Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
600 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.4) | 0.83% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. A malicious app may be able to attempt passcode entries on a locked device and thereby cause escalating time… | |
| Modificada | Crítica (9.8) | 1.2% | — | Apple IpadosApple Iphone OSApple MacosApple Visionos | 31/3/2025 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. Password autofill may fill in passwords after failing authentication. | |
| Modificada | Media (6.3) | 0.30% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to break out of its sandbox. | |
| Modificada | Media (4.3) | 0.82% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 31/3/2025 | 17/6/2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Crítica (9.8) | 1.2% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to enumerate a user's installed apps. | |
| Modificada | Media (5.5) | 0.27% | — | Apple IpadosApple Iphone OSApple MacosApple Visionos | 31/3/2025 | 17/6/2026 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. An app may be able to access sensitive user data. | |
| Modificada | Crítica (9.8) | 0.92% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 31/3/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Alta (7.1) | 0.30% | 💥 PoC | Apple IpadosApple Iphone OSApple MacosApple Visionos | 31/3/2025 | 17/6/2026 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. An app may be able to cause unexpected system termination or write kernel memory. | |
| Modificada | Alta (7.8) | 0.52% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing a maliciously crafted file may lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 1.6% | — | Apple IpadosApple Iphone OSApple MacosApple Visionos | 31/3/2025 | 17/6/2026 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, visionOS 2.4, watchOS 11.4. An app may be able to cause unexpected system termination. | |
| Modificada | Crítica (9.8) | 1.9% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. Playing a malicious audio file may lead to an unexpected app termination. | |
| Modificada | Alta (7.5) | 0.85% | — | Apple IpadosApple Iphone OSApple Visionos | 31/3/2025 | 17/6/2026 | This issue was addressed with improved data access restriction. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, visionOS 2.4. Sensitive keychain data may be accessible from an iOS backup. | |
| Modificada | Media (4.3) | 0.80% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 31/3/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Media (5.5) | 0.28% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | A privacy issue was addressed by not logging contents of text fields. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to access sensitive user data. | |
| Modificada | Media (6.3) | 0.30% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | This issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to break out of its sandbox. | |
| Modificada | Crítica (9.8) | 1.9% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | This issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4. Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory. | |
| Modificada | Media (5.5) | 0.32% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | A logic error was addressed with improved error handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. Parsing an image may lead to disclosure of user information. | |
| Modificada | Media (6.5) | 0.72% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web content may result in the disclosure of process memory. | |
| Modificada | Media (6.5) | 0.77% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+1 | 31/3/2025 | 17/6/2026 | A script imports issue was addressed with improved isolation. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4. Visiting a website may leak sensitive data. | |
| Modificada | Crítica (9.8) | 1.9% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing a maliciously crafted video file may lead to unexpected app termination or corrupt… | |
| Modificada | Media (5.5) | 0.29% | — | Apple IpadosApple Iphone OSApple MacosApple Visionos | 31/3/2025 | 17/6/2026 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing a maliciously crafted font may result in the disclosure of process memory. | |
| Modificada | Alta (8.1) | 1.0% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+1 | 31/3/2025 | 17/6/2026 | The issue was addressed with improved input validation. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. A malicious website may be able to claim WebAuthn credentials from another website that shares a registrable suffix. | |
| Modificada | Alta (7.8) | 0.32% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 31/3/2025 | 17/6/2026 | This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to break out of its sandbox. | |
| Modificada | Alta (7.6) | 0.65% | — | Apple IpadosApple Iphone OSApple Visionos | 31/3/2025 | 17/6/2026 | This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, visionOS 2.4. An app may be able to bypass Privacy preferences. | |
| Modificada | Media (6.5) | 0.37% | — | Apple IpadosApple Iphone OSApple MacosApple Visionos | 21/3/2025 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, visionOS 1.3. A file received from AirDrop may not have the quarantine flag applied. |