Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
23.893 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.4) | 0.48% | — | Ash-project ASH AdminAI | 31/8/2026 | 1/9/2026 | Stored Cross-site Scripting vulnerability in ash-project ash_admin executes attacker-supplied record content as script in an administrator's browser. The relationship typeahead components AshAdmin.Components.Resource.RelationshipField and AshAdmin.Components.Resource.ManagedRelationshipSelectField highlight the… | |
| Aplazada | Alta (8.3) | 0.52% | — | Ash-project ASH AdminAI | 31/8/2026 | 1/9/2026 | Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state cookies (tenant, actor_resource,… | |
| Aplazada | Media (5.3) | 0.47% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verbatim with Exception.message/1 into the tool-result content. That content is… | |
| Aplazada | Media (6) | 0.47% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a model response of :tool_calls, then filters the calls through… | |
| Aplazada | Alta (7.1) | 0.54% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution, identity_filter/3 built the update/destroy filter directly from the raw tool… | |
| Aplazada | Alta (7.1) | 0.47% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw… | |
| Aplazada | Alta (7.4) | 0.28% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Server, with the default allowed_origins: nil, origin_allowed?/3 accepts an origin… | |
| Aplazada | Alta (8.9) | 0.28% | — | Ash-project ASH AIAI | 31/8/2026 | 1/9/2026 | Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2. The documented prompt: fn input, context -> ... end form lets the prompt content… | |
| Aplazada | Baja (2.3) | 0.39% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 1/9/2026 | Exposure of Data Element to Wrong Session vulnerability in ash-project ash_graphql can deliver one subscription's resolved records to a different subscriber's topic. AshGraphql.Subscription.Batcher.do_send/5 reads the resolved batch from the process dictionary via Process.get(:batch_resolved) and then unconditionally… | |
| Aplazada | Baja (2.3) | 0.43% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 1/9/2026 | Incorrect Authorization vulnerability in ash-project ash_graphql delivers GraphQL subscription payloads for records a subscriber is not authorized to see. In AshGraphql.Subscription.Batcher, do_send/5 resolves the first notification of a batch and filters it with should_send?/1, which drops results whose errors are… | |
| Aplazada | Alta (8.7) | 0.55% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 1/9/2026 | Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_graphql allows an unauthenticated client to bypass the configured GraphQL query-complexity limit and force an unbounded database read. AshGraphql.Graphql.Resolver.query_complexity/3 multiplies child complexity by the requested page… | |
| Aplazada | Media (6.9) | 0.52% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 1/9/2026 | Improper Input Validation vulnerability in ash-project ash_graphql allows an unauthenticated client to crash a relay node(id: ...) query with an unhandled KeyError. AshGraphql.Graphql.Resolver.resolve_node/2 decodes the client-supplied global ID with decode_relay_id/1, which only base64-decodes the string and splits… | |
| Aplazada | Alta (7.1) | 0.43% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 3/9/2026 | Incorrect Authorization vulnerability in ash-project ash_graphql allows an authenticated subscriber in one tenant to receive another tenant's records over GraphQL subscriptions. The subscription resolver in AshGraphql.Graphql.Resolver authorizes each notification payload in memory: its fast path calls Ash.can/3 with… | |
| Aplazada | Media (6.9) | 0.52% | — | Ash-project ASH GraphqlAI | 30/8/2026 | 1/9/2026 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_graphql allows a remote client to read internal field names that an application configured its error_handler to redact. In AshGraphql.Errors, each error is passed to the configured error_handler and the returned map is merged… | |
