Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1271 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 30/9/2026 | Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute… | |
| Aplazada | Crítica (9.8) | 0.69% | — | H2o-3AIMysql Jdbc DriverAIOracle JDKAI | 2/9/2025 | 17/6/2026 | A deserialization vulnerability exists in the H2O-3 REST API (POST /99/ImportSQLTable) that affects all versions up to 3.46.0.7. This vulnerability allows remote code execution (RCE) due to improper validation of JDBC connection parameters when using a Key-Value format. The vulnerability is present in the MySQL JDBC… | |
| Aplazada | Alta (8.2) | 0.15% | — | Lexmark Printer DriversAI | 19/8/2025 | 17/6/2026 | Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL. | |
| Aplazada | Media (5.4) | 0.14% | — | Intel Graphics DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable escalation of privilege via local access | |
| Aplazada | Media (4.8) | 0.14% | — | Intel 700 Series Ethernet Kernel-mode DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable denial of service. | |
| Aplazada | Media (4.1) | 0.14% | — | Intel Graphics Driver ARC B-seriesAI | 12/8/2025 | 17/6/2026 | Protection mechanism failure in the Intel(R) Graphics Driver for the Intel(R) Arc(TM) B-Series graphics before version 32.0.101.6737 may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.8) | 0.14% | — | Intel Graphics DriversAI | 12/8/2025 | 17/6/2026 | NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Alta (8.8) | 0.14% | — | Intel 700 Series Ethernet Kernel DriverAI | 12/8/2025 | 17/6/2026 | Improper input validation in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.13% | — | Intel Driver AND Support Assistant ToolAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path element for some Intel(R) Driver & Support Assistant Tool software before version 24.6.49.8 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.6) | 0.14% | — | Intel 800 Series Ethernet Kernel-mode DriverAI | 12/8/2025 | 17/6/2026 | Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.6) | 0.13% | — | Intel Uefi Oobras Mmbhandler DriverAI | 12/8/2025 | 17/6/2026 | Missing release of memory after effective lifetime in the UEFI OobRasMmbiHandlerDriver module for some Intel(R) reference server platforms may allow a privileged user to enable denial of service via local access. | |
| Aplazada | Media (5.4) | 0.11% | — | Intel Graphics DriverAI | 12/8/2025 | 17/6/2026 | Incorrect default permissions for some Intel(R) Graphics Driver software installers may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Media (4.3) | 0.26% | — | ARM 5TH GEN GPU Architecture Userspace DriverARM Bifrost GPU Userspace DriverARM Valhall GPU Userspace Driver | 4/8/2025 | 17/6/2026 | Use After Free vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operations, including via WebGL or WebGPU, to gain access to already freed memory.This… | |
| Aplazada | Baja (3.3) | 0.13% | — | Nvidia GPU Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may cause an exposure of sensitive system information with local unprivileged system access. A successful exploit of this vulnerability may lead to Information disclosure. | |
| Aplazada | Baja (3.3) | 0.16% | — | Nvidia GPU Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may access sensitive system-level information. A successful exploit of this vulnerability may lead to Information disclosure. | |
| Aplazada | Media (4.4) | 0.14% | — | Nvidia GPU Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an attacker could read invalid memory. A successful exploit of this vulnerability might lead to information disclosure. | |
| Aplazada | Alta (7) | 0.16% | — | Nvidia GPU Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker with local unprivileged access that can win a race condition might be able to trigger a use-after-free error. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of… | |
| Aplazada | Alta (7.1) | 0.19% | — | Nvidia Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker might cause an improper index validation by issuing a call with crafted parameters. A successful exploit of this vulnerability might lead to data tampering or denial of service. | |
| Aplazada | Alta (7.3) | 0.18% | — | Nvidia Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver, where an attacker could access memory outside bounds permitted under normal use cases. A successful exploit of this vulnerability might lead to denial of service, data tampering, or information disclosure. | |
| Aplazada | Alta (8.4) | 0.18% | — | Lenovo Protection DriverAILenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 17/7/2025 | 17/6/2026 | A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code. | |
| Analizada | Media (4.8) | 0.31% | — | HP Universal Print Driver | 2/7/2025 | 17/6/2026 | HP Universal Print Driver is potentially vulnerable to denial of service due to buffer overflow in versions of UPD 7.4 or older (e.g., v7.3.x, v7.2.x, v7.1.x, etc.). | |
| Aplazada | Alta (8.5) | 0.18% | — | Brother DriverAI | 25/6/2025 | 17/6/2026 | Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If exploited, an arbitrary program may be executed with the administrative privilege. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors… | |
| Analizada | Baja (2.5) | 0.10% | — | Peak-system Device Driver | 21/6/2025 | 17/6/2026 | PEAK-System Driver PCANFD_ADD_FILTERS Time-Of-Check Time-Of-Use Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of PEAK-System Driver. An attacker must first obtain the ability to execute low-privileged code on the target… | |
| Modificada | Media (6.5) | 0.40% | — | Uptrace Pgdriver | 12/6/2025 | 17/6/2026 | uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. The maintainer has stated that the issue is fixed in v1.2.15. | |
| Analizada | Media (5.9) | 0.49% | — | Postgresql Jdbc Driver | 11/6/2025 | 17/6/2026 | pgjdbc is an open source postgresql JDBC Driver. From 42.7.4 and until 42.7.7, when the PostgreSQL JDBC driver is configured with channel binding set to required (default value is prefer), the driver would incorrectly allow connections to proceed with authentication methods that do not support channel binding (such as… |