Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1144 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.9) | 0.38% | — | Librechat | 7/1/2026 | 7/10/2026 | LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 does not enforce proper access control for file uploads to an agents file context and file search. An authenticated attacker with access to the agent ID can change the behavior of arbitrary agents by uploading new files to the file context or… | |
| Aplazada | Media (4.3) | 0.23% | — | Mykola Lukin Orders Chat FOR WoocommerceAI | 31/12/2025 | 17/6/2026 | Missing Authorization vulnerability in Mykola Lukin Orders Chat for WooCommerce orders-chat-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Orders Chat for WooCommerce: from n/a through <= 1.2.0. | |
| Aplazada | Media (4.3) | 0.13% | — | FreshchatAI | 16/12/2025 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in freshchat Freshchat freshchat allows Cross Site Request Forgery.This issue affects Freshchat: from n/a through <= 2.3.4. | |
| Analizada | Crítica (9.6) | 0.63% | — | Thinkinai Deepchat | 16/12/2025 | 7/10/2026 | DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to version 0.5.3, a security vulnerability exists in the Mermaid diagram rendering component that allows arbitrary JavaScript execution. Due to the exposure of the Electron IPC renderer to the DOM, this… | |
| Aplazada | Media (4.4) | 0.23% | — | Contact Form 7 With ChatworkAI | 12/12/2025 | 7/10/2026 | The Contact Form 7 with ChatWork plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'api_token' and 'roomid' settings in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with… | |
| Analizada | Media (5.3) | 0.22% | — | Librechat | 11/12/2025 | 7/10/2026 | LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, there is no handler for JSON parsing errors; SyntaxError from express.json() includes user input in the error message, which gets reflected in responses. User input (including HTML/JavaScript) can be exposed in error responses,… | |
| Analizada | Media (5.3) | 0.33% | — | Librechat | 11/12/2025 | 7/10/2026 | LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when creating prompts, JSON requests are sent to define and modify the prompts via PATCH endpoint for prompt groups (/api/prompts/groups/:groupId). However, the request bodies are not sufficiently validated for proper input, enabling… | |
| Analizada | Alta (8.6) | 0.21% | — | Librechat | 11/12/2025 | 7/10/2026 | LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when a user posts a question, the iconURL parameter of the POST request can be modified by an attacker. The malicious code is then stored in the chat which can then be shared to other users. When sharing chats with a potentially… | |
| Analizada | Crítica (9.6) | 0.58% | — | Thinkinai Deepchat | 9/12/2025 | 7/10/2026 | DeepChat is an open-source AI chat platform that supports cloud models and LLMs. Versions 0.5.1 and below are vulnerable to XSS attacks through improperly sanitized Mermaid content. The recent security patch for MermaidArtifact.vue is insufficient and can be bypassed using unquoted HTML attributes combined with HTML… | |
| Analizada | Crítica (9.6) | 0.61% | — | Thinkinai Deepchat | 3/12/2025 | 17/6/2026 | DeepChat is a smart assistant uses artificial intelligence. In 0.5.0 and earlier, there is a Stored Cross-Site Scripting (XSS) vulnerability in the Mermaid diagram renderer allows an attacker to execute arbitrary JavaScript within the application context. By leveraging the exposed Electron IPC bridge, this XSS can be… | |
| Aplazada | Media (5.3) | 0.33% | 💥 PoC | MxchatAI | 3/12/2025 | 17/6/2026 | The MxChat – AI Chatbot for WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.5.5 via upload filenames. This makes it possible for unauthenticated attackers to extract session values that can subsequently be used to access conversation data. | |
