Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
1571 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.3) | 0.50% | — | Opentext Operations Bridge ManagerAI | 19/12/2024 | 17/6/2026 | Improper Restriction of XML External Entity Reference vulnerability in OpenText™ Operations Bridge Manager allows Input Data Manipulation. The vulnerability could be exploited to confidential information This issue affects Operations Bridge Manager: 2017.05, 2017.11, 2018.05, 2018.11, 2019.05, 2019.11, 2020.05,… | |
| Aplazada | Media (6.5) | 0.39% | — | Digital Operation Services WifiburadaAI | 17/12/2024 | 17/6/2026 | Authentication Bypass by Assumed-Immutable Data vulnerability in Digital Operation Services WiFiBurada allows Manipulating User-Controlled Variables. This issue affects WiFiBurada: before 1.0.5. | |
| Aplazada | Media (4.3) | 0.40% | — | Digital Operation Services WifiburadaAI | 17/12/2024 | 17/6/2026 | Improper Restriction of Excessive Authentication Attempts vulnerability in Digital Operation Services WiFiBurada allows Use of Known Domain Credentials. This issue affects WiFiBurada: before 1.0.5. | |
| Aplazada | Media (4.3) | 0.40% | — | Woperation SalertAI | 9/12/2024 | 17/6/2026 | Missing Authorization vulnerability in WPoperation SALERT allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SALERT: from n/a through 1.2.1. | |
| Analizada | Alta (7.5) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_smac_planner(). | |
| Analizada | Alta (7.5) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_navfn_planner(). | |
| Analizada | Alta (7.5) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component smoothPlan(). | |
| Analizada | Alta (7.5) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component computeControl(). | |
| Analizada | Crítica (9.8) | 0.60% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a segmentation violation via the component theta_star::ThetaStar::isUnsafeToPlan(). | |
| Analizada | Crítica (9.8) | 0.48% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_costmap_2d. | |
| Analizada | Crítica (9.8) | 0.70% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the executor_thread_. | |
| Analizada | Crítica (9.8) | 0.48% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_regulated_pure_pursuit_controller. | |
| Analizada | Crítica (9.8) | 0.70% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_mppi_controller. | |
| Analizada | Crítica (9.8) | 0.70% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_dwb_controller. | |
| Analizada | Crítica (9.8) | 0.70% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2__amcl. | |
| Analizada | Crítica (9.8) | 0.70% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via the dyn_param_handler_ component. | |
| Analizada | Crítica (9.8) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter `/amcl do_beamskip`. | |
| Analizada | Crítica (9.8) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter `/amcl z_short`. | |
| Analizada | Crítica (9.8) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter`/amcl z_max` . | |
| Analizada | Crítica (9.8) | 0.55% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter`/amcl laser_model_type` . | |
| Analizada | Crítica (9.8) | 0.55% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter`/amcl odom_frame_id` . | |
| Analizada | Crítica (9.8) | 0.59% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a heap overflow in the nav2_amcl process. This vulnerability is triggered via sending a crafted message to the component /initialpose. | |
| Analizada | Crítica (9.8) | 0.60% | — | Openrobotics Robot Operating System | 6/12/2024 | 17/6/2026 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter`/amcl z_rand ` . | |
| Aplazada | Alta (7.3) | 0.31% | — | Open Robotic Operating System Ros2AIOpen Robotic Operating System Navigation2AI | 5/12/2024 | 17/6/2026 | Buffer Overflow vulnerability in Open Robotic Operating System 2 ROS2 navigation2- ROS2-humble&& navigation2-humble allows a local attacker to execute arbitrary code via a crafted .yaml file to the nav2_amcl process | |
| Aplazada | Alta (7.8) | 0.22% | — | Openrobotics Robotic Operating System 2AIOpenrobotics Navigation2AI | 5/12/2024 | 17/6/2026 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the initial_pose_sub thread created by nav2_bt_navigator |