| Aplazada | Baja (2.1) | 0.12% | — | Ash-project ASH CloakAI | 30/8/2026 | 1/9/2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ash-project ash_cloak allows anyone with access to logs, error trackers, or crash reports, or anyone who can trigger a validation error, to recover the plaintext of a field the library encrypts. AshCloak.Transformers.SetUpEncryption removes… | |
| Aplazada | Alta (7.2) | 0.16% | — | Ash-project ASH PostgresAI | 30/8/2026 | 1/9/2026 | Unchecked Return Value vulnerability in ash-project ash_postgres allows a user who can drive a tenant rename to a name that collides with an existing tenant's schema to have their tenant record repointed at that other tenant's live schema, gaining access to its data. AshPostgres.MultiTenancy.rename_tenant/3 issues the… | |
| Aplazada | Baja (2.1) | 0.17% | — | Ash-project ASH SQLAI | 30/8/2026 | 1/9/2026 | Incorrect Authorization vulnerability in ash-project ash_sql allows a caller in a schema-based multitenant application to receive aggregate values computed from another tenant's rows. When an aggregate is computed over a distinct query, AshSql.AggregateQuery.add_single_aggs/5 rebuilds the outer query from… | |
| Aplazada | Baja (2.1) | 0.17% | — | Ash-project ASH SQLAI | 30/8/2026 | 1/9/2026 | Incorrect Authorization vulnerability in ash-project ash_sql allows a caller to receive an aggregate value computed over rows a more restrictive filter should have excluded, disclosing counts, sums, or lists across an authorization or tenancy boundary. AshSql.Aggregate.different_queries?/2 reports two aggregate… | |
| Aplazada | Baja (2.1) | 0.37% | — | Ash-project ASH SQLAI | 30/8/2026 | 3/9/2026 | Incorrect Comparison vulnerability in ash-project ash_sql allows a user to pad a string field with tab, newline, carriage-return, or form-feed characters and pass a trimmed uniqueness or equality check in the database that the same expression would fail in memory (or the reverse). string_trim/1 compiles to… | |
| Aplazada | Baja (2.1) | 0.20% | — | Ash-project ASH SQLAI | 30/8/2026 | 1/9/2026 | Improper Neutralization of Special Elements in Data Query Logic vulnerability in ash-project ash_sql allows a user who supplies a search term to contains/2, string_starts_with/2, or string_ends_with/2 to inject live SQL LIKE wildcards, turning a literal substring search into an attacker-controlled pattern match. The… | |
| Aplazada | Media (5.9) | 0.18% | — | Ash-project ASH ObanAI | 30/8/2026 | 1/9/2026 | Uncontrolled Recursion vulnerability in ash-project ash_oban allows a user who can drive a trigger's on_error action to fail on the final attempt to exhaust worker CPU and memory, denying service. The generated worker's atomic handle_error/4 runs the trigger's on_error action on a job's final attempt inside a rescue… | |
| Aplazada | Media (5.9) | 0.38% | — | Ash-project ASH ObanAI | 30/8/2026 | 1/9/2026 | Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in ash-project ash_oban allows a user whose input reaches the :args option of AshOban.build_trigger/3 to retarget an update or destroy trigger at another record, including across tenants. build_trigger/3 builds the trusted job… | |
| Aplazada | Media (5.9) | 0.18% | — | Ash-project ASH SQLAI | 30/8/2026 | 1/9/2026 | Incorrect Authorization vulnerability in ash-project ash_sql allows a caller to bypass a scoping or authorization filter expressed as exists/2 over a relationship that declares both a limit (or from_many?) and a parent(...)-referencing filter or sort. AshSql.Join.related_query/3 skips the caller-supplied exists… | |
| Aplazada | Baja (2.1) | 0.20% | — | Ash-project ASH SqliteAI | 30/8/2026 | 1/9/2026 | Improper Neutralization of Special Elements in Data Query Logic vulnerability in ash-project ash_sqlite allows an attacker who controls a get_path/2 segment to traverse into nested JSON the application never exposed, disclosing private or sensitive? embedded fields. AshSqlite.SqlImplementation builds the SQLite… | |
| Aplazada | Media (5.9) | 0.12% | — | Ash-project ASH Paper TrailAI | 30/8/2026 | 1/9/2026 | Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover sensitive values nested inside embedded resources, unions, or lists. sensitive_attributes :redact and :ignore only act on the tracked resource's… |