Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▼ 485 respecto a la semana anterior
Críticas / altas1305▼ 185 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1671 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 1.0% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 1/11/2022 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, watchOS 8.6, macOS Monterey 12.4, Safari 15.5. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.6% | 💥 PoC | Apple ItunesApple SafariApple IpadosApple Iphone OS+3 | 1/11/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macOS Monterey 12.4, Safari 15.5, iTunes 12.12.4 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 0.94% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 1/11/2022 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, watchOS 8.6, macOS Monterey 12.4, Safari 15.5. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 0.91% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 1/11/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, watchOS 8.6, macOS Monterey 12.4, Safari 15.5. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.1% | 💥 PoC | Apple ItunesApple SafariApple IpadosApple Iphone OS+3 | 23/9/2022 | 17/6/2026 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iTunes 12.12.3 for Windows, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.5% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 23/9/2022 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macOS Monterey 12.4, Safari 15.5. Processing maliciously crafted web content may lead to code execution. | |
| Modificada | Alta (8.8) | 0.76% | — | Apple SafariApple Ipad OSApple Iphone OSApple Macos+2 | 23/9/2022 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. A malicious website may cause unexpected cross-origin behavior. | |
| Modificada | Alta (8.8) | 1.3% | — | Apple SafariApple Ipad OSApple Iphone OSApple Macos+2 | 23/9/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.3% | — | Apple SafariApple Ipad OSApple Iphone OSApple Macos | 23/9/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, iOS 15.4 and iPadOS 15.4, tvOS 15.4, Safari 15.4. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.3% | — | Apple SafariApple Ipad OSApple Iphone OSApple Macos+2 | 23/9/2022 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously crafted web content may lead to code execution. | |
| Modificada | Alta (8.8) | 1.5% | — | Apple SafariApple IpadosApple Iphone OS | 20/9/2022 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.9% | — | Apple SafariApple IpadosApple Iphone OSFedoraproject Fedora+1 | 20/9/2022 | 17/6/2026 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Media (4.3) | 1.1% | — | Apple SafariApple IpadosApple Iphone OS | 20/9/2022 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. A website may be able to track users through Safari web extensions. | |
| Modificada | Crítica (9.8) | 1.2% | — | Apple SafariApple Macos | 20/9/2022 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 15.6, macOS Monterey 12.5. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Media (5.3) | 0.64% | — | Apple SafariApple Macos | 20/9/2022 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in Safari 15.6, macOS Monterey 12.5. A user may be tracked through their IP address. | |
| Analizada | Alta (8.8) | 9.9% | ⚠ Explotación activa | Apple SafariApple IpadosApple Iphone OSApple Macos+4 | 24/8/2022 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6.1 and iPadOS 15.6.1, macOS Monterey 12.5.1, Safari 15.6.1. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively… | |
| Modificada | Media (4.3) | 0.90% | — | Apple SafariApple Watchos | 18/3/2022 | 17/6/2026 | A user interface issue was addressed. This issue is fixed in watchOS 8.5, Safari 15.4. Visiting a malicious website may lead to address bar spoofing. | |
| Analizada | Alta (8.8) | 16% | ⚠ Explotación activa💥 PoC | Apple SafariApple IpadosApple Iphone OSApple Macos | 18/3/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Safari 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8). Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue… | |
| Modificada | Media (6.5) | 0.89% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 18/3/2022 | 17/6/2026 | A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information. | |
| Modificada | Media (6.5) | 1.6% | — | Apple SafariApple IphoneApple IpadosApple Macos+2 | 18/3/2022 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing maliciously crafted web content may prevent Content Security Policy from being enforced. | |
| Modificada | Alta (8.8) | 1.6% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 18/3/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Media (6.1) | 2.0% | — | Apple SafariApple IpadosApple Iphone OSApple MAC OS X+3 | 18/3/2022 | 17/6/2026 | A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing a maliciously crafted mail message may lead to running arbitrary javascript. | |
| Modificada | Media (6.1) | 0.64% | — | Safarimontage Safari Montage | 30/12/2021 | 17/6/2026 | SAFARI Montage 8.7.32 is affected by a CRLF injection vulnerability which can lead to HTTP response splitting. | |
| Modificada | Media (6.1) | 3.4% | 💥 Exploit | Safarimontage Safari Montage | 28/12/2021 | 17/6/2026 | Reflected Cross Site Scripting (XSS) in SAFARI Montage versions 8.3 and 8.5 allows remote attackers to execute JavaScript codes. | |
| Modificada | Media (5.5) | 1.1% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 28/10/2021 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted audio file may disclose restricted memory. |