Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
16.779 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| En análisis | Crítica (10) | 0.43% | — | Microsoft Azure BillingAI | 17/9/2026 | 19/9/2026 | Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.6) | 0.79% | — | Microsoft Azure Cosmos DB | 17/9/2026 | 29/9/2026 | Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network. | |
| Analizada | Alta (7.5) | 0.97% | — | Microsoft Foundry | 17/9/2026 | 25/9/2026 | Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.8) | 0.67% | — | Microsoft Azure AI Foundry | 17/9/2026 | 25/9/2026 | Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Alta (8.8) | 0.72% | — | Microsoft 365 Copilot | 17/9/2026 | 25/9/2026 | Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an authorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.1) | 0.44% | — | Microsoft Azure Logic Apps | 17/9/2026 | 25/9/2026 | Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network. | |
| Pendiente de análisis | Alta (7.4) | 0.89% | — | Microsoft 365 CopilotAI | 17/9/2026 | 18/9/2026 | Improper neutralization of special elements used in a command ('command injection') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to disclose information over a network. | |
| Analizada | Alta (8.1) | 0.37% | — | Microsoft Dataverse | 17/9/2026 | 25/9/2026 | Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.8) | 0.60% | — | Microsoft Azure Logic Apps | 17/9/2026 | 25/9/2026 | Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.8) | 0.53% | — | Microsoft Azure ARC | 17/9/2026 | 25/9/2026 | Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Arc allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (10) | 0.80% | — | Microsoft Azure Container Registry | 17/9/2026 | 29/9/2026 | Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.8) | 0.48% | — | Microsoft Azure ARC | 17/9/2026 | 25/9/2026 | Azure Arc Elevation of Privilege Vulnerability | |
| Analizada | Alta (7.5) | 0.54% | — | Microsoft Azure Machine Learning | 17/9/2026 | 25/9/2026 | Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network. | |
| Analizada | Media (5.9) | 0.39% | — | Microsoft Copilot | 17/9/2026 | 25/9/2026 | Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network. | |
| Aplazada | Crítica (9) | 0.70% | — | AnyqueryAIGoogle ChromeAIBraveAIMicrosoft EdgeAI+1 | 17/9/2026 | 30/9/2026 | Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, authenticated users with INSERT or UPDATE access to affected macOS virtual tables can execute operating-system commands because the Chrome plugin and equivalent Brave, Edge, and Safari variants interpolate a SQL-controlled URL into AppleScript or… | |
| Pendiente de análisis | Alta (8.5) | 0.19% | — | Microsoft LightgbmAI | 16/9/2026 | 24/9/2026 | LightGBM through 4.7.0 fails to validate child and split array values when parsing text models, allowing attackers to write out-of-bounds memory during SHAP prediction. Attackers can craft malicious model files with invalid node references that trigger out-of-bounds writes at attacker-chosen offsets in the leaf_depth_… | |
| Analizada | Alta (8.8) | 0.82% | — | Microsoft Edge Chromium | 15/9/2026 | 25/9/2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Alta (8.8) | 0.82% | — | Microsoft Edge Chromium | 15/9/2026 | 25/9/2026 | Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | |
| Pendiente de análisis | Alta (7.6) | 0.37% | — | CheerioAIMicrosoft PlaywrightAIPuppeteerAIFlowiseai FlowiseAI | 15/9/2026 | 17/9/2026 | Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as… | |
| Pendiente de análisis | Alta (8.8) | 0.08% | — | Crowdstrike Falcon SensorAICrowdstrike Laroux Malware Cleanup ToolAIMicrosoft OfficeAI | 15/9/2026 | 18/9/2026 | CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. The vulnerability only exists when the Microsoft Office File Malicious Macro Removal Windows policy setting is enabled and customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings.… | |
| Aplazada | Alta (8.7) | 0.48% | — | LokkaAIMicrosoft 365AIMicrosoft GraphAIMicrosoft Azure Resource ManagerAI | 15/9/2026 | 30/9/2026 | Lokka is a Model Context Protocol server for Microsoft 365, including Microsoft Graph and other services. Prior to 2.1.2, the Lokka-Microsoft tool in src/mcp/src/main.ts uses direct URL string concatenation to append the user-controlled path value to the management.azure.com base URL. A specially crafted path can… | |
| Aplazada | Crítica (9.3) | 0.38% | — | Yonyou U8 CRMAIMicrosoft SQL ServerAI | 15/9/2026 | 28/9/2026 | Yonyou U8 CRM contains an unauthenticated SQL injection vulnerability in the fillbacksettingedit.php configuration endpoint where the DontCheckLogin=1 parameter bypasses authentication and the id parameter is incorporated into SQL queries without sanitization. Attackers can exploit this flaw to execute arbitrary SQL… | |
| Analizada | Alta (8.2) | 0.35% | — | Microsoft Windows 11 26h1 | 14/9/2026 | 29/9/2026 | Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.8) | 0.20% | — | Microsoft Edge Chromium | 14/9/2026 | 25/9/2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally. | |
| Pendiente de análisis | Media (4.3) | 0.44% | — | Microsoft VscodeAIOvsxAI | 14/9/2026 | 16/9/2026 | Publishing limits the compressed size of a VSIX (ovsx.publishing.max-content-size, 512 MB by default) but nothing limited how large an entry becomes when opened. On the first request to /vscode/unpkg/{namespace}/{extension}/{version}/{path}, WebResourceService opened the entry with ZipFile.getInputStream() and passed… |