Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
1811 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.5) | 0.18% | — | Wpforms LiteAI | 28/9/2026 | 28/9/2026 | The WPForms Lite WordPress plugin from 1.5.0.1 to 2.0.2 does not remove shortcode delimiters from submitted field values before writing them back into the rendered form, allowing unauthenticated users to execute arbitrary shortcodes registered on the site and read the details of attachments belonging to non-public… | |
| Pendiente de análisis | Alta (8.7) | 0.27% | — | LitellmAI | 25/9/2026 | 1/10/2026 | BerriAI LiteLLM before 1.101.0-rc.1 contains a tenant isolation bypass vulnerability in the semantic cache layer that allows authenticated users to read other tenants' cached responses by exploiting a metadata key mismatch between _get_semantic_cache_tenant_scope() and _get_metadata_variable_name(). Attackers holding… | |
| Aplazada | Media (4.3) | 0.16% | — | MailerliteAI | 24/9/2026 | 24/9/2026 | The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the forms() method of the AdminController class in all versions up to, and including, 1.7.21. This makes it possible for authenticated attackers, with Contributor-level… | |
| Aplazada | Media (4.7) | 0.38% | — | Litespeedtech Litespeed CacheAI | 19/9/2026 | 21/9/2026 | The LiteSpeed Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'esi' parameter in all versions up to, and including, 7.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that… | |
| Aplazada | Media (6.4) | 0.19% | — | Real3d Flipbook LiteAI | 19/9/2026 | 21/9/2026 | The Real3D Flipbook Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lightboxtext' shortcode attribute (and other unsanitized attributes handled by on_shortcode()) in versions up to, and including, 5.1.1. This is due to insufficient input sanitization and output escaping in the… | |
| Aplazada | Alta (7.2) | 0.46% | — | Vjinfotech WP Import Export LiteAI | 19/9/2026 | 21/9/2026 | The WP Import Export Lite WordPress plugin before 3.9.35 does not verify that the user running an import is permitted to create or modify user accounts and assign roles, allowing users granted a delegated WP Import Export Lite WordPress plugin before 3.9.35 permission, who cannot otherwise manage users, to create… | |
| Aplazada | Alta (7.5) | 0.61% | — | VendureAIBetter-sqlite3AISql.js SqljsAI | 17/9/2026 | 17/9/2026 | Vendure is an open-source headless commerce platform. Prior to 3.6.5, the public Shop GraphQL API allows an unauthenticated caller to supply a catastrophically backtracking pattern through StringOperators.regex. packages/core/src/service/helpers/list-query-builder/parse-filter-params.ts passes the raw pattern to the… | |
| Aplazada | Alta (7.6) | 0.38% | — | Wplab Wp-lister Lite FOR EbayAI | 17/9/2026 | 17/9/2026 | Shop manager SQL Injection in WP-Lister Lite for eBay <= 3.8.11 versions. | |
| Aplazada | Crítica (10) | 0.86% | — | Migratico LiteAI | 17/9/2026 | 19/9/2026 | Unauthenticated Remote Code Execution (RCE) in Migratico Lite <= 2.6.8 versions. | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Cologne FirmwareQualcomm Congo FirmwareQualcomm Cq7790 FirmwareQualcomm Cq7790m Firmware+71 | 17/9/2026 | 22/9/2026 | Transient DOS while parsing frame during channel usage. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Memory Corruption when validating large data buffers from external sources using addition to check buffer length. | |
| Analizada | Alta (7.3) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Information Disclosure when a pointer is reused after being deallocated. | |
| Analizada | Alta (8.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size. | |
| Analizada | Alta (7.9) | 0.06% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Transient DOS when processing unverified data from a neighboring system causes out of bound memory access. | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Wsa8845h FirmwareQualcomm Cologne FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 Firmware+16 | 17/9/2026 | 22/9/2026 | Memory corruption when processing escape handling flow with insufficient user buffer sizes. | |
| Analizada | Alta (7.5) | 0.19% | — | Qualcomm Q-7790 FirmwareQualcomm Qam8255p FirmwareQualcomm Qam8295p FirmwareQualcomm Qamsrv1h Firmware+372 | 17/9/2026 | 22/9/2026 | Transient DOS when processing authentication frames with invalid FILS information element header lengths. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+20 | 17/9/2026 | 22/9/2026 | Memory corruption while processing rear sensor IOCTL calls. | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Ar8035 FirmwareQualcomm C110100 FirmwareQualcomm Cologne FirmwareQualcomm Cq7790 Firmware+148 | 17/9/2026 | 22/9/2026 | Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled. | |
| Analizada | Alta (7) | 0.06% | — | Qualcomm Wsa8845h FirmwareQualcomm Aqt1000 FirmwareQualcomm Cologne FirmwareQualcomm Fastconnect 6200 Firmware+39 | 17/9/2026 | 22/9/2026 | Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Iqx5121 FirmwareQualcomm Iqx7181 FirmwareQualcomm Qca0000 FirmwareQualcomm Qcm5430 Firmware+21 | 17/9/2026 | 22/9/2026 | Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Iqx5121 Firmware+10 | 17/9/2026 | 22/9/2026 | Memory corruption when processing decode statistics due to insufficient validation of offset against structure size. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Sc8380xp Firmware+10 | 17/9/2026 | 22/9/2026 | Memory Corruption when copying large input data exceeds normal allocation limits. | |
| Aplazada | Crítica (9.8) | 0.40% | — | Zenith Satellite TrackerAI | 16/9/2026 | 22/9/2026 | A Server-Side Request Forgery vulnerability exists in sat_proxy.php in Zenith Satellite Tracker 1.0. The script accepts an attacker-controlled address URL parameter and passes it to curl_setopt(CURLOPT_URL) without host or scheme validation. An unauthenticated remote attacker can leverage this to make arbitrary HTTP… | |
| Pendiente de análisis | Media (5.3) | 0.44% | — | LitellmAI | 16/9/2026 | 30/9/2026 | LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.9, an authenticated LiteLLM Proxy caller with a valid virtual key can place api_base inside the user_config request body to bypass is_request_body_safe, which blocks top-level api_base and base_url but previously did… |