Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
1800 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.1) | 0.22% | — | Validas Wireless ButlerAI | 19/5/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in validas Wireless Butler wireless-butler allows Reflected XSS.This issue affects Wireless Butler: from n/a through <= 1.0.11. | |
| Analizada | Alta (8.3) | 0.17% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow a privileged user to potentially enable denial of service via local access. | |
| Analizada | Alta (7) | 0.21% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Alta (7.2) | 0.22% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Media (6.9) | 0.16% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Race condition for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Alta (8.3) | 0.16% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Improper input validation for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow a privileged user to potentially enable denial of service via local access. | |
| Analizada | Alta (7) | 0.21% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Alta (8.3) | 0.25% | — | Intel Proset/wireless Wifi | 13/5/2025 | 17/6/2026 | Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Alta (7.4) | 0.25% | — | Cisco IOSAICisco IOS XEAICisco Nx-osAICisco Wireless LAN ControllerAI | 7/5/2025 | 17/6/2026 | A vulnerability in the Switch Integrated Security Features (SISF) of Cisco IOS Software, Cisco IOS XE Software, Cisco NX-OS Software, and Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This… | |
| Analizada | Crítica (9.8) | 2.1% | — | Apache Activemq NMS Openwire | 18/4/2025 | 17/6/2026 | Deserialization of Untrusted Data vulnerability in Apache ActiveMQ NMS OpenWire Client. This issue affects Apache ActiveMQ NMS OpenWire Client before 2.1.1 when performing connections to untrusted servers. Such servers could abuse the unbounded deserialization in the client to provide malicious responses that may… | |
| Aplazada | Alta (7.1) | 0.31% | — | Wiredminds LeadlabAI | 1/4/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wiredmindshelp LeadLab by wiredminds wiredminds-leadlab allows Reflected XSS.This issue affects LeadLab by wiredminds: from n/a through <= 1.3. | |
| Aplazada | Media (5.8) | 0.44% | — | Square WireAI | 16/3/2025 | 17/6/2026 | Square Wire before 5.2.0 does not enforce a recursion limit on nested groups in ByteArrayProtoReader32.kt and ProtoReader.kt. | |
| Aplazada | Crítica (9.3) | 0.62% | — | Livewire VoltAI | 5/3/2025 | 17/6/2026 | Volt is an elegantly crafted functional API for Livewire. Malicious, user-crafted request payloads could potentially lead to remote code execution within Volt components. This vulnerability is fixed in 1.7.0. | |
| Aplazada | Media (6.5) | 0.28% | — | Wired Impact Volunteer ManagementAI | 25/2/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wired Impact Wired Impact Volunteer Management wired-impact-volunteer-management allows Stored XSS.This issue affects Wired Impact Volunteer Management: from n/a through <= 2.5. | |
| Analizada | Alta (7.5) | 0.30% | — | Wireshark | 20/2/2025 | 17/6/2026 | Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file | |
| Aplazada | Alta (7.1) | 0.33% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Use after free in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Media (6) | 0.29% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Stack-based buffer overflow in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Media (6) | 0.22% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Race condition in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Media (6) | 0.29% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Alta (7.1) | 0.35% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | NULL pointer dereference in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Baja (2) | 0.26% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Improper restriction of communication channel to intended endpoints in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software before version 23.80 may allow an unauthenticated user to potentially enable information disclosure via adjacent access. | |
| Aplazada | Media (5.7) | 0.15% | — | Intel Proset Wireless WifiAIIntel Killer WifiAI | 12/2/2025 | 17/6/2026 | Race condition in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Crítica (9.4) | 0.97% | — | Honeywell Onewireless Wireless Device ManagerAI | 6/2/2025 | 17/6/2026 | Honeywell OneWireless Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2, R323.x, R330.1 contains a command injection vulnerability. An attacker who is authenticated could use the firmware update process to potentially exploit the vulnerability, leading to a command… | |
| Modificada | Alta (8.8) | 0.51% | — | Chargepoint Home Flex Nema 14-50 Plug FirmwareChargepoint Home Flex Hardwired FirmwareChargepoint Home Flex Nema 6-50 Plug Firmware | 31/1/2025 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability. The specific flaw exists within the wlanapp module. The issue results from the lack of proper validation of… | |
| Modificada | Alta (8.8) | 0.49% | — | Chargepoint Home Flex Nema 14-50 Plug FirmwareChargepoint Home Flex Hardwired FirmwareChargepoint Home Flex Nema 6-50 Plug Firmware | 31/1/2025 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability. The specific flaw exists within the onboardee module. The issue results from improper access control. An… |