Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2538▼ 392 respecto a la semana anterior
Críticas / altas1301▲ 22 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
1343 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.9% | — | Node-openssl Project Node-openssl | 23/11/2023 | 17/6/2026 | The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" by its author, and accepts an opts argument that contains a verb field (used for command execution). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. | |
| Modificada | Alta (7.5) | 1.1% | — | Nodejs Node.js | 23/11/2023 | 17/6/2026 | The use of __proto__ in process.mainModule.__proto__.require() can bypass the policy mechanism and require modules outside of the policy.json definition. This vulnerability affects all users using the experimental policy mechanism in all active release lines: v16, v18 and, v20. Please note that at the time this CVE… | |
| Analizada | Media (4.7) | 0.54% | — | Fedoraproject FedoraNetapp HCI Compute NodeNeovimVIM | 22/11/2023 | 17/9/2026 | Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability. When executing a `:s` command for the very first time and using a sub-replace-special atom inside the substitution part, it is possible that the recursive `:s` call causes free-ing of memory which may later then be accessed… | |
| Modificada | Alta (8.8) | 9.1% | — | Linux KernelRedhat Enterprise LinuxNetapp Active IQ Unified ManagerNetapp Solidfire & HCI Management Node+1 | 1/11/2023 | 17/6/2026 | A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-after-free and double-free problem, which may permit remote code execution or lead to local… | |
| Modificada | Alta (8.8) | 1.1% | — | Zpesystems Nodegrid OS | 28/10/2023 | 17/6/2026 | ZPE Systems, Inc Nodegrid OS v5.0.0 to v5.0.17, v5.2.0 to v5.2.19, v5.4.0 to v5.4.16, v5.6.0 to v5.6.13, v5.8.0 to v5.8.10, and v5.10.0 to v5.10.3 was discovered to contain a command injection vulnerability via the endpoint /v1/system/toolkit/files/. | |
| Modificada | Alta (8.8) | 0.52% | — | Lenovo Thinkagile Hx5530 FirmwareLenovo Thinkagile Hx7530 FirmwareLenovo Thinkagile Vx3331 FirmwareLenovo Thinkagile Hx1331 Firmware+119 | 25/10/2023 | 17/6/2026 | An authenticated XCC user can change permissions for any user through a crafted API command. | |
| Modificada | Alta (7.5) | 1.1% | — | Teomantuncer Node Email Check | 25/10/2023 | 17/6/2026 | ReDos in NPMJS Node Email Check v.1.0.4 allows an attacker to cause a denial of service via a crafted string to the scpSyntax component. | |
| Modificada | Crítica (9.8) | 1.8% | — | Nodejs Node.jsFedoraproject Fedora | 18/10/2023 | 17/6/2026 | Various `node:fs` functions allow specifying paths as either strings or `Uint8Array` objects. In Node.js environments, the `Buffer` class extends the `Uint8Array` class. Node.js prevents path traversal through strings (see CVE-2023-30584) and `Buffer` objects (see CVE-2023-32004), but not through non-`Buffer`… | |
| Modificada | Alta (7.5) | 1.3% | — | Nodejs Node.js | 18/10/2023 | 17/6/2026 | A previously disclosed vulnerability (CVE-2023-30584) was patched insufficiently in commit 205f1e6. The new path traversal vulnerability arises because the implementation does not protect itself against the application overwriting built-in utility functions with user-defined implementations. Please note that at the… | |
| Modificada | Alta (7.5) | 1.1% | — | Nodejs Node.jsFedoraproject Fedora | 18/10/2023 | 17/6/2026 | When the Node.js policy feature checks the integrity of a resource against a trusted manifest, the application can intercept the operation and return a forged checksum to the node's policy implementation, thus effectively disabling the integrity check. Impacts: This vulnerability affects all users using the… | |
| Modificada | Alta (7.5) | 0.36% | — | Zpesystems Nodegrid OS | 14/10/2023 | 17/6/2026 | An issue in ZPE Systems, Inc Nodegrid OS v.5.8.10 thru v.5.8.13 and v.5.10.3 thru v.5.10.5 allows a remote attacker to obtain sensitive information via the TACACS+ server component. | |
| Modificada | Crítica (9.8) | 2.1% | — | Nrhirani Node-qpdf | 14/10/2023 | 17/6/2026 | All versions of the package node-qpdf are vulnerable to Command Injection such that the package-exported method encrypt() fails to sanitize its parameter input, which later flows into a sensitive command execution API. As a result, attackers may inject malicious commands once they can specify the input pdf file path. | |