| Analizada | Alta (8.6) | 0.29% | — | Librechat | 29/11/2025 | 7/10/2026 | LibreChat is a ChatGPT clone with additional features. Prior to version 0.8.1-rc2, LibreChat is vulnerable to Server-side Request Forgery (SSRF), by passing specially crafted OpenAPI specs to its "Actions" feature and making the LLM use those actions. It could be used by an authenticated user with access to this… | |
| Aplazada | Media (5.3) | 0.28% | — | AYS Code AI Chatbot With Chatgpt AND Content GeneratorAI | 27/11/2025 | 17/6/2026 | The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'ays_chatgpt_save_wp_media' function in all versions up to, and including, 2.7.0. This makes it possible for unauthenticated attackers to upload media files. | |
| Aplazada | Media (6.5) | 0.29% | — | AYS AI Chatbot With Chatgpt AND Content GeneratorAI | 27/11/2025 | 17/6/2026 | The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.7.0 via the ays_chatgpt_pinecone_upsert function. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations… | |
| Aplazada | Media (5.3) | 0.27% | — | Autochat Automatic ConversationAI | 25/11/2025 | 17/6/2026 | The Autochat Automatic Conversation plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wp_ajax_nopriv_auycht_saveCid' AJAX endpoint in all versions up to, and including, 1.1.9. This makes it possible for unauthenticated attackers to connect and disconnect… | |
| Aplazada | Alta (7.5) | 0.36% | — | Oneclick Chat TO OrderAI | 22/11/2025 | 17/6/2026 | The OneClick Chat to Order plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.0.8 via the 'wa_order_thank_you_override' function due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to view sensitive… | |
| Aplazada | Media (5.3) | 0.21% | — | Themeatelier Better Chat Support FOR MessengerAI | 21/11/2025 | 17/6/2026 | Missing Authorization vulnerability in ThemeAtelier Better Chat Support for Messenger better-chat-support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Better Chat Support for Messenger: from n/a through <= 1.2.18. | |
| Aplazada | Media (5.3) | 0.22% | — | Themeatelier Chat HelpAI | 21/11/2025 | 17/6/2026 | Missing Authorization vulnerability in ThemeAtelier Chat Help chat-help allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Chat Help: from n/a through <= 3.1.3. | |
| Aplazada | Media (4.3) | 0.19% | — | WschatAI | 19/11/2025 | 17/6/2026 | The WSChat – WordPress Live Chat plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'reset_settings' AJAX endpoint in all versions up to, and including, 3.1.6. This makes it possible for authenticated attackers, with Subscriber-level access and above, to… | |
| Aplazada | Media (6.1) | 0.21% | — | Artibot Free Chat BOT FOR WebsitesAI | 18/11/2025 | 17/6/2026 | The ArtiBot Free Chat Bot for WebSites plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via PostMessage in all versions up to, and including, 1.1.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in… | |
| Aplazada | Media (5.3) | 0.27% | — | Quantumcloud ChatbotAI | 13/11/2025 | 7/10/2026 | Missing Authorization vulnerability in QuantumCloud ChatBot chatbot allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ChatBot: from n/a through <= 7.3.9. | |
| Analizada | Media (6.8) | 0.47% | — | Microsoft Github Copilot Chat | 11/11/2025 | 17/6/2026 | Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally. | |
| Analizada | Alta (8.8) | 0.75% | 💥 PoC | Microsoft Github Copilot Chat | 11/11/2025 | 17/6/2026 | Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code over a network. | |
| Aplazada | Media (6.4) | 0.22% | — | Five9 Live ChatAI | 11/11/2025 | 17/6/2026 | The Five9 Live Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'toolbar' attribute of the [five9-chat] shortcode in all versions up to, and including, 1.1.2. This is due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with… | |
| Analizada | Media (6.5) | 0.15% | — | Pijey Simple Public Chat Room | 10/11/2025 | 17/6/2026 | The send_message.php endpoint in SourceCodester Simple Public Chat Room 1.0 is vulnerable to Cross-Site Request Forgery (CSRF). The application does not implement any CSRF-protection mechanisms such as tokens, nonces, or same-site cookie restrictions. An attacker can create a malicious HTML page that, when visited by… |