Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
570 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| En análisis | Alta (8.7) | 0.26% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Inefficient algorithmic complexity in X.509 distinguished name string conversion (X509Name.ToString and IetfUtilities.ValueToString) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote unauthenticated attacker to cause a denial of service through CPU exhaustion via a certificate, CRL,… | |
| En análisis | Alta (8.7) | 0.41% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Memory allocation with excessive size value in the HSS/LMS signature code (HssPublicKeyParameters, HssSignature) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote unauthenticated attacker who can supply both an HSS public key and a signature to cause a denial of service through memory… | |
| En análisis | Alta (8.2) | 0.24% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Improper certificate validation in PkixNameConstraintValidator in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows an attacker who controls, or can obtain certificates from, a name-constrained intermediate CA to have certificates accepted during PKIX certification path validation for email addresses, DNS… | |
| En análisis | Alta (8.2) | 0.29% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Release of unverified plaintext in the CCM (CcmBlockCipher) and DSTU 7624 CCM (KCcmBlockCipher) AEAD modes in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote attacker to obtain decryptions of ciphertexts of their choosing via forged messages sent to an application that lets the output buffer of… | |
| En análisis | Alta (8.7) | 0.32% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Uncontrolled recursion in the ASN.1 parser (Asn1InputStream, Asn1StreamParser) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote unauthenticated attacker to cause a denial of service via a crafted ASN.1 encoding of deeply nested constructed elements (for example SEQUENCE inside SEQUENCE, in… | |
| En análisis | Crítica (9.1) | 0.40% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Improper input validation in DHAgreement.CalculateAgreement (MTI/A0 two-pass Diffie-Hellman) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows an on-path attacker to make the local party compute an agreed value the attacker already knows, defeating the key authentication MTI/A0 is meant to provide. It… | |
| En análisis | Alta (8.7) | 0.32% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Allocation of resources without limits or throttling in the CMP/CRMF password-based MAC verifier (PKMacBuilder) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote unauthenticated attacker to cause a denial of service through CPU exhaustion via a CMP message or CRMF certificate request whose… | |
| En análisis | Alta (8.2) | 0.47% | — | Legion OF THE Bouncy Castle INC BC CsharpAI | 2/10/2026 | 2/10/2026 | Observable discrepancy in IesEngine.DecryptBlock in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote attacker who has captured an IES or ECIES ciphertext, and who can submit modified ciphertexts for decryption under the same key pair, to recover its plaintext via a CBC padding-oracle attack,… | |
| En análisis | Alta (8.7) | 0.37% | — | Bouncycastle BC CsharpAI | 2/10/2026 | 2/10/2026 | Memory allocation with excessive size value in the DTLS handshake reassembly (DtlsReliableHandshake, DtlsReassembler) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote unauthenticated DTLS peer to cause a denial of service through memory exhaustion via crafted handshake message fragments,… | |
| En análisis | Alta (8.2) | 0.17% | — | Legion OF THE Bouncy Castle BC CsharpAI | 2/10/2026 | 2/10/2026 | Exposure of the message authentication key through the encryption keystream in the stream mode of IesEngine (an IesEngine constructed without a block cipher) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote attacker who has observed one encrypted message with known plaintext to forge shorter… | |
| En análisis | Alta (8.7) | 0.25% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Missing cryptographic step in the DSTU 7624 CCM mode implementation (KCcmBlockCipher) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows an attacker who can observe encrypted messages of known or chosen content to forge ciphertexts with valid authentication tags, via messages encrypted without… | |
| En análisis | Alta (8.2) | 0.23% | — | Bouncycastle Bc-csharpAI | 2/10/2026 | 2/10/2026 | Improper validation of integrity check value in the AES-CCM implementation (CcmParameters and CcmBlockCipher) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows an on-path attacker to modify CCM-encrypted content without detection via an AlgorithmIdentifier whose CCMParameters declare an authentication… | |
