Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
79 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.2) | 0.45% | — | Gnome LibsoupRedhat Enterprise Linux | 26/3/2026 | 17/6/2026 | A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling… | |
| Analizada | Crítica (9.1) | 0.42% | — | Gnome Libsoup | 19/3/2026 | 17/6/2026 | A flaw was found in libsoup. An integer underflow vulnerability occurs when processing content with a zero-length resource, leading to a buffer overread. This can allow an attacker to potentially access sensitive information or cause an application level denial of service. | |
| Modificada | Alta (7.5) | 1.3% | — | Gnome LibsoupRedhat Enterprise Linux | 17/3/2026 | 17/6/2026 | A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting… | |
| Analizada | Media (6.5) | 0.31% | — | Gnome LibsoupRedhat Enterprise Linux | 17/3/2026 | 17/6/2026 | A flaw was found in libsoup. An attacker controlling the value used to set the Content-Type header can inject a Carriage Return Line Feed (CRLF) sequence due to improper input sanitization in the `soup_message_headers_set_content_type()` function. This vulnerability allows for the injection of arbitrary header-value… | |
| Analizada | Media (6.5) | 0.37% | — | Gnome LibsoupRedhat Enterprise Linux | 17/3/2026 | 17/6/2026 | A flaw was found in libsoup. A remote attacker, by controlling the method parameter of the `soup_message_new()` function, could inject arbitrary headers and additional request data. This vulnerability, known as CRLF (Carriage Return Line Feed) injection, occurs because the method value is not properly escaped during… | |
| Analizada | Media (5.5) | 0.35% | — | Gnome LibsoupRedhat Enterprise Linux | 17/3/2026 | 17/6/2026 | A flaw was found in libsoup, a library used by applications to send network requests. This vulnerability occurs because libsoup does not properly validate hostnames, allowing special characters to be injected into HTTP headers. A remote attacker could exploit this to perform HTTP smuggling, where they can send hidden,… | |
| Analizada | Alta (7.3) | 0.48% | — | Gnome LibsoupRedhat Enterprise Linux | 12/3/2026 | 17/6/2026 | A flaw was found in Libsoup. The server-side digest authentication implementation in the SoupAuthDomainDigest class does not properly track issued nonces or enforce the required incrementing nonce-count (nc) attribute. This vulnerability allows a remote attacker to capture a single valid authentication header and… | |
| Modificada | Media (5.3) | 0.46% | — | Gnome LibsoupRedhat Enterprise Linux | 13/2/2026 | 17/6/2026 | A flaw was identified in libsoup, a widely used HTTP library in GNOME-based systems. When processing specially crafted HTTP Range headers, the library may improperly validate requested byte ranges. In certain build configurations, this could allow a remote attacker to access portions of server memory beyond the… | |
| Analizada | Media (6.5) | 0.43% | 💥 PoC | Gnome LibsoupRedhat Enterprise Linux | 3/2/2026 | 17/6/2026 | A flaw was found in libsoup, an HTTP client/server library. This HTTP Request Smuggling vulnerability arises from non-RFC-compliant parsing in the soup_filter_input_stream_read_line() logic, where libsoup accepts malformed chunk headers, such as lone line feed (LF) characters instead of the required carriage return… | |
| Aplazada | Alta (8.6) | 1.1% | — | LibsoupAI | 2/2/2026 | 15/7/2026 | A flaw was found in libsoup. This stack-based buffer overflow vulnerability occurs during the parsing of multipart HTTP responses due to an incorrect length calculation. A remote attacker can exploit this by sending a specially crafted multipart HTTP response, which can lead to memory corruption. This issue may result… | |
| Analizada | Media (5.8) | 0.28% | — | Gnome LibsoupRedhat Enterprise Linux | 28/1/2026 | 17/6/2026 | A flaw was found in the libsoup HTTP library that can cause proxy authentication credentials to be sent to unintended destinations. When handling HTTP redirects, libsoup removes the Authorization header but does not remove the Proxy-Authorization header if the request is redirected to a different host. As a result,… | |
