Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

4419 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (4.3)0.35%—Canonical LXD12/8/202611/9/2026
An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-level container isolation restrictions. When a project is configured with restrictions on container privileges (such as enforcing restricted.containers.privilege=isolated), LXD fails to enforce the requirement if an…
AnalizadaCrítica (9.9)0.88%—Canonical LXD12/8/202611/9/2026
A link following vulnerability in LXD allows an attacker to achieve root command execution on the host system. During the import or unpacking of crafted image or backup archives, LXD fails to properly validate and confine the backup.yaml file when it exists as a symbolic link. An attacker can exploit this flaw by…
AnalizadaCrítica (9.9)0.59%—Canonical LXD12/8/20263/9/2026
A link following vulnerability in LXD allows an attacker to achieve arbitrary file read and write operations on the host system. When importing or unpacking an image archive, LXD fails to validate whether the metadata.yaml file is a symbolic link. An attacker can exploit this flaw by providing a crafted image archive…
AnalizadaCrítica (9.9)0.54%—Canonical LXD12/8/202611/9/2026
An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass target project security restrictions during cross-project instance migrations. When moving an instance cross-project to a different cluster member via POST /1.0/instances/{name} with migration: true, project: <target>, and target:…
Pendiente de análisisAlta (7.8)0.18%—Canonical Snap-confineAI21/7/202622/7/2026
A local privilege escalation vulnerability exists in snap-confine, a set-capabilities core component used internally by Canonical snapd to construct the secure execution environment for snap applications. This vulnerability uniquely affects versions of snap-confine configured with set-capabilities (rather than…
Pendiente de análisisAlta (8.4)0.18%—Canonical SnapdAI21/7/202622/7/2026
A sandbox confinement bypass vulnerability exists in Canonical snapd within its internal execution environment compiler (snap-confine). The default seccomp security templates generated by the engine to restrict system calls do not filter or reject process operations capable of creating or manipulating file execution…
Pendiente de análisisMedia (5.6)0.13%—Canonical SnapdAISystemd-userdbdAI21/7/202622/7/2026
An access control bypass and information disclosure vulnerability exists in the base AppArmor security profile configuration of Canonical snapd. The abstraction rules located in /etc/apparmor.d/abstractions/nss-systemd (inherited via ) inadvertently permit strictly confined snap applications, which lack the privileged…
Pendiente de análisisMedia (5.5)0.15%—Canonical Ubuntu-pro-clientAI16/7/202616/7/2026
An information disclosure vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client validates Ubuntu Pro APT credentials by executing /usr/lib/apt/apt-helper using the download-file command. During this process, the secret bearer token is embedded directly in the cleartext URL…
Pendiente de análisisMedia (5)0.21%—Canonical Ubuntu PRO ClientAI16/7/202616/7/2026
An insecure symlink following vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools) within the pro collect-logs command framework. The utility creates or utilizes predictable temporary file paths or user-accessible log directories when gathering diagnostic information without verifying…
Pendiente de análisisCrítica (9)0.53%—Canonical Ubuntu-pro-clientAI16/7/202616/7/2026
An input validation and injection vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client constructs APT source files (such as /etc/apt/sources.list.d/ubuntu-.list or their DEB822 equivalents) using data received directly from the contract server response via the…
AnalizadaMedia (4.3)0.19%—Dalibo Postgresql Anonymizer30/6/20266/7/2026
PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() function and collects (seed, hash_output) pairs to perform an offline brute-force attack and deduce the salt. The problem is resolved in PostgreSQL Anonymizer 3.1.2 and later versions
AnalizadaMedia (5)0.28%—Canonical LXD26/6/20266/7/2026
In Canonical LXD versions 4.12 through 6.9, a Server-Side Request Forgery (SSRF) vulnerability in the image import functionality allows authenticated users with the can_create_images entitlement to interact with internal network infrastructure via the /images endpoint. When importing an image from a URL source, the…
AnalizadaAlta (7.2)0.63%—Canonical LXD26/6/20262/7/2026
A privilege escalation vulnerability exists in LXD from 6.0 before 6.9, 5.21.0 before 5.21.5, and 5.0.0 before 5.0.7 regarding the handling of project-restriction policies during snapshot restoration.. An authenticated project operator in a restricted multi-tenant environment can bypass policy restrictions by…
AnalizadaMedia (6.5)0.55%—Canonical LXD26/6/20262/7/2026
Nil-pointer dereference in CreateCustomVolumeFromBackup in LXD up to version 6.8 and 5.21 on Linux allows an authenticated user with can_create_storage_volumes permissions to cause a denial of service via a specially crafted custom-volume backup tarball that omits the expires_at snapshot field.
