Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
307 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (4.8) | 0.15% | — | PyjwtAINetflix LemurAI | 18/8/2026 | 8/9/2026 | Lemur manages TLS certificate creation. Prior to 1.9.2, the JWT verifier in lemur/auth/service.py:130-137 used fetch_token_header to read header_data["alg"] from an unverified token and passed that attacker-controlled value to decode_with_multiple_secrets. PyJWT 2.x rejects alg=none with the configured key, so the… | |
| Aplazada | Media (4.9) | 0.29% | — | Netflix LemurAI | 18/8/2026 | 8/9/2026 | Lemur manages TLS certificate creation. Prior to 1.9.2, lemur.users.service.update assigned a replacement password directly to users.password, while lemur/users/models.py registered User.hash_password only for the before_insert event. Because no before_update listener ran, administrator-initiated password changes… | |
| Aplazada | Media (6.3) | 0.22% | — | Netflix LemurAI | 18/8/2026 | 8/9/2026 | Lemur manages TLS certificate creation. Prior to 1.9.2, PUT /api/1/roles/ in lemur/roles/views.py:298 authorized updates with RoleMemberPermission(role_id), which allowed either an administrator or any existing member of the target role. The handler passed data["users"] and data["name"] to service.update, allowing a… | |
| Aplazada | Media (6.3) | 0.22% | — | Netflix LemurAI | 18/8/2026 | 8/9/2026 | Lemur manages TLS certificate creation. Prior to 1.9.2, lemur/certificates/verify.py accepted CRL Distribution Point and OCSP responder URLs from uploaded certificate extensions and used them in crl_verify and ocsp_verify without adequate destination validation. An authenticated operator could submit a certificate… | |
| Aplazada | Alta (8.8) | 0.33% | — | Mattrobenolt Flask PrincipalAINetflix LemurAIPalletsprojects FlaskAI | 18/8/2026 | 16/9/2026 | Lemur manages TLS certificate creation. Prior to 1.9.1, StrictRolePermission and AuthorityCreatorPermission in lemur/auth/permissions.py call flask_principal.Permission.__init__() with zero Need objects when ADMIN_ONLY_AUTHORITY_CREATION and LEMUR_STRICT_ROLE_ENFORCEMENT are unset because both flags default to False.… | |
| Aplazada | Baja (2.1) | 0.47% | — | Calix GigaspireAI | 13/8/2026 | 14/8/2026 | A vulnerability has been found in Calix GigaSpire 26.1.0. The affected element is an unknown function of the file traceroute.cmd. The manipulation leads to denial of service. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this… | |
| Aplazada | Baja (2.1) | 0.47% | 💥 PoC | Calix GigaspireAI | 13/8/2026 | 14/8/2026 | A flaw has been found in Calix GigaSpire 26.1.0. Impacted is an unknown function of the file utilities_configurationsave.cgi of the component Web Management Interface. Executing a manipulation of the argument sessionKey can lead to denial of service. The attack can be launched remotely. The exploit has been published… | |
| Analizada | Media (5.9) | 0.40% | — | Elixir-ecto Postgrex | 7/8/2026 | 17/8/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in elixir-ecto postgrex allows SQL Injection via the :comment option of Postgrex.stream/4. An attacker who can influence that value can close the comment delimiter with */ and extend the streamed statement with their own… | |
| Aplazada | Baja (1.9) | 0.21% | — | Blix Email Blue Mail Calendar APPAIReact Native Receive Sharing IntentAI | 3/8/2026 | 12/8/2026 | A vulnerability was detected in Blix Email Blue Mail Calendar App 2.2.305. Impacted is the function FileDirectory.getDataColumn/FileDirectory.getFileFromUri of the component react-native-receive-sharing-intent. The manipulation of the argument _display_name results in path traversal. The attack is only possible with… | |
| Aplazada | Media (6.3) | 0.52% | — | Elixir MintAI | 16/7/2026 | 16/7/2026 | Inconsistent interpretation of HTTP requests (HTTP response smuggling) vulnerability in elixir-mint mint allows a malicious HTTP/1 server to desynchronize a strict intermediary and the Mint client on the same pooled connection, enabling response-queue poisoning against subsequent requests that share the connection.… | |
| Aplazada | Media (6.3) | 0.50% | — | Elixir-mint MintAI | 14/7/2026 | 15/7/2026 | Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP/2 server to exhaust memory on the client host and cause a denial of service. The Mint.HTTP2.handle_continuation/3 function in lib/mint/http2.ex accumulates the header-block fragment carried by each HTTP/2 CONTINUATION frame… | |
