Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
9809 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.37% | — | Haxtheweb Haxcms NodejsAIHaxcms PHPAI | 29/5/2026 | 21/7/2026 | HAX CMS helps manage microsite universe with PHP or NodeJs backends. Versions up to and including 26.0.0 are affected by a stored cross-site scripting (XSS) vulnerability in the `/system/api/saveNode` endpoint. An authenticated user with a permission to edit pages can bypass the HTML sanitizer by injecting an event… | |
| Aplazada | Alta (7.1) | 0.43% | — | HP Service CenterAI | 29/5/2026 | 21/7/2026 | Service Center developed by BankPro E-Service Technology has an Insecure Direct Object Reference vulnerability, allowing authenticated remote attackers to modify the parameter of a specific query function to access other users' EC order details. | |
| Aplazada | Alta (8.8) | 0.33% | — | PhpmyfaqAI | 28/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.3 contains an unauthenticated password reset vulnerability in the user password update API endpoint that allows attackers to change account passwords without token validation. Attackers can enumerate valid username and email pairs and force immediate password changes by sending PUT requests to the… | |
| Aplazada | Alta (8.8) | 0.46% | — | PhpmyfaqAI | 28/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint that allows unauthenticated attackers to reset any user account password without token verification or email confirmation. Attackers can enumerate valid usernames, obtain plaintext passwords via email, and achieve… | |
| Aplazada | Alta (8.7) | 0.56% | — | PhpmyfaqAI | 28/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in API v4.0 where the default empty api.apiClientToken allows unauthenticated users to create and modify FAQ entries. Attackers can send an empty x-pmf-token header to bypass token validation and inject malicious content via POST endpoints… | |
| Aplazada | Alta (8.7) | 0.44% | — | PhpmyfaqAI | 28/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability in the admin API user password endpoint that allows authenticated administrators to change any user's password without authorization verification. An attacker with low-privilege admin credentials can escalate to SuperAdmin by modifying… | |
| Aplazada | Media (4.3) | 0.20% | — | PeachpayAI | 28/5/2026 | 17/6/2026 | The PeachPay — Payments & Express Checkout for WooCommerce (supports Stripe, PayPal, Square, Authorize.net, NMI) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.120.46. This is due to missing or incorrect nonce validation on the… | |
| Aplazada | Media (5.4) | 0.23% | — | Creatorsofcode SimplephpAI | 27/5/2026 | 5/7/2026 | A stored cross-site scripting (XSS) vulnerability in the /admin/config-module.php component of creatorsofcode simplephp GitHub commit 5184cff (Latest as of 2026-02-27) via injecting a crafted payload. | |
| Aplazada | Media (6.5) | 0.30% | — | Zyxel Gs1200-5v3AIZyxel Gs1200-8v3AIZyxel Gs1200-5hpv3AIZyxel Gs1200-8hpv3AI+1 | 26/5/2026 | 24/7/2026 | A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware versions through 1.00(ACPT.2)C0, GS1200-5HPv3 firmware versions through 1.00(ACPU.2)C0, GS1200-8HPv3 firmware versions through 1.00(ACPV.2)C0, and GS1200-10v3 firmware versions through 1.00(ACPW.2)C0… | |
| Aplazada | Media (5.5) | 0.41% | — | Yashpokharna2555 StudentmanagementsystemAI | 25/5/2026 | 23/7/2026 | A vulnerability was found in yashpokharna2555 StudentManagementSystem up to cb2f558ddf8d19396de0f92abf2d224d46a0a203. Affected by this issue is the function confirm_logged_in of the file /studentdel.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has… | |
| Aplazada | Baja (2) | 0.33% | — | Yashpokharna2555 StudentmanagementsystemAI | 25/5/2026 | 23/7/2026 | A vulnerability was detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This impacts an unknown function of the file /student.php. Performing a manipulation of the argument FIRST_NAME results in cross site scripting. The attack can be initiated remotely. The exploit is now… | |
| Aplazada | Media (5.5) | 0.41% | — | Yashpokharna2555 StudentmanagementsystemAI | 25/5/2026 | 23/7/2026 | A security vulnerability has been detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This affects the function confirm_logged_in of the file student_trans.php. Such manipulation of the argument FIRST_NAME/Last_Name/EMAIL leads to sql injection. It is possible to launch the… | |
