Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

36 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.58%—Ansys Spaceclaim15/9/202217/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of X_B files. The…
ModificadaAlta (7.8)0.62%—Ansys Spaceclaim15/9/202217/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of SKP files. The…
ModificadaAlta (7.8)0.62%—Ansys Spaceclaim15/9/202217/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of X_B files. The…
ModificadaAlta (7.8)0.54%—Ansys Spaceclaim15/9/202217/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JT files. The…
ModificadaAlta (7.8)0.48%—Ansys Spaceclaim15/9/202217/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JT files. The…
AnalizadaAlta (8.1)18%⚠ Explotación activaAcclaimsystems Usaherds21/12/202117/6/2026
Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.
ModificadaMedia (4.3)1.6%—Jenkins Claim24/2/202117/6/2026
A cross-site request forgery (CSRF) vulnerability in Jenkins Claim Plugin 2.18.1 and earlier allows attackers to change claims.
ModificadaMedia (5.4)9.4%—Jenkins Claim24/2/202117/6/2026
Jenkins Claim Plugin 2.18.1 and earlier does not escape the user display name, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers who are able to control the display names of Jenkins users, either via the security realm, or directly inside Jenkins.
ModificadaCrítica (9.8)1.4%—Youracclaim Acclaim23/8/201917/6/2026
The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records.
ModificadaAlta (7.5)7.9%—Christianwebministries Proclaim22/2/201817/6/2026
Backup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.
ModificadaCrítica (9.8)8.1%—Christianwebministries Proclaim22/2/201817/6/2026
Arbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla! via a mediafileform action.