Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
1742 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm Immersive Home 214 Platform FirmwareQualcomm Immersive Home 216 Platform FirmwareQualcomm Immersive Home 316 Platform FirmwareQualcomm Immersive Home 318 Platform Firmware+166 | 6/8/2025 | 17/6/2026 | Transient DOS while creating NDP instance. | |
| Analizada | Crítica (9.8) | 0.18% | — | Qualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qca6391 Firmware+30 | 6/8/2025 | 17/6/2026 | Memory corruption while processing specific files in Powerline Communication Firmware. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+368 | 6/8/2025 | 17/6/2026 | Transient DOS while processing an ANQP message. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm Ar8035 FirmwareQualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+146 | 6/8/2025 | 17/6/2026 | Transient DOS while processing a frame with malformed shared-key descriptor. | |
| Analizada | Alta (7.8) | 0.08% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8064au FirmwareQualcomm Ar8035 FirmwareQualcomm C-v2x 9150 Firmware+149 | 6/8/2025 | 17/6/2026 | Memory corruption while handling client exceptions, allowing unauthorized channel access. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+85 | 6/8/2025 | 17/6/2026 | Transient DOS while processing CCCH data when NW sends data with invalid length. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qam8295p Firmware+41 | 6/8/2025 | 17/6/2026 | Memory corruption while processing commands from A2dp sink command queue. | |
| Analizada | Alta (7) | 0.07% | — | Qualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon 8 GEN 1 Mobile Platform FirmwareQualcomm Wcd9380 Firmware+2 | 6/8/2025 | 17/6/2026 | Memory corruption when using Virtual cdm (Camera Data Mover) to write registers. | |
| Analizada | Media (5.5) | 0.09% | — | Qualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qca9367 FirmwareQualcomm Qca9377 Firmware+8 | 6/8/2025 | 17/6/2026 | Information disclosure while capturing logs as eSE debug messages are logged. | |
| Analizada | Media (6.5) | 0.09% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+345 | 6/8/2025 | 17/6/2026 | Information disclosure while processing the hash segment in an MBN file. | |
| Analizada | Media (6.5) | 0.09% | — | Qualcomm Qcm4490 FirmwareQualcomm Qcm5430 FirmwareQualcomm Qcm6125 FirmwareQualcomm Qcm6490 Firmware+338 | 6/8/2025 | 17/6/2026 | Information disclosure while reading data from an image using specified offset and size parameters. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Sm6650 FirmwareQualcomm Sm7635 Firmware+20 | 6/8/2025 | 17/6/2026 | Memory corruption when programming registers through virtual CDM. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Fastconnect 6900 FirmwareQualcomm Qam8255p FirmwareQualcomm Qam8650p FirmwareQualcomm Qam8775p Firmware+20 | 6/8/2025 | 17/6/2026 | Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Ar8035 FirmwareQualcomm C-v2x 9150 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+60 | 6/8/2025 | 17/6/2026 | Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qca6391 Firmware+25 | 6/8/2025 | 17/6/2026 | Memory corruption while submitting blob data to kernel space though IOCTL. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+76 | 6/8/2025 | 17/6/2026 | Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network. | |
| Aplazada | Media (5.9) | 0.20% | — | Mitsubishielectric Genesis64AIMitsubishielectric Iconics SuiteAIMitsubishielectric MobilehmiAIMitsubishielectric Hyper HistorianAI+4 | 6/8/2025 | 17/6/2026 | Windows Shortcut Following (.LNK) vulnerability in multiple processes of Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric MobileHMI versions 10.97.3 and prior, Mitsubishi Electric Hyper Historian versions 10.97.3 and prior,… | |
| Analizada | Media (5.4) | 0.30% | 💥 PoC | Cscsw PAY Mobile | 1/8/2025 | 17/6/2026 | CSC Pay Mobile App 2.19.4 (fixed in version 2.20.0) contains a vulnerability allowing users to bypass payment authorization by disabling Bluetooth at a specific point during a transaction. This could result in unauthorized use of laundry services and potential financial loss. | |
| Aplazada | Crítica (9.8) | 2.1% | — | Gardyn Home KIT FirmwareAIGardyn Home KIT Mobile ApplicationAIGardyn Home KIT Cloud APIAI | 25/7/2025 | 17/6/2026 | Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 allow command injection through vulnerable methods that do not sanitize input before passing content to the operating system for execution. The vulnerability may allow an attacker to execute… | |
| Aplazada | Crítica (9.1) | 0.49% | — | Gardyn Home KIT FirmwareAIGardyn Home KIT Mobile ApplicationAIGardyn Home KIT Cloud APIAI | 25/7/2025 | 17/6/2026 | Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 use weak default credentials for secure shell access. This may result in attackers gaining access to exposed Gardyn Home Kits. | |
| Aplazada | Crítica (9.4) | 0.28% | 💥 PoC | Gardyn Home KIT FirmwareAIGardyn Home KIT Mobile ApplicationAIGardyn Home KIT Cloud APIAI | 25/7/2025 | 17/6/2026 | A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 leaving the string vulnerable to interception and modification through a Man-in-the-Middle attack.… | |
| Analizada | Alta (8.2) | 0.19% | — | IBM Cognos Analytics Mobile | 21/7/2025 | 17/6/2026 | IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to view and modify information coming to and from the application which could then be used to access confidential information on the device or network by using a the deprecated or misconfigured AFNetworking library at runtime. | |
| Analizada | Alta (7.5) | 0.22% | — | IBM Cognos Analytics Mobile | 21/7/2025 | 17/6/2026 | IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could be vulnerable to information exposure due to the use of unencrypted network traffic. | |
| Analizada | Media (4.6) | 0.18% | — | IBM Cognos Analytics Mobile | 21/7/2025 | 17/6/2026 | IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication is not used in the application. | |
| Analizada | Alta (7.5) | 0.23% | — | IBM Cognos Analytics Mobile | 21/7/2025 | 17/6/2026 | IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to obtain sensitive information due to the cleartext transmission of data. |