| Aplazada | Media (5.5) | 0.41% | — | Yashpokharna2555 StudentmanagementsystemAI | 25/5/2026 | 23/7/2026 | A weakness has been identified in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. The impacted element is an unknown function of the file /success.php. This manipulation of the argument User causes sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Aplazada | Baja (2.1) | 0.43% | — | Yashpokharna2555 Student Management SystemAI | 25/5/2026 | 23/7/2026 | A vulnerability was found in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This impacts an unknown function of the file courseDel.php. The manipulation of the argument ID results in improper control of resource identifiers. The attack may be performed from remote. The exploit has… | |
| Pendiente de análisis | Media (5.9) | 0.21% | — | HP Envy 5000AI | 22/5/2026 | 23/7/2026 | HP ENVY 5000 series printers VERBASPP1N003.2237A.00 do not properly manage concurrent TCP connections to port 9100 (JetDirect/RAW printing). An unauthenticated remote attacker on the same network can establish a persistent connection to port 9100 and send keep-alive packets, causing the printer's session threads to… | |
| Modificada | Alta (8.5) | 4.6% | — | HP Linux Imaging AND Printing | 20/5/2026 | 4/8/2026 | A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via operating system command injection. | |
| Modificada | Crítica (9.3) | 1.1% | — | HP Linux Imaging AND Printing | 20/5/2026 | 4/8/2026 | A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via an integer overflow in the hpcups processing path when handling crafted print data. | |
| Analizada | Media (6.1) | 0.27% | — | Simplesamlphp-module-casserver | 18/5/2026 | 7/10/2026 | SimpleSAMLphp-casserver is a CAS 1.0 and 2.0 compliant CAS server in the form of a SimpleSAMLphp module. In versions below 6.3.1 and 7.0.0, the logout endpoint accepts a url query parameter to redirect to. casserver treats that url as trusted, and either (depending on configuration) redirects the browser there, or… | |
| Aplazada | Media (5.5) | 0.41% | — | Projectworlds Hospital-management-system-in-phpAI | 18/5/2026 | 17/6/2026 | A flaw has been found in projectworlds hospital-management-system-in-php 1.0. Affected by this vulnerability is the function getAllPatientDetail of the file update_info.php of the component GET Parameter Handler. Executing a manipulation of the argument appointment_no can lead to sql injection. The attack may be… | |
| Aplazada | Baja (2.1) | 0.35% | — | Zblogcn Z-blogphpAI | 17/5/2026 | 17/6/2026 | A weakness has been identified in Z-BlogPHP 1.7.4.3430. This affects the function CheckComment of the file zb_system/function/c_system_event.php of the component Commend Approval Handler. This manipulation causes improper authorization. The attack may be initiated remotely. The exploit has been made available to the… | |
| Aplazada | Alta (8.8) | 0.28% | — | Egavilanmedia PhpcrudAI | 16/5/2026 | 17/6/2026 | EgavilanMedia PHPCRUD 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the firstname parameter. Attackers can send POST requests to insert.php with malicious firstname values to extract sensitive database information. | |
| Aplazada | Alta (8.3) | 0.30% | — | PhpmyfaqAI | 15/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.2 contains a stored cross-site scripting vulnerability in Utils::parseUrl() that allows authenticated users to inject JavaScript via malformed URLs in comments. Attackers can craft URLs with unescaped quotes to inject event handlers, stealing admin session cookies and achieving full application… | |
| Aplazada | Alta (8.7) | 0.43% | — | PhpmyfaqAI | 15/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.2 contains an information disclosure vulnerability in the getIdFromSolutionId() method that lacks permission filtering, allowing unauthenticated attackers to enumerate restricted FAQ entries and read their titles via the /solution_id_{id}.html endpoint. Attackers can sequentially iterate solution… | |
| Aplazada | Media (5.3) | 0.30% | — | PhpmyfaqAI | 15/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.2 contains a missing authorization vulnerability in the DELETE /admin/api/content/tags/{tagId} endpoint that allows any authenticated user to delete tags. Any logged-in user, including regular frontend users, can delete arbitrary tags by sending a DELETE request with a valid session cookie,… | |
| Aplazada | Crítica (9.3) | 2.1% | 💥 Exploit | PhpmyfaqAI | 15/5/2026 | 17/6/2026 | phpMyFAQ before 4.1.2 contains an unauthenticated SQL injection vulnerability in BuiltinCaptcha::garbageCollector() and BuiltinCaptcha::saveCaptcha() methods that interpolate unsanitized User-Agent headers into DELETE and INSERT queries. Unauthenticated attackers can exploit the public GET /api/captcha endpoint by… |