Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2624▼ 224 respecto a la semana anterior
Críticas / altas1373▲ 143 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
259 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.6) | 0.75% | — | Github Enterprise ServerAI | 17/7/2026 | 17/7/2026 | A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker who had code execution inside the Dependabot updater container to write files to arbitrary repository paths, including GitHub Actions workflow files under .github/workflows/ as the path validation did not check the… | |
| Aplazada | Media (5.7) | 0.64% | — | Github Enterprise ServerAI | 17/7/2026 | 17/7/2026 | A denial of service vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to cause service disruption by supplying a repository release notes configuration file containing deeply nested YAML. When release notes were generated, the configuration file was parsed without a nesting… | |
| Aplazada | Alta (8.8) | 0.46% | — | Github ActionsAIMaaassistantarknightsAI | 15/7/2026 | 12/8/2026 | MaaAssistantArknights is a one-click tool for daily Arknights tasks. In the current dev-v2 workflow, .github/workflows/release-preparation.yml inlined attacker-controlled github.event.pull_request.title into a run: shell command during the pull_request opened, reopened, and ready_for_review events, so a non-draft fork… | |
| Analizada | Alta (7.8) | 0.36% | — | Microsoft Github Copilot | 14/7/2026 | 22/7/2026 | Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally. | |
| Pendiente de análisis | Media (4.4) | 0.33% | — | Github CLIAIGithub CodespaceAIMicrosoft Visual Studio CodeAI | 9/7/2026 | 14/7/2026 | GitHub CLI (gh) is GitHub’s official command line tool. From 2.10.0 through 2.95.0, connecting to a malicious Codespace with gh codespace jupyter can allow command execution because the command opens a JupyterLab URL supplied by a process inside the Codespace without validating that it is a loopback HTTP or HTTPS… | |
| Analizada | Media (5.3) | 0.43% | — | Github Enterprise Server | 1/7/2026 | 6/7/2026 | An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a user-to-server token scoped to a GitHub App installation to perform certain write operations on public repositories outside the token's intended scope. This was possible because the authorization check only verified that… | |
| Analizada | Media (6.3) | 0.32% | — | Github Enterprise Server | 30/6/2026 | 2/7/2026 | A stored cross-site scripting vulnerability was identified in GitHub Enterprise Server that allowed an authenticated attacker to execute arbitrary JavaScript in another user's browser by injecting a crafted payload into the title of a Discussion in the Q&A category. The AnsweredQuestionStructuredDataComponent did not… | |
| Analizada | Media (6) | 0.41% | — | Github Enterprise Server | 30/6/2026 | 2/7/2026 | — | |
| Analizada | Media (4.8) | 0.36% | — | Github Enterprise Server | 30/6/2026 | 2/7/2026 | A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed an OAuth application to gain unintended access to an organization's runner management. An attacker could exploit this by creating an OAuth application requesting the manage_runners:org scope and directing a victim user to… | |
| Aplazada | Crítica (9.2) | 0.72% | — | GitlabAIGiteaAIForgejoAIGithubAI+2 | 30/6/2026 | 14/7/2026 | Woodpecker before 3.15.0 matches the ApprovalAllowedUsers bypass list against pipeline.Author. For the GitLab forge driver, pipeline.Author is populated from the git commit author name (commit.author.name) carried in the webhook payload, which is attacker-controlled and not verified by GitLab. A user who can open a… | |
| Aplazada | Media (6) | 0.21% | — | Github MCP ServerAI | 26/6/2026 | 27/6/2026 | GitHub MCP Server is GitHub's official MCP Server. From 0.22.0 until 1.1.2, when running in HTTP mode with --lockdown-mode enabled, the RepoAccessCache is implemented as a process-global singleton initialized with the first authenticated user's GraphQL client. All subsequent requests from different users share this… | |
| Analizada | Media (4.3) | 0.28% | — | Jenkins Github Branch Source | 24/6/2026 | 26/6/2026 | A missing permission check in Jenkins GitHub Branch Source Plugin 1967.1969.v205fd594c821 and earlier allows attackers with Overall/Read permission to obtain the URLs of GitHub Enterprise servers configured in the global plugin configuration. | |
