Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

618 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9)1.2%—Microsoft Azure Kubernetes Service13/2/202410/8/2026
Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability
ModificadaCrítica (9.3)0.62%—Microsoft Azure Site Recovery13/2/202410/8/2026
Microsoft Azure Site Recovery Elevation of Privilege Vulnerability
ModificadaAlta (7.3)1.1%—Microsoft Azure Connected Machine Agent13/2/202410/8/2026
Azure Connected Machine Agent Elevation of Privilege Vulnerability
ModificadaMedia (6.5)1.3%—Microsoft Azure Stack HUB13/2/202410/8/2026
Azure Stack Hub Spoofing Vulnerability
ModificadaAlta (7.5)1.4%—Microsoft Azure Devops Server13/2/202410/8/2026
Azure DevOps Server Remote Code Execution Vulnerability
AnalizadaAlta (8.1)7.3%—Microsoft Azure Uamqp12/2/202417/6/2026
The UAMQP is a general purpose C library for AMQP 1.0. During a call to open_get_offered_capabilities, a memory allocation may fail causing a use-after-free issue and if a client called it during connection communication it may cause a remote code execution. Users are advised to update the submodule with commit…
ModificadaCrítica (9.8)1.7%—Microsoft Azure Ipam10/1/202417/6/2026
Azure IPAM (IP Address Management) is a lightweight solution developed on top of the Azure platform designed to help Azure customers manage their IP Address space easily and effectively. By design there is no write access to customers' Azure environments as the Service Principal used is only assigned the Reader role…
ModificadaAlta (8)2.7%—Microsoft Azure Storage Mover9/1/202417/6/2026
Azure Storage Mover Remote Code Execution Vulnerability
ModificadaCrítica (9.8)5.1%—Microsoft Azure Uamqp9/1/202417/6/2026
Azure uAMQP is a general purpose C library for AMQP 1.0. The UAMQP library is used by several clients to implement AMQP protocol communication. When clients using this library receive a crafted binary type data, an integer overflow or wraparound or memory safety issue can occur and may cause remote code execution.…
ModificadaMedia (6.5)0.98%—Microsoft Azure Devops Server14/12/202317/6/2026
Azure DevOps Server Spoofing Vulnerability
ModificadaAlta (7.4)16%—Microsoft Azure Logic AppsMicrosoft Power Platform12/12/202317/6/2026
Microsoft Power Platform Connector Spoofing Vulnerability
ModificadaMedia (4.7)0.71%—Microsoft Azure Machine Learning Software Development KIT12/12/202317/6/2026
Azure Machine Learning Compute Instance for SDK Users Information Disclosure Vulnerability
ModificadaAlta (7.3)0.88%—Microsoft Azure Connected Machine Agent12/12/202317/6/2026
Azure Connected Machine Agent Elevation of Privilege Vulnerability
ModificadaCrítica (9.8)1.3%—Microsoft Azure Rtos Threadx5/12/202317/6/2026
Azure RTOS ThreadX is an advanced real-time operating system (RTOS) designed specifically for deeply embedded applications. An attacker can cause arbitrary read and write due to vulnerability in parameter checking mechanism in Azure RTOS ThreadX, which may lead to privilege escalation. The affected components include…
ModificadaCrítica (9.8)3.1%—Microsoft Azure Rtos Netx DUO5/12/202317/6/2026
Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause remote code execution due to memory overflow vulnerabilities in Azure RTOS NETX Duo. The affected components include processes/functions related to icmp, tcp, snmp, dhcp, nat…
ModificadaCrítica (9.8)3.1%—Microsoft Azure Rtos Netx DUO5/12/202317/6/2026
Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause an out-of-bounds write in Azure RTOS NETX Duo, that could lead to remote code execution. The affected components include process related to IGMP protocol in RTOS v6.2.1 and…
ModificadaCrítica (9.8)4.3%—Microsoft Azure Rtos Netx DUO5/12/202317/6/2026
Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause remote code execution due to memory overflow vulnerabilities in Azure RTOS NETX Duo. The affected components include processes/functions related to snmp, smtp, ftp and dtls in…
ModificadaCrítica (9.8)3.9%—Microsoft Azure Rtos Netx DUO5/12/202317/6/2026
Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause remote code execution due to memory overflow vulnerabilities in Azure RTOS NETX Duo. The affected components include processes/functions related to ftp and sntp in RTOS v6.2.1…
ModificadaAlta (8.8)2.0%—Microsoft Azure Pipelines Agent14/11/202317/6/2026
Azure DevOps Server Remote Code Execution Vulnerability
AnalizadaAlta (8.6)21%—Microsoft Azure Command-line Interface14/11/202317/6/2026
Azure CLI REST Command Information Disclosure Vulnerability
ModificadaAlta (7.8)0.56%—Microsoft Azure Network Watcher10/10/202317/6/2026
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
ModificadaAlta (7.3)0.87%—Microsoft Azure Devops Server10/10/202317/6/2026
Azure DevOps Server Elevation of Privilege Vulnerability
ModificadaCrítica (9.8)1.7%—Microsoft Azure Hdinsight10/10/202317/6/2026
Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability
ModificadaAlta (7.8)0.76%—Microsoft Azure Rtos Guix Studio10/10/202317/6/2026
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
ModificadaAlta (8.8)1.6%—Microsoft Azure Identity SDK10/10/202317/6/2026
Azure Identity SDK Remote Code Execution Vulnerability