Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
430 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9) | 1.7% | — | Amazon Awslabs Postgres-mcp-serverAI | 9/9/2026 | 10/9/2026 | An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-server before 1.1.7 might allow an unauthenticated actor to execute operating system commands on the host of a self-managed PostgreSQL server by placing a crafted COPY ... TO PROGRAM statement… | |
| Pendiente de análisis | Media (5.7) | 0.18% | — | Amazon Awslabs Mysql-mcp-serverAI | 9/9/2026 | 9/9/2026 | Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allow context-dependent actors to bypass the read-only enforcement gate and reach file-read and file-write SQL sinks via SQL inline comments that the regex engine does not treat as whitespace. To… | |
| Pendiente de análisis | Alta (7.1) | 0.34% | — | Amazon Postgres-mcp-serverAI | 4/9/2026 | 8/9/2026 | An incomplete list of disallowed inputs in the SQL validation component in Amazon awslabs postgres-mcp-server before version 1.1.7 might allow an unauthenticated actor to modify data beyond the read-only scope by placing crafted SQL into the content that is submitted when an authenticated user interacts with the MCP… | |
| Pendiente de análisis | Alta (8.7) | 0.58% | — | Amazon Ion-javaAI | 4/9/2026 | 8/9/2026 | Improper handling of highly compressed data in Amazon ion-java before 1.12.1 might allow remote attackers to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression due to insufficient coverage of the GZIP auto-decompression opt-out introduced for… | |
| Pendiente de análisis | Media (5.1) | 0.44% | — | Amazon EFS CSI DriverAI | 4/9/2026 | 8/9/2026 | Unverified ownership of a storage access point in the volume deletion component of the Amazon EFS CSI Driver before v3.4.1 might allow an authenticated Kubernetes user with PersistentVolume creation privileges to cause recursive deletion of directories on an EFS filesystem they are not authorized to access, via a… | |
| Pendiente de análisis | Alta (8.5) | 1.1% | — | Apache Log4jAIAmazon LinuxAI | 4/9/2026 | 8/9/2026 | An OS command injection issue in the log4j-cve-2021-44228-hotpatch package in Amazon Linux before 1.3-9 might allow a local user to execute arbitrary commands with root privileges via a Java process whose executable path contains embedded newline characters. | |
| Pendiente de análisis | Alta (7.1) | 0.21% | — | Amazon Awslabs.dynamodb-mcp-serverAI | 4/9/2026 | 8/9/2026 | Improper neutralization of special elements used in a template engine in the CDK generator in Amazon awslabs.dynamodb-mcp-server before 2.1.6 might allow a context-dependent actor to execute arbitrary code on the host that deploys the generated application via crafted table, index, or attribute names in a data model… | |
| Pendiente de análisis | Alta (7.3) | 0.17% | — | Amazon AWS FpgaAI | 3/9/2026 | 8/9/2026 | Creation of a temporary file in a directory with insecure permissions in the FPGA management tool installation component in AWS FPGA Development Kit (aws-fpga) before 2.3.4 might allow local users to execute arbitrary code with root privileges via crafted shell content placed at a predictable path in a world-writable… | |
| Pendiente de análisis | Alta (8.5) | 2.3% | — | Amazon Codecatalyst-blueprintsAI | 3/9/2026 | 8/9/2026 | Improper neutralization of special elements used in an OS command (CWE-78) in the blueprint resynthesis framework in Amazon Web Services codecatalyst-blueprints before 0.3.156 might allow a user with permission to commit to a repository in the project to execute arbitrary commands in the blueprint resynthesis… | |
| Pendiente de análisis | Alta (8.7) | 0.61% | — | Amazon Ion-cAI | 3/9/2026 | 3/9/2026 | An uncontrolled recursion issue exists in Amazon Ion-C versions before 1.1.6 that might allow a remote unauthenticated actor to craft Ion data that exhausts the native call stack and crashes the application using the library, resulting in a denial of service. | |
| Pendiente de análisis | Alta (8.5) | 0.63% | — | Amazon Sagemaker Python SDKAI | 1/9/2026 | 3/9/2026 | Cleartext storage of sensitive information in the @step and @remote decorator pipeline component in Amazon SageMaker Python SDK before v3.11.0 and v2.256.0 might allow an authenticated remote user to extract the HMAC signing key from SageMaker DescribePipeline API responses and forge valid integrity signatures for… | |
| Pendiente de análisis | Alta (8.7) | 0.90% | — | Amazon SSM AgentAI | 28/8/2026 | 31/8/2026 | Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand permission is restricted to the AWS-DownloadContent document, to write arbitrary files outside the intended download… | |
