is nil, empty, or omitted,… | |
| Aplazada | Crítica (9.1) | 0.27% | 💥 PoC | Cocos AIAIIntel TDXAI | 18/9/2026 | 24/9/2026 | Cocos AI is a confidential computing system for running AI workloads inside trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) Intel TDX verification path does not copy the expected current-session freshness value into the TDX quote-body policy before quote… | |
| Aplazada | Media (6.9) | 0.65% | — | Forget-c Jellyfish AI Short Drama StudioAITiangolo FastapiAI | 18/9/2026 | 22/9/2026 | A vulnerability was identified in Forget-C Jellyfish AI Short Drama Studio 0.1.0-alpha/0.2.0/0.3.0/0.3.1/0.3.2. This affects an unknown function of the file backend/app/dependencies.py of the component FastAPI. The manipulation leads to missing authentication. It is possible to initiate the attack remotely. The… |