Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
942 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.4) | 3.5% | 💥 PoC | Fortinet FortiproxyFortinet Fortios | 11/6/2024 | 17/6/2026 | A use of password hash with insufficient computational effort vulnerability [CWE-916] affecting FortiOS version 7.4.3 and below, 7.2 all versions, 7.0 all versions, 6.4 all versions and FortiProxy version 7.4.2 and below, 7.2 all versions, 7.0 all versions, 2.0 all versions may allow a privileged attacker with… | |
| Analizada | Media (5.3) | 0.21% | — | Trendmicro VPN Proxy ONE | 10/6/2024 | 17/6/2026 | Trend Micro VPN Proxy One Pro, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite or create attack but is limited to local Denial of Service (DoS) and under specific conditions can lead to elevation of privileges. | |
| Modificada | Media (6.5) | 0.47% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. Envoy exposed an out-of-memory (OOM) vector from the mirror response, since async HTTP client will buffer the response with an unbounded buffer. | |
| Modificada | Alta (7.5) | 0.67% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. Due to how Envoy invoked the nlohmann JSON library, the library could throw an uncaught exception from downstream data if incomplete UTF-8 strings were serialized. The uncaught exception would cause Envoy to crash. | |
| Modificada | Media (5.9) | 0.59% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. There is a use-after-free in `HttpConnectionManager` (HCM) with `EnvoyQuicServerStream` that can crash Envoy. An attacker can exploit this vulnerability by sending a request without `FIN`, then a `RESET_STREAM` frame, and then after receiving the response,… | |
| Modificada | Alta (7.5) | 0.68% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. Envoyproxy with a Brotli filter can get into an endless loop during decompression of Brotli data with extra input. | |
| Modificada | Alta (7.5) | 0.69% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. There is a crash at `QuicheDataReader::PeekVarInt62Length()`. It is caused by integer underflow in the `QuicStreamSequencerBuffer::PeekRegion()` implementation. | |
| Modificada | Alta (7.5) | 0.69% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. A crash was observed in `EnvoyQuicServerStream::OnInitialHeadersComplete()` with following call stack. It is a use-after-free caused by QUICHE continuing push request headers after `StopReading()` being called on the stream. As after `StopReading()`, the… | |
| Modificada | Alta (8.2) | 0.36% | — | Envoyproxy Envoy | 4/6/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. A theoretical request smuggling vulnerability exists through Envoy if a server can be tricked into adding an upgrade header into a response. Per RFC https://www.rfc-editor.org/rfc/rfc7230#section-6.7 a server sends 101 when switching protocols. Envoy… | |
| Modificada | Media (5) | 0.29% | — | Fortinet FortiproxyFortinet Fortios | 14/5/2024 | 17/6/2026 | An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.12 & FortiProxy SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.13 allows an… | |
| Modificada | Alta (7.2) | 0.66% | — | Fortinet FortiproxyFortinet FortiswitchmanagerFortinet FortiosFortinet Fortipam | 14/5/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.4.0, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiOS 6.2 all versions, FortiOS 6.0.0 through 6.0.16, FortiPAM 1.1.0, FortiPAM 1.0 all versions, FortiProxy 7.2.0 through 7.2.5, FortiProxy 7.0.0… | |
| Modificada | Media (6.7) | 0.28% | — | Fortinet FortiproxyFortinet FortipamFortinet Fortios | 14/5/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.4.0, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiOS 6.2 all versions, FortiOS 6.0.0 through 6.0.16, FortiPAM 1.1.0, FortiPAM 1.0 all versions, FortiProxy 7.2.0 through 7.2.5, FortiProxy 7.0.0… | |
