Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2739▼ 501 respecto a la semana anterior
Críticas / altas1301▼ 201 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 277 respecto a la semana anterior
–

2154 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.1)0.29%—Aqara Iam/sso Gateway12/6/20269/7/2026
The Aqara IAM/SSO Gateway (gw-builder.aqara.com) provides an open redirect, which is an instance of "CWE-601: URL Redirection to Untrusted Site," with an estimated CVSS of CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N (6.1 Medium), which can be used to set up a phishing attack.
AnalizadaMedia (6.1)0.30%—Aqara Iam/sso Gateway12/6/20269/7/2026
The Aqara IAM/SSO gateway (gw-builder.aqara.com) exhibits a cross-origin request sharing vulnerability, which is an instance of "CWE-942: Permissive Cross-domain Policy with Untrusted Domains," and has an estimated CVSS of CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N (8.2 High).
AnalizadaCrítica (9.8)0.44%—Aqara Iam/sso Gateway12/6/20269/7/2026
The Aqara IAM/SSO gateway (gw-builder.aqara.com) exposes bidirectional AES round-trups against the platform's signing key without authentication. This is an instance of "CWE-306: Missing Authentication for Critical Function" and "CWE-327: Use of a Broken or Risky Cryptographic Algorithm," and has an estimated CVSS of…
AnalizadaCrítica (9.8)0.53%—Aqara Iam/sso Gateway12/6/20269/7/2026
The Aqara IAM/SSO Gateway (gw-builder.aqara.com) used a hardcoded OAuth client credential, which is an instance of "CWE-798: Use of Hard-coded Credentials." This issue has an estimated CVSS of CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N (9.1 Critical). When combined with CVE-2026-50082, CVE-50084, and CVE-50085, this…
Pendiente de análisisMedia (4.9)0.49%—Kong GatewayAI11/6/202617/6/2026
A HTTP request smuggling and desynchronization vulnerability affects Kong Gateway Enterprise 3.4, 3.10, 3.11, 3.12, 3.13, and 3.14 series. The vulnerability is caused by a parsing flaw in Kong’s HTTP request processing pipeline when handling untrusted HTTP/1.1 traffic.
AnalizadaAlta (8.8)32%💥 PoCSplunkSplunk Cloud PlatformSplunk Secure Gateway10/6/202617/6/2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, Splunk Cloud Platform versions below 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, and Splunk Secure Gateway versions below 3.10.6, 3.9.20, and 3.8.67, a low-privileged user that does not hold the 'admin' or 'power' Splunk roles…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers…
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.
AnalizadaAlta (8.7)0.68%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaCrítica (9.3)0.59%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices.
AplazadaAlta (8.6)0.38%—Eupago Gateway FOR WoocommerceAI28/5/202617/6/2026
The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request handler, allowing unauthenticated attackers to initiate refunds against any WooCommerce order using the merchant's payment gateway credentials, and for applicable payment methods, to redirect…
AplazadaMedia (6.1)0.36%—Minhnahut Link GatewayAI27/5/202617/6/2026
The MinhNhut Link Gateway plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter on the redirect page in all versions up to, and including, 3.6.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
AplazadaMedia (4.4)0.30%—Minhbnh Link GatewayAI27/5/202617/6/2026
The MinhNhut Link Gateway plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's settings (Description, Title, and other fields) in all versions up to, and including, 3.6.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with…
Pendiente de análisisMedia (4.3)0.32%—SAP GatewayAI26/5/202624/7/2026
The SAP Gateway allows attackers to inject content into error messages, potentially leading to disclosure of request artefacts (e.g., regex patterns) and revealing underlying URI parsing logic. Leading to low impact on confidentiality. Integrity and availability are unaffected.
Pendiente de análisisAlta (7.5)0.50%—Checkpoint Identity AwarenessAICheckpoint Security GatewayAI26/5/202624/7/2026
When the Identity Awareness blade is enabled with Browser-Based Authentication, an unauthenticated user may be able to read certain internal files on the Security Gateway.