Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1062 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.74% | — | Webhostings WH Testimonials | 13/3/2023 | 17/6/2026 | The WH Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters such as wh_homepage, wh_text_short, wh_text_full and in versions up to, and including, 3.0.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to… | |
| Modificada | Media (5.7) | 0.63% | — | Ghost | 5/3/2023 | 17/6/2026 | Ghost 5.35.0 allows authorization bypass: contributors can view draft posts of other users, which is arguably inconsistent with a security policy in which a contributor's draft can only be read by editors until published by an editor. NOTE: the vendor's position is that this behavior has no security impact. | |
| Modificada | Alta (8.8) | 0.18% | — | SAP Host Agent | 14/2/2023 | 17/6/2026 | An attacker authenticated as a non-admin user with local access to a server port assigned to the SAP Host Agent (Start Service) - versions 7.21, 7.22, can submit a crafted ConfigureOutsideDiscovery request with an operating system command which will be executed with administrator privileges. The OS command can read or… | |
| Modificada | Crítica (9.8) | 1.4% | — | Mengnai Aapanel Host System | 2/2/2023 | 17/6/2026 | Monnai aaPanel host system v1.5 contains an access control issue which allows attackers to escalate privileges and execute arbitrary code via uploading a crafted PHP file to the virtual host directory of the system. | |
| Modificada | Media (5.4) | 1.0% | — | Ghost | 19/1/2023 | 17/6/2026 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject arbitrary Javascript in posts, which allow privilege escalation to administrator via XSS. To trigger this vulnerability, an attacker can… | |
| Modificada | Media (5.4) | 0.68% | — | Ghost | 19/1/2023 | 17/6/2026 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject arbitrary Javascript in posts, which allow privilege escalation to administrator via XSS. To trigger this vulnerability, an attacker can… | |
| Modificada | Media (5.4) | 0.68% | — | Ghost | 19/1/2023 | 17/6/2026 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject arbitrary Javascript in posts, which allow privilege escalation to administrator via XSS. To trigger this vulnerability, an attacker can… | |
| Modificada | Media (5.4) | 0.82% | — | Ghost | 19/1/2023 | 17/6/2026 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default installations of Ghost allow non-administrator users to inject arbitrary Javascript in posts, which allow privilege escalation to administrator via XSS. To trigger this vulnerability, an attacker can… | |
| Modificada | Media (6.7) | 0.20% | — | SAP Host Agent | 10/1/2023 | 17/6/2026 | In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be started under a privileged account. Note that by default all user members of SAP_LocaAdmin are denied the ability to logon locally by… | |
| Modificada | Media (5.3) | 0.68% | — | Yunohost Transmission YNH | 8/1/2023 | 17/6/2026 | A vulnerability classified as critical has been found in YunoHost-Apps transmission_ynh. Affected is an unknown function of the file conf/nginx.conf. The manipulation leads to path traversal. The patch is identified as f136dfd44eda128129e5fd2d850a3a3c600e6a4a. It is recommended to apply a patch to fix this issue.… | |
| Modificada | Media (5.3) | 20% | 💥 Exploit | Ghost | 22/12/2022 | 17/6/2026 | A user enumeration vulnerability exists in the login functionality of Ghost Foundation Ghost 5.9.4. A specially-crafted HTTP request can lead to a disclosure of sensitive information. An attacker can send a series of HTTP requests to trigger this vulnerability. | |
| Modificada | Media (4.3) | 19% | — | Ghost | 22/12/2022 | 17/6/2026 | An authentication bypass vulnerability exists in the newsletter subscription functionality of Ghost Foundation Ghost 5.9.4. A specially-crafted HTTP request can lead to increased privileges. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 0.59% | — | Hostel Searching Project | 17/11/2022 | 17/6/2026 | A vulnerability has been found in Hostel Searching Project and classified as critical. This vulnerability affects unknown code of the file view-property.php. The manipulation of the argument property_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may… | |
