Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1540 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.9) | 0.31% | — | Canon Generic Plus Pcl6 Printer DriverAICanon Generic Plus UFR II Printer DriverAICanon Generic Plus Lips4 Printer DriverAICanon Generic Plus Lipslx Printer DriverAI+9 | 29/9/2025 | 17/6/2026 | Out-of-bounds read vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4… | |
| Analizada | Crítica (9.9) | 0.45% | — | Drivelock | 26/9/2025 | 17/6/2026 | In DriveLock 24.1.4 before 24.1.5, 24.2.5 before 24.2.6, and 25.1.2 before 25.1.4, attackers can gain elevated privileges. | |
| Aplazada | Media (4.3) | 0.24% | — | Divvydrive Information Technologies INC Divvydrive WEBAI | 24/9/2025 | 25/9/2026 | Observable Timing Discrepancy vulnerability in DivvyDrive Information Technologies Inc. DivvyDrive Web allows Cross-Domain Search Timing. This issue affects DivvyDrive Web: from 4.8.2.2 before 4.8.2.15. | |
| Modificada | Alta (7.8) | 0.13% | — | Easeus Eudskacs.sys Driver | 10/9/2025 | 5/7/2026 | The eudskacs.sys driver version 20250328 shipped with EaseUs Todo Backup 1.2.0.1 fails to properly validate privileges for I/O requests (IRP_MJ_READ/IRP_MJ_WRITE) sent to its device object. This allows a local, low-privileged attacker to perform arbitrary raw disk reads and writes, leading to sensitive information… | |
| Analizada | Media (5.3) | 0.33% | — | ARM 5TH GEN GPU Architecture Kernel DriverARM Bifrost GPU Kernel DriverARM Valhall GPU Kernel Driver | 8/9/2025 | 17/6/2026 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU… | |
| Aplazada | Media (4.7) | 0.13% | — | TEE SOC DriverAI | 6/9/2025 | 17/6/2026 | Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_SPATIAL_PART and cause read or write past the end of allocated arrays, potentially resulting in a loss of platform integrity or denial of service. | |
| Aplazada | Alta (8.4) | 0.13% | — | AMD Graphics DriverAI | 6/9/2025 | 17/6/2026 | Improper input validation in the AMD Graphics Driver could allow an attacker to supply a specially crafted pointer, potentially leading to arbitrary writes or denial of service. | |
| Aplazada | Baja (3.3) | 0.13% | — | AMD Graphics DriverAI | 6/9/2025 | 17/6/2026 | Improper validation of an array index in the AMD graphics driver software could allow an attacker to pass malformed arguments to the dynamic power management (DPM) functions resulting in an out of bounds read and loss of availability. | |
| Aplazada | Media (6.5) | 0.29% | — | Nvidia Mellanox DpdkAINvidia Poll Mode DriverAI | 4/9/2025 | 17/6/2026 | NVIDIA Mellanox DPDK contains a vulnerability in Poll Mode Driver (PMD), where an attacker on a VM in the system might be able to cause information disclosure and denial of service on the network interface. | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the… | |
| Analizada | Alta (7.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek RTL8811AU rtwlanu.sys N6CSet_DOT11_CIPHER_DEFAULT_KEY Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute low-privileged… | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the… | |
| Analizada | Baja (3.8) | 0.14% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek RTL8811AU rtwlanu.sys N6CQueryInformationHandleCustomized11nOids Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute… | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 30/9/2026 | Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute… | |
| Aplazada | Crítica (9.8) | 0.69% | — | H2o-3AIMysql Jdbc DriverAIOracle JDKAI | 2/9/2025 | 17/6/2026 | A deserialization vulnerability exists in the H2O-3 REST API (POST /99/ImportSQLTable) that affects all versions up to 3.46.0.7. This vulnerability allows remote code execution (RCE) due to improper validation of JDBC connection parameters when using a Key-Value format. The vulnerability is present in the MySQL JDBC… | |
| Aplazada | Alta (8.2) | 0.15% | — | Lexmark Printer DriversAI | 19/8/2025 | 17/6/2026 | Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL. | |
| Aplazada | Media (4.3) | 0.13% | — | Softlabbd Integrate Google DriveAI | 14/8/2025 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in princeahmed Integrate Google Drive integrate-google-drive allows Cross Site Request Forgery.This issue affects Integrate Google Drive: from n/a through <= 1.5.2. | |
| Aplazada | Media (5.4) | 0.14% | — | Intel Graphics DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable escalation of privilege via local access | |
| Aplazada | Media (4.8) | 0.14% | — | Intel 700 Series Ethernet Kernel-mode DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable denial of service. | |
| Aplazada | Media (4.1) | 0.14% | — | Intel Graphics Driver ARC B-seriesAI | 12/8/2025 | 17/6/2026 | Protection mechanism failure in the Intel(R) Graphics Driver for the Intel(R) Arc(TM) B-Series graphics before version 32.0.101.6737 may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.8) | 0.14% | — | Intel Graphics DriversAI | 12/8/2025 | 17/6/2026 | NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Alta (8.8) | 0.14% | — | Intel 700 Series Ethernet Kernel DriverAI | 12/8/2025 | 17/6/2026 | Improper input validation in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.13% | — | Intel Driver AND Support Assistant ToolAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path element for some Intel(R) Driver & Support Assistant Tool software before version 24.6.49.8 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.6) | 0.14% | — | Intel 800 Series Ethernet Kernel-mode DriverAI | 12/8/2025 | 17/6/2026 | Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.6) | 0.13% | — | Intel Uefi Oobras Mmbhandler DriverAI | 12/8/2025 | 17/6/2026 | Missing release of memory after effective lifetime in the UEFI OobRasMmbiHandlerDriver module for some Intel(R) reference server platforms may allow a privileged user to enable denial of service via local access. |