AnalizadaCrítica (9.6)0.29%—Canonical LXD26/6/20262/7/2026
Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, read, and overwrite another guest's custom storage volume via a crafted device PATCH request over /dev/lxd when security.devlxd.management.volumes is enabled.
Pendiente de análisisCrítica (9)0.14%—Canonical AdsysAISambaAI22/6/202622/6/2026
An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Directory Certificate Services (AD CS) certificate auto-enrollment via the vendored Samba client script (internal/policies/certificate/python/vendor_samba/gp/gp_cert_auto_enroll_ext.py), ADSys utilizes a plaintext HTTP…
AplazadaMedia (5.1)0.30%—Canonical MicrocephAI19/6/202622/6/2026
Canonical MicroCeph versions from the squid and tentacle track are vulnerable to a path traversal issue in the remote-import API. Holders of a trusted cluster mTLS certificate (such as enrolled cluster members) or join token can manipulate files in an imported remote cluster within the /var/snap/microceph confinement.…
AnalizadaAlta (7.1)0.46%—Canon EOS Network Setting Tool16/6/202618/6/2026
Use of a non-secure protocol as the default FTP configuration in Canon EOS Network Setting Tool Version 1.5.0 or earlier
AnalizadaAlta (7.6)0.32%—Canon EOS Network Setting Tool16/6/202618/6/2026
Use of weak SSH cryptographic algorithms in Canon EOS Network Setting Tool Version 1.5.0 or earlier
AnalizadaMedia (6.9)0.42%—Canon EOS Network Setting Tool16/6/202618/6/2026
Use of hard-coded cryptographic keys in Canon EOS Network Setting Tool Version 1.5.0 or earlier
AnalizadaAlta (7.1)0.34%—Canon EOS Network Setting Tool16/6/202618/6/2026
Improper validation of server certificates in Canon EOS Network Setting Tool Version 1.5.0 or earlier
AnalizadaAlta (7.1)0.50%—Canon EOS Network Setting Tool16/6/202618/6/2026
Improper validation of SSH host keys in Canon EOS Network Setting Tool Version 1.5.0 or earlier
AnalizadaAlta (7.5)0.25%—Dalibo Postgresql Anonymizer11/6/202617/6/2026
PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a JSON document and placing malicious code inside a particular key-value pair. If a superuser calls the import_database_rules() or import_roles_rules() functions, the malicious code is executed with superuser…
Pendiente de análisisMedia (5.1)0.16%—Canon Pixus Ix6800 Series Cups Printer DriverAICanon Pixma Mg2500 Series Cups Printer DriverAI29/5/202621/7/2026
Improper handling of symbolic links in the installer of CUPS Printer Driver for macOS(*) may allow a local attacker with login privileges to exploit a specially crafted symbolic link during installation to modify permissions of directories for which they would not normally have authorization. *:Canon PIXUS iX6800…
Pendiente de análisisMedia (5.1)0.16%—Canon MY Image GardenAI29/5/202621/7/2026
Improper handling of symbolic links in the installer of My Image Garden for macOS Version 3.6.8 or earlier may allow a local attacker with login privileges to exploit a specially crafted symbolic link during installation to modify permissions of files for which they would not normally have authorization.