| Aplazada | Alta (8.2) | 0.50% | — | Elixir MintAI | 14/7/2026 | 15/7/2026 | Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP server to exhaust memory on the client host and cause a denial of service. The Mint.HTTP1.decode_headers/5 and Mint.HTTP1.decode_trailer_headers/4 functions in lib/mint/http1.ex accumulate every parsed response header and… | |
| Aplazada | Media (5.3) | 0.29% | — | Sovlix MeetinghubAI | 13/7/2026 | 13/7/2026 | Missing Authorization vulnerability in Sovlix MeetingHub meetinghub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MeetingHub: from n/a through <= 1.25.10. | |
| Modificada | Alta (8.8) | 0.50% | 💥 PoC | Ollyo Helix Ultimate | 13/7/2026 | 23/7/2026 | Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion. | |
| Modificada | Alta (8.7) | 0.25% | 💥 PoC | Ollyo Helix Ultimate | 13/7/2026 | 23/7/2026 | Joomla Extension - joomshaper.com - Unauthenticated stored XSS in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated stored XSS. | |
| Aplazada | Baja (2.1) | 0.22% | 💥 PoC | Elixir-ecto PostgrexAI | 10/7/2026 | 10/7/2026 | SQL Injection vulnerability in elixir-ecto postgrex allows an attacker who can influence a LISTEN channel name to inject SQL into the reconnect replay query, causing a denial of service of the notification connection. Postgrex.Notifications sanitizes channel names with quote_channel/1, which doubles double quotes so… | |
| Aplazada | Baja (2.1) | 0.22% | — | Elixir-plug PlugAI | 10/7/2026 | 24/9/2026 | Improper Neutralization of Parameter/Argument Delimiters vulnerability in elixir-plug plug allows an attacker to inject or override HTTP cookie attributes. The Plug.Conn.Cookies.encode/2 function in lib/plug/conn/cookies.ex builds the Set-Cookie response header by interpolating the cookie value and its path, domain,… | |
| Aplazada | Media (6.9) | 1.1% | — | Elixir PlugAI | 10/7/2026 | 24/9/2026 | Plug.Parsers.MULTIPART, the multipart request-body parser used to handle file uploads and multipart forms, does not enforce its :length budget against all consumed resources, allowing an unauthenticated remote attacker to cause denial of service. The parser charges the :length limit only for part body bytes; part… | |
| Analizada | Alta (7.5) | 0.35% | — | Apache Helix | 9/7/2026 | 9/7/2026 | Permissive Cross-Origin Resource Sharing (CORS) in the REST API (helix-rest, org.apache.helix.rest.server.filters.CORSFilter) in Apache Helix through 2.0.0 on all platforms allows a remote attacker controlling a web page visited by an authorized user to read responses from and issue cross-origin requests to… | |
| Aplazada | Alta (8.7) | 0.55% | — | Elixir-mint HpaxAI | 6/7/2026 | 6/7/2026 | Inefficient Algorithmic Complexity vulnerability in elixir-mint hpax allows unauthenticated denial-of-service via unbounded HPACK integer decoding. hpax decodes HPACK variable-length integers with no upper bound on the decoded value or the number of continuation octets. 'Elixir.HPAX.Types':decode_remaining_integer/3… | |
| Aplazada | Alta (8.7) | 0.52% | — | Elixir-mint MintAI | 6/7/2026 | 6/7/2026 | Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint mint (Mint.HTTP1 module) allows a denial of service via an oversized chunked transfer-encoded response. This vulnerability is associated with program files lib/mint/http1.ex and program routines 'Elixir.Mint.HTTP1':decode_body/5,… | |
| Aplazada | Crítica (9.3) | 15% | 💥 Exploit | Netflix ConductorAI | 30/6/2026 | 14/7/2026 | Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute arbitrary OS commands by submitting inline workflow definitions containing malicious JavaScript or Python expressions to the workflow API endpoint prior to authentication.… | |
| Analizada | Alta (7.5) | 0.99% | 💥 Exploit | Ollyo Helix3 | 29/6/2026 | 30/6/2026 | The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to delete arbitrary files, write arbitrary JSON files and update template parameters. | |
| Pendiente de análisis | Alta (7.1) | 0.31% | — | Trellix Network Security CMAITrellix Network Security NXAI | 26/6/2026 | 29/9/2026 | A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web interface and Alert artifact details. | |
| Aplazada | Alta (8.7) | 0.95% | — | Elixir PlugAI | 23/6/2026 | 23/6/2026 | Inefficient algorithmic complexity in Plug's nested-parameter decoder allows an unauthenticated remote attacker to cause denial of service. Plug.Conn.Query.decode/4 (and Plug.Conn.Query.decode_each/2) parse query strings and application/x-www-form-urlencoded request bodies. When a key contains many bracketed segments… |