| Analizada | Alta (7.5) | 1.2% | — | Microsoft Github Copilot | 22/6/2026 | 30/6/2026 | GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fetch_webpage. Therefore, exfiltration could occur if there is indirect prompt injection. | |
| Analizada | Alta (7.5) | 0.92% | — | Microsoft Github Copilot Chat | 19/6/2026 | 17/8/2026 | Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | |
| Aplazada | Baja (2.2) | 0.09% | — | Github WorkflowsAI | 17/6/2026 | 22/6/2026 | The github_workflows module constructs local directory paths from user-controlled repository names without validating for symlinks. A local attacker sharing the scan directory can plant a symlink at the predictable output path, causing workflow data to be written to an attacker-chosen location. | |
| Aplazada | Alta (8.5) | 1.4% | — | KanadojoAIGithub ActionsAI | 11/6/2026 | 14/7/2026 | KanaDojo contains a command injection vulnerability that allows an attacker with pull request access to execute arbitrary shell commands by inserting shell metacharacters into the version or changes fields of patchNotesData.json, which are interpolated unsanitized into a child_process.execSync() call in the… | |
| Aplazada | Crítica (10) | 0.44% | — | Cloudpirates Open Source Helm ChartsAIGithub ActionsAI | 1/6/2026 | 22/7/2026 | CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (generate-schema.yaml) exposes sensitive credentials (Personal Access Token and SSH signing key) to fork-controlled code due to unsafe checkout and credential handling practices. This issue has been… | |
| Aplazada | Crítica (10) | 0.44% | — | Cloudpirates Open Source Helm ChartsAIGithub ActionsAI | 1/6/2026 | 22/7/2026 | CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (pull-request.yaml) executes attacker-controlled code from fork pull requests in a privileged context, exposing repository secrets including Docker Hub credentials and tokens without requiring… | |
| Analizada | Crítica (9.1) | 0.45% | — | Github CLI | 29/5/2026 | 21/7/2026 | GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.93.0, GitHub CLI incorrectly includes authorization header in API requests to TUF repository mirrors via gh attestation, gh release verify, and gh release verify-asset commands. The CLI uses a shared HTTP client with an authentication layer that… | |
| Pendiente de análisis | Alta (8.2) | 0.32% | — | Espressif Shared Github DangerjsAI | 28/5/2026 | 17/6/2026 | Espressif Shared GitHub DangerJS is a reusable GitHub Action CI DangerJS workflow for Espressif GitHub projects. Prior to 1.0.1, the action's entrypoint.sh invoked DangerJS from the caller's workspace after copying the fork's checkout into it, creating an untrusted search path for both binary resolution and Node.js… | |
| Aplazada | Crítica (9.3) | 1.3% | — | Github ActionsAISherlockAI | 27/5/2026 | 17/6/2026 | Sherlock hunts down social media accounts by username across social networks. Prior to 0.16.1, the GitHub Actions workflow validate_modified_targets.yml is vulnerable to command injection via the pull_request_target trigger. Any GitHub user can execute arbitrary commands on the CI runner and exfiltrate the… | |
| Analizada | Media (4.3) | 0.14% | — | Kostyasha Github Integration | 27/5/2026 | 17/6/2026 | A cross-site request forgery (CSRF) vulnerability in Jenkins GitHub Integration Plugin 0.7.3 and earlier allows attackers to attackers to trigger a build for a pull request. | |
| Aplazada | Media (6.4) | 0.32% | — | Github ShortcodeAI | 27/5/2026 | 17/6/2026 | The Github Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'repo' shortcode attribute in the 'github' shortcode in all versions up to, and including, 0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with… | |
| Modificada | Crítica (9.2) | 0.59% | — | Github Enterprise Server | 27/5/2026 | 23/7/2026 | A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload endpoint. By injecting path traversal content into request parameters, an… | |
| Analizada | Alta (7) | 0.70% | — | Github Enterprise Server | 27/5/2026 | 23/7/2026 | A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an attacker to cause the server to issue HTTP requests to internal services via the security advisories package lookup feature. By directing requests to an internal management service and measuring response… |