| Modificada | Media (6.5) | 0.34% | — | Hosteng H0-ecom100 Firmware | 28/10/2022 | 17/6/2026 | Using custom code, an attacker can write into name or description fields larger than the appropriate buffer size causing a stack-based buffer overflow on Host Engineering H0-ECOM100 Communications Module Firmware versions v5.0.155 and prior. This may allow an attacker to crash the affected device or cause it to become… | |
| Modificada | Crítica (9.8) | 1.1% | — | Stm32 MW USB Host | 21/10/2022 | 17/6/2026 | A buffer overflow vulnerability in stm32_mw_usb_host of STMicroelectronics in versions before 3.5.1 allows an attacker to execute arbitrary code when the descriptor contains more endpoints than USBH_MAX_NUM_ENDPOINTS. The library is typically integrated when using a RTOS such as FreeRTOS on STM32 MCUs. | |
| Modificada | Media (4.9) | 1.7% | — | SAP Host Agent | 13/9/2022 | 17/6/2026 | In SAP Host Agent (SAPOSCOL) - version 7.22, an attacker may use files created by saposcol to escalate privileges for themselves. | |
| Modificada | Media (4.7) | 0.19% | — | Ovirt VdsmRedhat VirtualizationRedhat Virtualization FOR IBM Power Little EndianRedhat Virtualization Host | 26/8/2022 | 17/6/2026 | A race condition was found in vdsm. Functionality to obfuscate sensitive values in log files that may lead to values being stored in clear text. | |
| Modificada | Media (5.5) | 0.29% | — | Linux KernelIBM Spectrum Copy Data ManagementIBM Spectrum Protect PlusDebian Linux+19 | 26/8/2022 | 17/6/2026 | A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS. | |
| Modificada | Media (6.8) | 0.98% | — | SambaDebian LinuxRedhat Virtualization HostRedhat Enterprise Linux+3 | 23/8/2022 | 17/6/2026 | A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share. | |
| Modificada | Media (5.5) | 0.27% | — | Linux KernelFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux FOR IBM Z Systems+11 | 22/8/2022 | 17/6/2026 | A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability. | |
| Modificada | Alta (7.1) | 0.46% | — | Artifex GhostscriptDebian Linux | 19/8/2022 | 17/6/2026 | A heap-based buffer overwrite vulnerability was found in GhostScript's lp8000_print_page() function in the gdevlp8k.c file. This flaw allows an attacker to trick a user into opening a crafted PDF file, triggering the heap buffer overflow that could lead to memory corruption or a denial of service. | |
| Analizada | Alta (7.5) | 0.62% | — | Sonicwall Hosted Email Security | 29/7/2022 | 17/6/2026 | Improperly Implemented Security Check vulnerability in the SonicWall Hosted Email Security leads to bypass of Capture ATP security service in the appliance. This vulnerability impacts 10.0.17.7319 and earlier versions | |
| Modificada | Media (5.5) | 1.4% | — | Artifex GhostscriptFedoraproject Fedora | 16/6/2022 | 17/6/2026 | A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory. When allocating a buffer device, it relies on an init_device_procs defined for the device that uses it as a prototype that depends upon the number of bits per pixel. For bpp > 64,… | |
| Modificada | Media (5) | 0.44% | — | SAP Host AgentSAP Netweaver Abap | 14/6/2022 | 17/6/2026 | SAP startservice - of SAP NetWeaver Application Server ABAP, Application Server Java, ABAP Platform and HANA Database - versions KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, SAPHOSTAGENT 7.22, - on Unix systems, s-bit helper program… | |
| Modificada | Media (4.3) | 0.66% | — | SAP Host AgentSAP Netweaver Abap | 14/6/2022 | 17/6/2026 | SAP NetWeaver, ABAP Platform and SAP Host Agent - versions KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, 8.04, KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, 8.04, SAPHOSTAGENT 7.22, allows an authenticated user to misuse a function of sapcontrol webfunctionality(startservice) in… |