| Analizada | Media (5.3) | 0.35% | — | Gnome LibsoupRedhat Enterprise Linux | 28/1/2026 | 17/6/2026 | A flaw was found in libsoup. An attacker who can control the input for the Content-Disposition header can inject CRLF (Carriage Return Line Feed) sequences into the header value. These sequences are then interpreted verbatim when the HTTP request or response is constructed, allowing arbitrary HTTP headers to be… | |
| Analizada | Media (5.3) | 0.37% | — | Gnome LibsoupRedhat Enterprise Linux | 27/1/2026 | 17/6/2026 | A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted… | |
| Aplazada | Media (4.8) | 0.39% | — | LibsoupAI | 13/1/2026 | 16/9/2026 | A flaw was found in libsoup’s WebSocket frame processing when handling incoming messages. If a non-default configuration is used where the maximum incoming payload size is unset, the library may read memory outside the intended bounds. This can cause unintended memory exposure or a crash. Applications using libsoup’s… | |
| Aplazada | Alta (8.6) | 0.61% | — | Gnome LibsoupAI | 8/1/2026 | 15/7/2026 | A flaw was identified in the NTLM authentication handling of the libsoup HTTP library, used by GNOME and other applications for network communication. When processing extremely long passwords, an internal size calculation can overflow due to improper use of signed integers. This results in incorrect memory allocation… | |
| Aplazada | Alta (8.2) | 0.54% | — | LibsoupAI | 11/12/2025 | 30/9/2026 | A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing. Common front proxies often honor the first Host: header, so this mismatch can cause vhost confusion where a proxy routes a request to one backend but the backend interprets it… | |
| Aplazada | Alta (7.5) | 0.46% | — | LibsoupAIGnomeAIWebkitAI | 23/10/2025 | 30/6/2026 | A flaw was found in the asynchronous message queue handling of the libsoup library, widely used by GNOME and WebKit-based applications to manage HTTP/2 communications. When network operations are aborted at specific timing intervals, an internal message queue item may be freed twice due to missing state… | |
| Aplazada | Alta (7.5) | 0.64% | — | Gnome LibsoupAI | 26/9/2025 | 29/6/2026 | A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of… | |
| Aplazada | Media (5.9) | 0.45% | — | Gnome LibsoupAI | 3/9/2025 | 30/6/2026 | A flaw was found in libsoup’s caching mechanism, SoupCache, where the HTTP Vary header is ignored when evaluating cached responses. This header ensures that responses vary appropriately based on request headers such as language or authentication. Without this check, cached content can be incorrectly reused across… | |
| Rechazada | Sin puntuar | — | — | Gnome LibsoupAI | 25/7/2025 | 14/8/2025 | Rejected reason: Maintainers have included reasons at https://gitlab.gnome.org/GNOME/libsoup/-/issues/465 | |
| Rechazada | Sin puntuar | — | — | Gnome LibsoupAI | 10/7/2025 | 15/7/2025 | Rejected reason: Upon investigtion upstream maintainers discovered this was not a real issue. See the references for more details. See: https://gitlab.gnome.org/GNOME/libsoup/-/issues/430#note_2494090. | |
| Aplazada | Media (6.5) | 0.87% | — | Gnome LibsoupAI | 21/5/2025 | 30/6/2026 | A vulnerability was found in the libsoup package. This flaw stems from its failure to correctly verify the termination of multipart HTTP messages. This can allow a remote attacker to send a specially crafted multipart HTTP body, causing the libsoup-consuming server to read beyond its allocated memory boundaries… | |
| Aplazada | Baja (3.7) | 0.67% | — | Gnome LibsoupAI | 19/5/2025 | 30/6/2026 | A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker… | |
| Aplazada | Alta (7.5) | 0.78% | — | Gnome LibsoupAI | 19/5/2025 | 30/6/2026 | A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can… | |
| Aplazada | Media (4.3) | 0.38% | 💥 PoC | Gnome LibsoupAI | 16/5/2025 | 30/6/2026 | A denial-of-service vulnerability has been identified in the libsoup HTTP client library. This flaw can be triggered when a libsoup client receives a 401 (Unauthorized) HTTP response containing a specifically crafted domain parameter within the WWW-Authenticate header. Processing this malformed header can lead to a… |