Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2632▼ 455 respecto a la semana anterior
Críticas / altas1285▼ 65 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)235▼ 275 respecto a la semana anterior
–

238 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.6)0.35%—IBM ContextforgeAI14/9/202630/9/2026
ContextForge is an AI gateway, registry, and proxy that provides centralized discovery, guardrails, and management for MCP, A2A, and REST or gRPC APIs. Prior to 1.0.3, the /admin/gateways/test call site in mcpgateway/admin.py calls validate_gateway_test_url() in mcpgateway/common/validators.py to resolve and reject…
AplazadaMedia (4.3)0.18%—ForgejoAI13/9/202622/9/2026
Forgejo 13.0.0 through 16.0.4, when "[federation] ENABLED = true" is set, has a spoofing issue that affects identity integrity but does not allow account takeover or content modification. It does not verify that the HTTP Signature on an incoming ActivityPub activity was produced by the key belonging to the actor named…
AplazadaBaja (3.5)0.23%—ForgejoAI11/9/202622/9/2026
Forgejo before 16.0.4 allows use of restricted API tokens for unintended access to the "allow maintainer edit" feature.
AnalizadaCrítica (9.8)0.58%—IBM Contextforge10/9/202616/9/2026
IBM ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain administrative access due to the use of default credentials.
AplazadaCrítica (9.9)0.85%—ForgejoAI10/9/202622/9/2026
Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled.
AnalizadaAlta (7.4)0.26%—IBM Contextforge4/9/202615/9/2026
IBM ContextForge MCP Gateway - Translate utility <= 1.0.8 MCP Context Forge could allow a remote attacker to obtain sensitive information from other sessions due to exposure of data elements to the wrong session.
AnalizadaAlta (8.8)0.33%—IBM Contextforge4/9/202615/9/2026
IBM ContextForge MCP Gateway <= v1.0.7 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive credentials and escalate privileges due to improper validation of jq filters.
AnalizadaCrítica (9.6)0.37%—IBM Contextforge4/9/202615/9/2026
IBM ContextForge MCP Gateway could allow a remote authenticated attacker to obtain sensitive information due to server-side request forgery via DNS rebinding.
AnalizadaAlta (7.7)0.34%—IBM Contextforge4/9/202615/9/2026
IBM ContextForge MCP Gateway (`mcp-contextforge-gateway`) <= v1.0.6 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive information due to a DNS rebinding vulnerability during tool invocation.
AplazadaAlta (8.7)0.33%—Node-forgeAI3/9/202624/9/2026
node-forge through 1.4.0 fails to validate element count in nested DigestAlgorithm sequences during RSA PKCS#1 v1.5 signature verification. Attackers can embed garbage bytes inside the DigestAlgorithm sequence to forge valid signatures for arbitrary messages using low-exponent RSA keys. This is an incomplete fix for…
AplazadaCrítica (9.8)0.48%—BricksforgeAI3/9/20263/9/2026
Subscriber Privilege Escalation in Bricksforge <= 3.1.8.8 versions.
AplazadaBaja (2.1)0.37%—ForgejoAI30/8/202631/8/2026
A vulnerability was found in Forgejo up to 15.0.4. This issue affects the function net.LookupIP of the file services/migrations/allowlist/is_migrate_allowed.go of the component Repository Migration Handler. Performing a manipulation results in server-side request forgery. The attack can be initiated remotely. The…
AplazadaAlta (8.1)0.38%—BricksforgeAI10/8/202626/8/2026
The BricksForge WordPress plugin before 3.1.8.8 does not verify the identity of the requester when processing a password change submitted through one of its form actions, allowing unauthenticated attackers to set an arbitrary password for any user, including administrators, and take over their account. Exploitation…
AplazadaBaja (2.1)0.50%—Monomythdevelopment La-forge-mcpAI6/8/202612/8/2026
A security vulnerability has been detected in MonomythDevelopment la-forge-mcp 1.0.0. This issue affects the function screenshotElement of the file src/index.ts of the component screenshot_element Tool. Such manipulation of the argument output_name leads to path traversal. The attack can be executed remotely.…
AplazadaAlta (8.4)0.20%—Tailcallhq ForgecodeAI17/7/202617/7/2026
ForgeCode (tailcallhq/forgecode), an AI pair-programming CLI, automatically loads and executes the MCP servers defined in a repository's .mcp.json file on startup without user confirmation. A malicious repository can supply a crafted .mcp.json whose mcpServers entries specify arbitrary command and args values (for…
AplazadaCrítica (9.8)0.51%—BricksforgeAI17/7/202621/7/2026
The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validation of the fieldIds parameter in the Pro Forms registration action, which allows attacker-supplied field IDs to be added to the trusted form-field whitelist. This…
AplazadaBaja (2.1)0.35%—ForgejoAI2/7/20266/7/2026
Forgejo before 15.0.3 contains a stored cross-site scripting vulnerability that allows authenticated attackers to execute arbitrary JavaScript in other users' browsers by setting a full name containing an HTML payload and triggering an Actions run. When the DEFAULT_SHOW_FULL_NAME option is enabled, the run description…
AplazadaCrítica (9.2)0.72%—GitlabAIGiteaAIForgejoAIGithubAI+230/6/202614/7/2026
Woodpecker before 3.15.0 matches the ApprovalAllowedUsers bypass list against pipeline.Author. For the GitLab forge driver, pipeline.Author is populated from the git commit author name (commit.author.name) carried in the webhook payload, which is attacker-controlled and not verified by GitLab. A user who can open a…
AplazadaMedia (5.4)0.29%—Designsandcode Forget About Shortcode ButtonsAI26/6/20265/10/2026
Contributor Broken Access Control in Forget About Shortcode Buttons <= 2.1.3 versions.
AplazadaAlta (7.5)0.42%—BricksforgeAI17/6/202617/6/2026
Unauthenticated Sensitive Data Exposure in Bricksforge <= 3.1.8.4 versions.
Pendiente de análisisCrítica (9.1)3.6%—Meig Smart Forge Slt711AIGoaheadAI5/5/20265/7/2026
The GoAhead web server on MeiG Smart FORGE_SLT711 devices (firmware MDM9607.LE.1.0-00110-STD.PROD-1) allows unauthenticated OS command injection via the /action/SetRemoteAccessCfg endpoint.
Pendiente de análisisMedia (6.9)0.24%—Pingidentity PingidmAIForgerock Identity ManagementAI7/4/202624/7/2026
An insufficient granularity of access control vulnerability exists in PingIDM (formerly ForgeRock Identity Management) where administrators cannot properly configure access rules for Remote Connector Servers (RCS) running in client mode. This means attackers can spoof a client-mode RCS (if one exists) to intercept…
ModificadaCrítica (9.1)0.50%—Digitalbazaar Forge27/3/20264/9/2026
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, `pki.verifyCertificateChain()` does not enforce RFC 5280 basicConstraints requirements when an intermediate certificate lacks both the `basicConstraints` and `keyUsage` extensions. This allows…
ModificadaAlta (7.5)0.47%—Digitalbazaar Forge27/3/20264/9/2026
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, Ed25519 signature verification accepts forged non-canonical signatures where the scalar S is not reduced modulo the group order (`S >= L`). A valid signature and its `S + L` variant both…
ModificadaAlta (7.5)0.45%—Digitalbazaar Forge27/3/202610/9/2026
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in…