| Analizada | Media (6.8) | 0.20% | — | Amazon Diagram-as-code | 27/8/2026 | 4/9/2026 | A relative path traversal issue in the zip extraction functionality in AWS diagram-as-code (awsdac) in versions 0.10 through 0.23 can allow a third party to write arbitrary files to the local filesystem via crafted zip entry names containing path traversal sequences. This could allow the third party to perform… | |
| Pendiente de análisis | Crítica (9.2) | 0.57% | — | Amazon Strands Agents ToolsAI | 25/8/2026 | 26/8/2026 | Improper neutralization of input used for LLM prompting in the python_repl tool in Amazon Strands Agents Tools before 0.8.5 might allow remote actors to execute arbitrary Python code on the agent's host by bypassing the human consent gate, via a crafted prompt that forwards non_interactive_mode as a keyword argument… | |
| Pendiente de análisis | Crítica (9.4) | 0.63% | — | Amazon Athena Query FederationAIAmazon NeptuneAIAmazon AthenaAIAmazon LambdaAI | 21/8/2026 | 27/8/2026 | In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. To remediate this issue, users should upgrade to aws-athena-query-federation v2026.30.1 or later. | |
| Analizada | Alta (8.2) | 0.18% | — | Amazon Freertos | 21/8/2026 | 25/8/2026 | Missing queue-set type validation in xQueueAddToSet() in the FreeRTOS-Kernel before 11.3.1 might allow an unprivileged task on MPU-enabled ports with configUSE_QUEUE_SETS=1 to read privileged kernel memory. To remediate this issue, users should upgrade to version 11.3.1 or later. | |
| Analizada | Alta (8.3) | 0.16% | — | Amazon Freertos | 21/8/2026 | 25/8/2026 | Missing minimum size validation in secure context allocation in FreeRTOS-Kernel before 11.3.1 might allow local users to corrupt secure-world heap metadata via an out-of-bounds write with an undersized stack size parameter. To remediate this issue, users should upgrade to version 11.3.1 or later. | |
| Analizada | Alta (8.3) | 0.16% | — | Amazon Freertos | 21/8/2026 | 27/8/2026 | Missing privilege verification in the secure context cleanup handler in FreeRTOS-Kernel before 11.3.1 might allow local users to cause a use-after-free condition in secure-world memory via the SVC handler for secure context deallocation. To remediate this issue, users should upgrade to version 11.3.1 or later. | |
| Analizada | Crítica (9.3) | 0.17% | — | Amazon Freertos | 21/8/2026 | 27/8/2026 | Improper input validation in FreeRTOS-Kernel before 11.3.1 might allow an unprivileged task on MPU-enabled ports to execute code in privileged kernel context. To remediate this issue, users should upgrade to version 11.3.1 or later. | |
| Pendiente de análisis | Alta (7.1) | 0.51% | — | Amazon AthenaAIAmazon Athena Federated QueryAIAmazon Secrets ManagerAI | 20/8/2026 | 25/8/2026 | Incorrect privilege assignment in the ClickHouse connector deployment template in Amazon Athena Federated Query prior to v2026.17.1 could allow an authenticated remote user to read arbitrary AWS Secrets Manager secrets in the deploying account by pointing the connector's connection string at an unrelated secret and at… | |
| Pendiente de análisis | Alta (8.7) | 0.61% | — | Amazon Ion-javaAI | 18/8/2026 | 20/8/2026 | Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression. To remediate this issue, users should upgrade to… | |
| Pendiente de análisis | Alta (8.7) | 0.61% | — | Amazon Ion-javaAI | 18/8/2026 | 20/8/2026 | Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap preallocation. To remediate this issue, users should upgrade to version… | |
| Analizada | Media (6) | 0.56% | — | Amazon AWS Software Development KIT | 12/8/2026 | 18/8/2026 | An out-of-bounds read issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862, on some platforms, might allow a remote authenticated user to crash an application that processes crafted Base64-encoded input. To remediate this issue, users should upgrade to version 1.11.862. | |
| Analizada | Media (6) | 0.50% | — | Amazon AWS Software Development KIT | 12/8/2026 | 18/8/2026 | An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or heap memory corruption in an application that processes crafted Base64-encoded input. To remediate this issue, users should upgrade to version 1.11.862. | |
| Pendiente de análisis | Alta (8.6) | 0.58% | — | Amazon OpensearchAIAmazon Opensearch AlertingAI | 12/8/2026 | 13/8/2026 | Missing authorization in the Execute Monitor API in Amazon OpenSearch Alerting plugin might allow an authenticated remote user to read, modify, or delete arbitrary index data via a crafted inline monitor request with unintentional data source and input index parameters. |