| Aplazada | Alta (8.6) | 0.34% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | AzuraCast before 0.23.4 contains a code injection vulnerability in the ConfigWriter::cleanUpString() method that fails to sanitize Liquidsoap string interpolation sequences, allowing authenticated users with Media or Profile permissions to inject arbitrary Liquidsoap code into station configuration. Attackers can… | |
| Aplazada | Alta (8.7) | 0.37% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | AzuraCast before 0.23.6 contains a code injection vulnerability in the remote relay password field due to incomplete migration from the vulnerable cleanUpString method to toRawString. Attackers with RemoteRelays station permission can inject nested Liquidsoap interpolation syntax to execute arbitrary code in the… | |
| Aplazada | Alta (7.1) | 0.21% | — | AzuracastAI | 27/9/2026 | 30/9/2026 | AzuraCast before 0.23.6 contains a missing permission check vulnerability in the GET /api/station/{station_id}/file/{id}/play endpoint that allows authenticated users to download media files from any station. Attackers can enumerate media files using sequential IDs and exfiltrate the complete media library of stations… | |
| Aplazada | Media (5.3) | 0.16% | — | AzuracastAI | 27/9/2026 | 30/9/2026 | AzuraCast before 0.23.6 lacks RequireInternalConnection middleware on the Liquidsoap API endpoint and incorrectly derives the AutoDJ flag from header presence rather than validated value. Users with View station permission can inject arbitrary now-playing metadata, disrupt live broadcasts, and disclose filesystem… | |
| Aplazada | Alta (8.2) | 0.24% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | In AzuraCast before 0.23.8, the public On-Demand download endpoint fails to verify playlist-level access controls, allowing unauthenticated users to download media files excluded from On-Demand-enabled playlists. Attackers can bypass the station operator's intended access restrictions by directly requesting media via… | |
| Aplazada | Alta (8.7) | 3.7% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | AzuraCast before 0.23.8 contains a command injection vulnerability in the Liquidsoap config generation for live recording that fails to quote the streamer username in process.run calls. Authenticated station users with Streamers and Profile permissions can set a username containing shell metacharacters and trigger… | |
| Aplazada | Alta (7.2) | 0.21% | — | AzuracastAI | 27/9/2026 | 30/9/2026 | AzuraCast before 0.23.8 contains a broken access control vulnerability in the GET /api/station/{id}/vue/profile endpoint that allows authenticated users with only View Station Page permission to read Icecast/Shoutcast admin, source, and relay passwords. Attackers with View-only access can call this endpoint and… | |
| Aplazada | Media (4.8) | 0.22% | — | AzuracastAI | 27/9/2026 | 30/9/2026 | AzuraCast before 0.23.8 contains a server-side request forgery and local file read vulnerability in the AutoDJ remote playlist fetch (backend/src/Radio/AutoDJ/QueueBuilder.php, getMediaFromRemoteUrl()). A user with the station Media permission can create or update a playlist with source=remote_url and… | |
| Aplazada | Alta (7.1) | 0.24% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | AzuraCast is a self-hosted web radio management suite. In AzuraCast before 0.23.8, the station webhook URL validation in AbstractConnector::getValidUrl() (backend/src/Webhook/Connector/AbstractConnector.php), used by the Generic and Discord webhook connectors, rejects only URLs whose host is a literal link-local IP… | |
| Aplazada | Alta (7.1) | 0.18% | — | AzuracastAI | 27/9/2026 | 28/9/2026 | AzuraCast (Composer package azuracast/azuracast) before 0.23.8 validates a station's "Remote Relay" URL only for URL syntax and an http/https scheme (Utilities\Urls::parseUserUrl, used by StationRemote::getUrlAsUri) and performs no host or IP address restriction. A user holding only the station-scoped RemoteRelays… | |
| Aplazada | Alta (8.7) | 0.26% | — | AzuracastAI | 27/9/2026 | 30/9/2026 | AzuraCast before 0.23.8 contains a DQL injection vulnerability in the sortOrder API parameter of AbstractSearchableListAction.php. Attackers can inject arbitrary DQL expressions through the sortOrder parameter to extract sensitive database information including user credentials and station settings. | |
| Aplazada | Alta (7.5) | 0.30% | — | Wellav WES Emergency Broadcast TerminalAI | 25/9/2026 | 30/9/2026 | An issue in Wellav Technologies Co., Ltd Wellav WES Emergency Broadcast Terminal WES100, WES270, WES280, and WES290 before 08-08-2023 allows a remote attacker to obtain sensitive information via the global API request wrapper function | |
| Aplazada | Media (6.5) | 0.17% | — | Podcast ImporterAI | 23/9/2026 | 23/9/2026 | Contributor Cross Site Scripting (XSS) in Podcast Importer SecondLine <= 1.5.6 versions. |