Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

1800 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.1)0.22%—Validas Wireless ButlerAI19/5/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in validas Wireless Butler wireless-butler allows Reflected XSS.This issue affects Wireless Butler: from n/a through <= 1.0.11.
AnalizadaAlta (8.3)0.17%—Intel Proset/wireless Wifi13/5/202517/6/2026
Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow a privileged user to potentially enable denial of service via local access.
AnalizadaAlta (7)0.21%—Intel Proset/wireless Wifi13/5/202517/6/2026
Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AnalizadaAlta (7.2)0.22%—Intel Proset/wireless Wifi13/5/202517/6/2026
Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AnalizadaMedia (6.9)0.16%—Intel Proset/wireless Wifi13/5/202517/6/2026
Race condition for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AnalizadaAlta (8.3)0.16%—Intel Proset/wireless Wifi13/5/202517/6/2026
Improper input validation for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow a privileged user to potentially enable denial of service via local access.
AnalizadaAlta (7)0.21%—Intel Proset/wireless Wifi13/5/202517/6/2026
Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AnalizadaAlta (8.3)0.25%—Intel Proset/wireless Wifi13/5/202517/6/2026
Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaAlta (7.4)0.25%—Cisco IOSAICisco IOS XEAICisco Nx-osAICisco Wireless LAN ControllerAI7/5/202517/6/2026
A vulnerability in the Switch Integrated Security Features (SISF) of Cisco IOS Software, Cisco IOS XE Software, Cisco NX-OS Software, and Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This…
AnalizadaCrítica (9.8)2.1%—Apache Activemq NMS Openwire18/4/202517/6/2026
Deserialization of Untrusted Data vulnerability in Apache ActiveMQ NMS OpenWire Client. This issue affects Apache ActiveMQ NMS OpenWire Client before 2.1.1 when performing connections to untrusted servers. Such servers could abuse the unbounded deserialization in the client to provide malicious responses that may…
AplazadaAlta (7.1)0.31%—Wiredminds LeadlabAI1/4/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wiredmindshelp LeadLab by wiredminds wiredminds-leadlab allows Reflected XSS.This issue affects LeadLab by wiredminds: from n/a through <= 1.3.
AplazadaMedia (5.8)0.44%—Square WireAI16/3/202517/6/2026
Square Wire before 5.2.0 does not enforce a recursion limit on nested groups in ByteArrayProtoReader32.kt and ProtoReader.kt.
AplazadaCrítica (9.3)0.62%—Livewire VoltAI5/3/202517/6/2026
Volt is an elegantly crafted functional API for Livewire. Malicious, user-crafted request payloads could potentially lead to remote code execution within Volt components. This vulnerability is fixed in 1.7.0.
AplazadaMedia (6.5)0.28%—Wired Impact Volunteer ManagementAI25/2/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wired Impact Wired Impact Volunteer Management wired-impact-volunteer-management allows Stored XSS.This issue affects Wired Impact Volunteer Management: from n/a through <= 2.5.
AnalizadaAlta (7.5)0.30%—Wireshark20/2/202517/6/2026
Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file
AplazadaAlta (7.1)0.33%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Use after free in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaMedia (6)0.29%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Stack-based buffer overflow in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaMedia (6)0.22%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Race condition in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaMedia (6)0.29%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaAlta (7.1)0.35%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
NULL pointer dereference in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
AplazadaBaja (2)0.26%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Improper restriction of communication channel to intended endpoints in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software before version 23.80 may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
AplazadaMedia (5.7)0.15%—Intel Proset Wireless WifiAIIntel Killer WifiAI12/2/202517/6/2026
Race condition in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an authenticated user to potentially enable denial of service via local access.
AplazadaCrítica (9.4)0.97%—Honeywell Onewireless Wireless Device ManagerAI6/2/202517/6/2026
Honeywell OneWireless Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2, R323.x, R330.1 contains a command injection vulnerability. An attacker who is authenticated could use the firmware update process to potentially exploit the vulnerability, leading to a command…
ModificadaAlta (8.8)0.51%—Chargepoint Home Flex Nema 14-50 Plug FirmwareChargepoint Home Flex Hardwired FirmwareChargepoint Home Flex Nema 6-50 Plug Firmware31/1/202517/6/2026
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability. The specific flaw exists within the wlanapp module. The issue results from the lack of proper validation of…
ModificadaAlta (8.8)0.49%—Chargepoint Home Flex Nema 14-50 Plug FirmwareChargepoint Home Flex Hardwired FirmwareChargepoint Home Flex Nema 6-50 Plug Firmware31/1/202517/6/2026
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability. The specific flaw exists within the onboardee module. The issue results from improper access control. An…
Orbitaley — Vulnerabilidades