| Aplazada | Baja (3.5) | 0.42% | — | SshproxyAI | 14/5/2024 | 17/6/2026 | sshproxy is used on a gateway to transparently proxy a user SSH connection on the gateway to an internal host via SSH. Prior to version 1.6.3, any user authorized to connect to a ssh server using `sshproxy` can inject options to the `ssh` command executed by `sshproxy`. All versions of `sshproxy` are impacted. The… | |
| Modificada | Crítica (9.8) | 63% | 💥 PoC | Tinyproxy Project Tinyproxy | 1/5/2024 | 17/6/2026 | A use-after-free vulnerability exists in the HTTP Connection Headers parsing in Tinyproxy 1.11.1 and Tinyproxy 1.10.0. A specially crafted HTTP header can trigger reuse of previously freed memory, which leads to memory corruption and could lead to remote code execution. An attacker needs to make an unauthenticated… | |
| Analizada | Alta (7.5) | 0.69% | — | Envoyproxy Envoy | 18/4/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. When an upstream TLS cluster is used with `auto_sni` enabled, a request containing a `host`/`:authority` header longer than 255 characters triggers an abnormal termination of Envoy process. Envoy does not gracefully handle an error when setting SNI for… | |
| Aplazada | Alta (7.3) | 0.18% | — | HPE MSAAIHPE VSS ProviderAIHPE Capi ProxyAI | 15/4/2024 | 17/6/2026 | A potential security vulnerability has been identified in VSS Provider and CAPI Proxy software for certain HPE MSA storage products. This vulnerability could be exploited to gain elevated privilege on the system. | |
| Analizada | Alta (8.8) | 0.75% | — | Fortinet FortiproxyFortinet Fortios | 9/4/2024 | 17/6/2026 | A insufficiently protected credentials in Fortinet FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through… | |
| Modificada | Alta (7.5) | 88% | 💥 PoC | Envoyproxy Envoy | 4/4/2024 | 17/6/2026 | Envoy is a cloud-native, open source edge and service proxy. The HTTP/2 protocol stack in Envoy versions prior to 1.29.3, 1.28.2, 1.27.4, and 1.26.8 are vulnerable to CPU exhaustion due to flood of CONTINUATION frames. Envoy's HTTP/2 codec allows the client to send an unlimited number of CONTINUATION frames even after… | |
| Modificada | Alta (7.5) | 87% | — | Envoyproxy Envoy | 4/4/2024 | 17/6/2026 | Envoy is a cloud-native, open-source edge and service proxy. In versions 1.29.0 and 1.29.1, theEnvoy HTTP/2 protocol stack is vulnerable to the flood of CONTINUATION frames. Envoy's HTTP/2 codec does not reset a request when header map limits have been exceeded. This allows an attacker to send an sequence of… | |
| Aplazada | Alta (7.3) | 1.0% | — | WebproxyAI | 26/3/2024 | 17/6/2026 | OS command injection vulnerability exists in WebProxy 1.7.8 and 1.7.9, which may allow a remote unauthenticated attacker to execute an arbitrary OS command with the privilege of the running web server. Note that the developer was unreachable, therefore, users should consider stop using WebProxy 1.7.8 and 1.7.9. | |
| Analizada | Crítica (9.8) | 81% | 💥 Exploit | Articatech Artica Proxy | 21/3/2024 | 17/6/2026 | The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code execution as the "www-data" user. | |
| Analizada | Alta (7.5) | 45% | 💥 Exploit | Articatech Artica Proxy | 21/3/2024 | 17/6/2026 | The Artica Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code execution as the "www-data" user. This issue was demonstrated on version 4.50 of the The Artica-Proxy administrative web application attempts to prevent local file… | |
| Analizada | Crítica (9.8) | 1.0% | — | Jupyter Server Proxy | 20/3/2024 | 17/6/2026 | Jupyter Server Proxy allows users to run arbitrary external processes alongside their Jupyter notebook servers and provides authenticated web access. Prior to versions 3.2.3 and 4.1.1, Jupyter Server Proxy did not check user authentication appropriately when proxying websockets, allowing unauthenticated access to… | |
| Modificada | Media (6.1) | 0.35% | — | IBM Sterling Secure Proxy | 15/3/2024 | 17/6/2026 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 270974. | |
| Modificada | Media (5.3) | 0.41% | — | IBM Sterling Secure Proxy | 15/3/2024 | 17/6/2026 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 could allow an attacker to overwrite a log message under specific conditions. IBM X-Force ID: 270598. |