Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1928 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.3) | 1.2% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved input sanitization. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing a maliciously crafted video file may lead to unexpected app termination or corrupt… | |
| Modificada | Media (5.5) | 0.24% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing a maliciously crafted image may lead to a denial-of-service. | |
| Modificada | Alta (8) | 0.57% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 15/7/2026 | The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to memory corruption. | |
| Modificada | Alta (7.8) | 0.24% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | A correctness issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. A user may be able to elevate privileges. | |
| Modificada | Alta (7.5) | 0.99% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. A remote attacker may be able to leak memory. | |
| Modificada | Alta (7.1) | 1.1% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. An attacker may be able to cause unexpected system termination or corrupt kernel memory. | |
| Modificada | Media (6.5) | 0.65% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved input validation. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Media (6.5) | 0.63% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (5.5) | 0.20% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. An app may be able to access sensitive user data. | |
| Modificada | Media (6.3) | 0.84% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. Parsing a file may lead to disclosure of user information. | |
| Modificada | Alta (7.5) | 1.3% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. Parsing a file may lead to an unexpected app termination. | |
| Modificada | Media (4.3) | 0.96% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Media (6.5) | 0.38% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. A malicious website may exfiltrate data cross-origin. | |
| Modificada | Alta (8.8) | 0.65% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to memory corruption. | |
| Modificada | Alta (8) | 0.32% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 12/5/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to memory corruption. | |
| Modificada | Media (5.5) | 0.23% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.7, macOS Sequoia 15.3, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to leak sensitive kernel state. | |
| Modificada | Media (5.5) | 0.24% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 12/5/2025 | 17/6/2026 | A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.7, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to cause unexpected system termination. | |
| Modificada | Media (6.5) | 0.38% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/4/2025 | 17/6/2026 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An attacker on the local network may be able to cause a denial-of-service. | |
| Modificada | Media (6.5) | 0.39% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/4/2025 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An attacker on the local network may cause an unexpected app termination. | |
| Analizada | Crítica (9.8) | 19% | ⚠ Explotación activa💥 PoC | Apple MacosApple TvosApple VisionosApple Ipados+2 | 16/4/2025 | 17/6/2026 | A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Sequoia 15.4.1, tvOS 18.4.1, visionOS 2.4.1, watchOS 11.5. Processing an audio stream in a maliciously crafted media file may result in code execution. Apple is aware of a report that this… | |
| Analizada | Alta (8.8) | 0.56% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 11/4/2025 | 17/6/2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17, Safari 17. Processing web content may lead to arbitrary code execution. | |
| Analizada | Alta (7.3) | 0.55% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 11/4/2025 | 17/6/2026 | Processing web content may lead to arbitrary code execution. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17, Safari 17. The issue was addressed with improved memory handling. | |
| Modificada | Media (5.5) | 0.29% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 31/3/2025 | 17/6/2026 | This issue was addressed with improved access restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. A malicious app may be able to dismiss the system notification on the Lock Screen that a recording was… | |
| Modificada | Alta (7.5) | 0.63% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 21/3/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 17.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing web content may lead to a denial-of-service. | |
| Modificada | Alta (8.8) | 0.60% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 17/3/2025 | 17/6/2026 | A logic issue was addressed with improved file handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. Restoring a maliciously crafted backup file may lead to modification of protected system files. |