| Modificada | Baja (3.5) | 1.2% | — | Nodejs UndiciFedoraproject Fedora | 12/10/2023 | 17/6/2026 | Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not clear `Cookie` headers. By design, `cookie` headers are forbidden request headers, disallowing them to be set in RequestInit.headers in browser… | |
| Analizada | Alta (7.5) | 100% | ⚠ Explotación activa | Siemens Simatic S7-1500 CPU 1518f-4 Pn/dp MFP FirmwareSiemens Sinec INSSiemens Sinec NMSSiemens ST7 Scadaconnect+161 | 10/10/2023 | 11/8/2026 | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. | |
| Modificada | Alta (7.5) | 59% | — | Nodebb | 29/9/2023 | 17/6/2026 | Denial-of-service in NodeBB <= v2.8.10 allows unauthenticated attackers to trigger a crash, when invoking `eventName.startsWith()` or `eventName.toString()`, while processing Socket.IO messages via crafted Socket.IO messages containing array or object type for the event name respectively. | |
| Modificada | Crítica (9.8) | 47% | — | Nodebb | 27/9/2023 | 17/6/2026 | A remote code execution (RCE) vulnerability in the xmlrpc.php endpoint of NodeBB Inc NodeBB forum software prior to v1.18.6 allows attackers to execute arbitrary code via crafted XML-RPC requests. | |
| Modificada | Media (6.5) | 0.96% | — | Geosolutionsgroup Geonode | 15/9/2023 | 17/6/2026 | GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. A SSRF vulnerability exists starting in version 3.2.0, bypassing existing controls on the software. This can allow a user to request internal services for a full read SSRF, returning any data from the… | |
| Modificada | Alta (7.5) | 1.7% | — | Nodejs Node.js | 12/9/2023 | 17/6/2026 | The use of the deprecated API `process.binding()` can bypass the permission model through path traversal. This vulnerability affects all users using the experimental permission model in Node.js 20.x. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js. | |
| Modificada | Media (5.3) | 1.4% | — | Nodejs Node.js | 12/9/2023 | 17/6/2026 | A vulnerability has been identified in Node.js version 20, affecting users of the experimental permission model when the --allow-fs-read flag is used with a non-* argument. This flaw arises from an inadequate permission model that fails to restrict file stats through the `fs.statfs` API. As a result, malicious actors… | |
| Modificada | Alta (7.5) | 0.65% | — | Mongodb C++Mongodb C DriverMongodb Node.jsMongodb PHP Driver+1 | 29/8/2023 | 17/6/2026 | Some MongoDB Drivers may erroneously publish events containing authentication-related data to a command listener configured by an application. The published events may contain security-sensitive data when specific authentication-related commands are executed. Without due care, an application may inadvertently expose… | |
| Modificada | Crítica (9.8) | 65% | — | Patton Smartnode Sn200 Firmware | 28/8/2023 | 17/6/2026 | SmartNode SN200 (aka SN200) 3.21.2-23021 allows unauthenticated OS Command Injection. | |
| Modificada | Alta (7.5) | 0.76% | — | Geosolutionsgroup Geonode | 24/8/2023 | 17/6/2026 | GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. In versions 3.2.0 through 4.1.2, the endpoint `/proxy/?url=` does not properly protect against server-side request forgery. This allows an attacker to port scan internal hosts and request information… | |
| Modificada | Alta (7.5) | 1.8% | — | Nodejs Node.js | 24/8/2023 | 17/6/2026 | A privilege escalation vulnerability exists in the experimental policy mechanism in all active release lines: 16.x, 18.x and, 20.x. The use of the deprecated API `process.binding()` can bypass the policy mechanism by requiring internal modules and eventually take advantage of `process.binding('spawn_sync')` run… | |
| Modificada | Media (5.3) | 0.49% | — | Node Saml Project Node Saml | 23/8/2023 | 17/6/2026 | Node-SAML is a SAML library not dependent on any frameworks that runs in Node. The lack of checking of current timestamp allows a LogoutRequest XML to be reused multiple times even when the current time is past the NotOnOrAfter. This could impact the user where they would be logged out from an expired LogoutRequest.… | |
| Modificada | Crítica (9.8) | 1.6% | — | Nodejs Node.js | 21/8/2023 | 17/6/2026 | The use of `Module._load()` can bypass the policy mechanism and require modules outside of the policy.json definition for a given module. This vulnerability affects all users using the experimental policy mechanism in all active release lines: 16.x, 18.x and, 20.x. Please note that at the time this CVE was issued, the… |