Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2680▼ 660 respecto a la semana anterior
Críticas / altas1277▼ 279 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)228▼ 274 respecto a la semana anterior
2151 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.55% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 17/9/2024 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS 2, watchOS 11. Processing maliciously crafted web content may lead to universal cross site scripting. | |
| Modificada | Media (5.5) | 0.27% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 17/9/2024 | 17/6/2026 | A file access issue was addressed with improved input validation. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7, tvOS 18, visionOS 2, watchOS 11. An app may be able to access user-sensitive data. | |
| Modificada | Media (5.5) | 0.27% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 17/9/2024 | 17/6/2026 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, tvOS 18, visionOS 2, watchOS 11. Processing a maliciously crafted file may lead to unexpected app termination. | |
| Modificada | Media (5.5) | 0.28% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences. | |
| Modificada | Alta (7.5) | 1.1% | 💥 PoC | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | A race condition was addressed with additional validation. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, watchOS 10.6. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication. | |
| Modificada | Media (5.5) | 0.34% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected… | |
| Modificada | Alta (7.1) | 0.24% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences. | |
| Modificada | Alta (7.1) | 0.43% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected… | |
| Modificada | Baja (3.3) | 0.33% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | This issue was addressed with improved data protection. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to read sensitive location information. | |
| Modificada | Media (6.5) | 1.1% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 29/7/2024 | 17/6/2026 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (5.5) | 0.32% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. A local attacker may be able to cause unexpected system shutdown. | |
| Modificada | Media (6.1) | 0.78% | — | Apple Iphone OSApple IpadosApple SafariApple Watchos+3 | 29/7/2024 | 17/6/2026 | This issue was addressed with improved checks. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to a cross site scripting attack. | |
| Modificada | Media (5.5) | 0.29% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected app termination. | |
| Modificada | Media (6.5) | 0.98% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 29/7/2024 | 17/6/2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (5.5) | 0.70% | — | Apple Iphone OSApple IpadosApple SafariApple Watchos+3 | 29/7/2024 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (5.5) | 0.34% | — | Apple Iphone OSApple IpadosApple SafariApple Watchos+3 | 29/7/2024 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (5.5) | 7.7% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected app termination. | |
| Modificada | Media (4.3) | 1.0% | — | Apple Iphone OSApple IpadosApple MacosApple Safari+3 | 29/7/2024 | 17/6/2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Alta (7.1) | 0.33% | — | Apple MacosApple Iphone OSApple IpadosApple Watchos+1 | 29/7/2024 | 17/6/2026 | A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences. | |
| Modificada | Media (5.5) | 0.25% | — | Apple Iphone OSApple IpadosApple MacosApple Watchos+2 | 29/7/2024 | 17/6/2026 | This issue was addressed with a new entitlement. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to access user-sensitive data. | |
| Modificada | Media (5.5) | 0.30% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | An information disclosure issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. A local attacker may be able to determine kernel memory layout. | |
| Modificada | Alta (7.8) | 0.26% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.6, macOS Sonoma 14.5, macOS Ventura 13.6.8, tvOS 17.5, visionOS 1.3, watchOS 10.5. A local attacker may be able to cause unexpected system shutdown. | |
| Modificada | Media (5.9) | 0.68% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 29/7/2024 | 17/6/2026 | A race condition was addressed with improved locking. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, visionOS 1.3, watchOS 10.5. An attacker in a privileged network position may be able to spoof network packets. | |
| Modificada | Baja (3.3) | 0.18% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | This issue was addressed with improved data protection. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17. An app may be able to access edited photos saved to a temporary directory. | |
| Modificada | Alta (7.8) | 0.22% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 29/7/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17. An app may be able to execute arbitrary code with kernel privileges. |