Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
3834 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.3) | 0.63% | — | Bian QUE Feijiu Intelligent Emergency AND Quality Control SystemAI | 27/8/2025 | 25/9/2026 | An unauthenticated SQL injection vulnerability exists in the GetLyfsByParams endpoint of Bian Que Feijiu Intelligent Emergency and Quality Control System, accessible via the /AppService/BQMedical/WebServiceForFirstaidApp.asmx interface. The backend fails to properly sanitize user-supplied input in the strOpid… | |
| Aplazada | Crítica (10) | 0.96% | — | H3C Intelligent Management CenterAI | 27/8/2025 | 26/9/2026 | H3C Intelligent Management Center (IMC) versions up to and including E0632H07 contains a remote command execution vulnerability in the /byod/index.xhtml endpoint. Improper handling of JSF ViewState allows unauthenticated attackers to craft POST requests with forged javax.faces.ViewState parameters, potentially leading… | |
| Analizada | Media (4.6) | 0.43% | — | Jetbrains Intellij Idea | 20/8/2025 | 17/6/2026 | In JetBrains IntelliJ IDEA before 2025.2 hTML injection was possible via Remote Development feature | |
| Analizada | Alta (7.3) | 0.13% | — | Jetbrains Intellij Idea | 20/8/2025 | 17/6/2026 | In JetBrains IntelliJ IDEA before 2025.2 unexpected plugin startup was possible due to automatic LSP server start | |
| Analizada | Media (6.5) | 0.25% | — | Jetbrains Intellij Idea | 20/8/2025 | 17/6/2026 | In JetBrains IntelliJ IDEA before 2025.2 improper access control allowed Code With Me guest to discover hidden files | |
| Analizada | Alta (7.5) | 0.20% | — | Jetbrains Intellij Idea | 20/8/2025 | 17/6/2026 | In JetBrains IntelliJ IDEA before 2025.2 credentials disclosure was possible via remote reference | |
| Aplazada | Media (6.5) | 0.33% | — | Ashish AI Tools Artificial Intelligence Auto Content GeneratorAI | 14/8/2025 | 17/6/2026 | Missing Authorization vulnerability in Ashish AI Tools artificial-intelligence-auto-content-generator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AI Tools: from n/a through <= 4.0.7. | |
| Aplazada | Media (5.6) | 0.10% | — | Intel TDX Module FirmwareAI | 12/8/2025 | 17/6/2026 | Improper locking for some Intel(R) TDX Module firmware before version 1.5.13 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (4.5) | 0.14% | — | Intel Xeon 6 ProcessorsAIIntel SGXAIIntel TDXAI | 12/8/2025 | 17/6/2026 | Improperly implemented security check for standard in the DDRIO configuration for some Intel(R) Xeon(R) 6 Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Baja (1.8) | 0.14% | — | Intel Edger8r ToolAIIntel SGX SDKAI | 12/8/2025 | 17/6/2026 | Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.14% | — | Intel Graphics DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable escalation of privilege via local access | |
| Aplazada | Baja (2.1) | 0.18% | — | Intel Tiber Edge PlatformAI | 12/8/2025 | 17/6/2026 | Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Baja (2.1) | 0.14% | — | Intel Tiber Edge PlatformAIIntel Edge OrchestratorAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an unauthenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (5.1) | 0.21% | — | Intel Tiber Edge PlatformAI | 12/8/2025 | 17/6/2026 | Improper input validation for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an authenticated user to potentially enable escalation of privilege via adjacent access. | |
| Aplazada | Media (5.1) | 0.21% | — | Intel Tiber Edge PlatformAIIntel Edge OrchestratorAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Media (4.8) | 0.14% | — | Intel 700 Series EthernetAILinux KernelAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable denial of service. | |
| Aplazada | Media (4.8) | 0.14% | — | Intel 700 Series Ethernet Kernel-mode DriverAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable denial of service. | |
| Aplazada | Media (5.9) | 0.23% | — | Intel Tiber Edge PlatformAIIntel Edge OrchestratorAI | 12/8/2025 | 17/6/2026 | Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Aplazada | Media (5.4) | 0.11% | — | Intel Distribution FOR PythonAI | 12/8/2025 | 17/6/2026 | Incorrect default permissions for some Intel(R) Distribution for Python software installers before version 2025.1.0 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.14% | — | Intel DSAAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path for some Intel(R) DSA software before version 25.2.15.9 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (4.5) | 0.14% | — | Intel Xeon 6AIIntel SGXAIIntel TDXAI | 12/8/2025 | 17/6/2026 | Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.8) | 0.13% | — | Intel 700 Series EthernetAI | 12/8/2025 | 17/6/2026 | Insufficient control flow management in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.13% | — | Intel AI FOR Enterprise Retrieval-augmented GenerationAI | 12/8/2025 | 17/6/2026 | Uncontrolled search path in some Intel(R) AI for Enterprise Retrieval-augmented Generation software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (6.9) | 0.20% | — | Intel Tiber Edge PlatformAI | 12/8/2025 | 17/6/2026 | Improper neutralization for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an unauthenticated user to potentially enable information disclosure via adjacent access. | |
| Aplazada | Baja (2.3) | 0.16% | — | Intel Tiber Edge PlatformAIIntel Edge OrchestratorAI | 12/8/2025 | 17/6/2026 | Improper access control for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access. |