Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1540 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.4) | 0.13% | — | Intel Driver AND Support AssistantAI | 11/11/2025 | 17/6/2026 | Uncontrolled search path for some Intel Driver and Support Assistant before version 25.2 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable local code execution. This result may potentially… | |
| Aplazada | Media (5.1) | 0.12% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Improper control of dynamically-managed code resources for some Intel(R) NPU Drivers within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local… | |
| Aplazada | Media (6.8) | 0.13% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Protection mechanism failure for some Intel(R) NPU Drivers within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack… | |
| Aplazada | Baja (2) | 0.12% | — | Intel Graphics DriversAIIntel LTS KernelAI | 11/11/2025 | 17/6/2026 | Improper input validation in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially… | |
| Aplazada | Baja (2) | 0.13% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Sensitive information uncleared in resource before release for reuse for some Intel(R) NPU Drivers for Windows before version 32.0.100.4023 within Ring 3: User Applications may allow an information disclosure. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable… | |
| Aplazada | Alta (8.6) | 0.73% | — | Amazon Aurora PostgresqlAIAmazon Jdbc WrapperAIAmazon GO WrapperAIAmazon Nodejs WrapperAI+2 | 10/11/2025 | 17/6/2026 | An issue in AWS Wrappers for Amazon Aurora PostgreSQL may allow for privilege escalation to rds_superuser role. A low privilege authenticated user can create a crafted function that could be executed with permissions of other Amazon Relational Database Service (RDS) users. We recommend customers upgrade to the… | |
| Aplazada | Alta (7.5) | 2.5% | 💥 Exploit | File Manager FOR Google DriveAI | 5/11/2025 | 17/6/2026 | The File Manager for Google Drive – Integrate Google Drive with WordPress plugin for WordPress is vulnerable to sensitive information exposure in all versions up to, and including, 1.5.3 via the "get_localize_data" function. This makes it possible for unauthenticated attackers to extract sensitive data including… | |
| Aplazada | Media (5.5) | 0.28% | 💥 PoC | Gamedriverx64AI | 28/10/2025 | 17/6/2026 | The GameDriverX64.sys kernel-mode anti-cheat driver (v7.23.4.7 and earlier) contains an access control vulnerability in one of its IOCTL handlers. A user-mode process can open a handle to the driver device and send specially crafted IOCTL requests. These requests are executed in kernel-mode context without proper… | |
| Aplazada | Media (6.2) | 0.13% | — | Realtek Ndis Usermode IO DriverAI | 24/10/2025 | 5/7/2026 | An issue was discovered in the NDIS Usermode IO driver (RtkIOAC60.sys, version 6.0.5600.16348) allowing local authenticated attackers to send a crafted IOCTL request to the driver to cause a denial of service. | |
| Aplazada | Alta (8.8) | 0.17% | — | Mongodb BI Connector Odbc DriverAI | 23/10/2025 | 17/6/2026 | Incorrect Default Permissions vulnerability in MongoDB BI Connector ODBC driver allows Privilege Escalation.This issue affects BI Connector ODBC driver: from 1.0.0 through 1.4.6. | |
| Aplazada | Media (4.4) | 0.16% | — | Nvidia Display DriverAI | 23/10/2025 | 17/6/2026 | NVIDIA Display Driver for Windows and Linux contains a vulnerability in a video decoder, where an attacker might cause an out-of-bounds read. A successful exploit of this vulnerability might lead to information disclosure or denial of service. | |
| Aplazada | Media (5) | 0.14% | — | Nvidia Display Driver FOR LinuxAI | 23/10/2025 | 17/6/2026 | NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might be able to trigger a null pointer deference. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Media (5.5) | 0.22% | — | Nvidia Display Driver FOR LinuxAI | 23/10/2025 | 17/6/2026 | NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to trigger a null pointer dereference. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Media (5.5) | 0.15% | — | Nvidia Display Driver FOR LinuxAI | 23/10/2025 | 17/6/2026 | NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could cause a null pointer dereference by allocating a specific memory resource. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Alta (8.8) | 0.13% | — | Mongodb Atlas SQL Odbc DriverAI | 23/10/2025 | 17/6/2026 | Incorrect Default Permissions vulnerability in MongoDB Atlas SQL ODBC driver on Windows allows Privilege Escalation.This issue affects MongoDB Atlas SQL ODBC driver: from 1.0.0 through 2.0.0. | |
| Aplazada | Alta (7.1) | 0.23% | — | Nixdorf Wincor Port IO DriverAI | 18/10/2025 | 17/6/2026 | A vulnerability has been found in Nixdorf Wincor PORT IO Driver up to 1.0.0.1. This affects the function sub_11100 in the library wnport.sys of the component IOCTL Handler. Such manipulation leads to stack-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the… | |
| Aplazada | Media (6.8) | 0.12% | — | Lenovo Power Management DriverAI | 15/10/2025 | 17/6/2026 | A potential null pointer dereference vulnerability was reported in the Lenovo Power Management Driver that could allow a local authenticated user to cause a Windows blue screen error. | |
| Analizada | Alta (8.1) | 0.73% | — | Microsoft Jdbc Driver FOR SQL Server | 14/10/2025 | 17/6/2026 | Improper input validation in JDBC Driver for SQL Server allows an unauthorized attacker to perform spoofing over a network. | |
| Analizada | Alta (7.5) | 0.18% | — | Mongodb Rust Driver | 13/10/2025 | 17/6/2026 | When tlsInsecure=False appears in a connection string, certificate validation is disabled. This vulnerability affects MongoDB Rust Driver versions prior to v3.2.5 | |
| Aplazada | Alta (8.2) | 0.18% | — | Nvidia Display DriverAI | 10/10/2025 | 17/6/2026 | NVIDIA Display Driver contains a vulnerability where an uncontrolled DLL loading path might lead to arbitrary denial of service, escalation of privileges, code execution, and data tampering. | |
| Aplazada | Alta (7) | 0.18% | — | Nvidia Display Driver FOR LinuxAI | 10/10/2025 | 17/6/2026 | NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to use a race condition to escalate privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. | |
| Aplazada | Alta (7) | 0.24% | — | Nvidia Display Driver FOR LinuxAI | 10/10/2025 | 17/6/2026 | NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. | |
| Aplazada | Alta (8.4) | 0.16% | — | Denso TEN Drive Recorder ViewerAI | 6/10/2025 | 17/6/2026 | The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with the privilege of the user invoking the installer. | |
| Aplazada | Media (6.9) | 0.38% | — | Canon Generic Plus Pcl6 Printer DriverAICanon Generic Plus UFR II Printer DriverAICanon Generic Plus Lips4 Printer DriverAICanon Generic Plus Lipslx Printer DriverAI+9 | 29/9/2025 | 17/6/2026 | Unallocated memory access vulnerability in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4… | |
| Aplazada | Media (5.9) | 0.36% | — | Canon Generic Plus Pcl6 Printer DriverAICanon Generic Plus UFR II Printer DriverAICanon Generic Plus Lips4 Printer DriverAICanon Generic Plus Lipslx Printer DriverAI+9 | 29/9/2025 | 17/6/2026 | Out-of-bounds write vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4… |