Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

16.779 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
En análisisCrítica (10)0.43%—Microsoft Azure BillingAI17/9/202619/9/2026
Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.6)0.79%—Microsoft Azure Cosmos DB17/9/202629/9/2026
Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.
AnalizadaAlta (7.5)0.97%—Microsoft Foundry17/9/202625/9/2026
Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.8)0.67%—Microsoft Azure AI Foundry17/9/202625/9/2026
Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
AnalizadaAlta (8.8)0.72%—Microsoft 365 Copilot17/9/202625/9/2026
Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an authorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.1)0.44%—Microsoft Azure Logic Apps17/9/202625/9/2026
Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
Pendiente de análisisAlta (7.4)0.89%—Microsoft 365 CopilotAI17/9/202618/9/2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to disclose information over a network.
AnalizadaAlta (8.1)0.37%—Microsoft Dataverse17/9/202625/9/2026
Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.8)0.60%—Microsoft Azure Logic Apps17/9/202625/9/2026
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.8)0.53%—Microsoft Azure ARC17/9/202625/9/2026
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (10)0.80%—Microsoft Azure Container Registry17/9/202629/9/2026
Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elevate privileges over a network.
AnalizadaCrítica (9.8)0.48%—Microsoft Azure ARC17/9/202625/9/2026
Azure Arc Elevation of Privilege Vulnerability
AnalizadaAlta (7.5)0.54%—Microsoft Azure Machine Learning17/9/202625/9/2026
Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network.
AnalizadaMedia (5.9)0.39%—Microsoft Copilot17/9/202625/9/2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.
AplazadaCrítica (9)0.70%—AnyqueryAIGoogle ChromeAIBraveAIMicrosoft EdgeAI+117/9/202630/9/2026
Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, authenticated users with INSERT or UPDATE access to affected macOS virtual tables can execute operating-system commands because the Chrome plugin and equivalent Brave, Edge, and Safari variants interpolate a SQL-controlled URL into AppleScript or…
Pendiente de análisisAlta (8.5)0.19%—Microsoft LightgbmAI16/9/202624/9/2026
LightGBM through 4.7.0 fails to validate child and split array values when parsing text models, allowing attackers to write out-of-bounds memory during SHAP prediction. Attackers can craft malicious model files with invalid node references that trigger out-of-bounds writes at attacker-chosen offsets in the leaf_depth_…
AnalizadaAlta (8.8)0.82%—Microsoft Edge Chromium15/9/202625/9/2026
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.
AnalizadaAlta (8.8)0.82%—Microsoft Edge Chromium15/9/202625/9/2026
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Pendiente de análisisAlta (7.6)0.37%—CheerioAIMicrosoft PlaywrightAIPuppeteerAIFlowiseai FlowiseAI15/9/202617/9/2026
Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as…
Pendiente de análisisAlta (8.8)0.08%—Crowdstrike Falcon SensorAICrowdstrike Laroux Malware Cleanup ToolAIMicrosoft OfficeAI15/9/202618/9/2026
CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. The vulnerability only exists when the Microsoft Office File Malicious Macro Removal Windows policy setting is enabled and customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings.…
AplazadaAlta (8.7)0.48%—LokkaAIMicrosoft 365AIMicrosoft GraphAIMicrosoft Azure Resource ManagerAI15/9/202630/9/2026
Lokka is a Model Context Protocol server for Microsoft 365, including Microsoft Graph and other services. Prior to 2.1.2, the Lokka-Microsoft tool in src/mcp/src/main.ts uses direct URL string concatenation to append the user-controlled path value to the management.azure.com base URL. A specially crafted path can…
AplazadaCrítica (9.3)0.38%—Yonyou U8 CRMAIMicrosoft SQL ServerAI15/9/202628/9/2026
Yonyou U8 CRM contains an unauthenticated SQL injection vulnerability in the fillbacksettingedit.php configuration endpoint where the DontCheckLogin=1 parameter bypasses authentication and the id parameter is incorporated into SQL queries without sanitization. Attackers can exploit this flaw to execute arbitrary SQL…
AnalizadaAlta (8.2)0.35%—Microsoft Windows 11 26h114/9/202629/9/2026
Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
AnalizadaAlta (7.8)0.20%—Microsoft Edge Chromium14/9/202625/9/2026
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.
Pendiente de análisisMedia (4.3)0.44%—Microsoft VscodeAIOvsxAI14/9/202616/9/2026
Publishing limits the compressed size of a VSIX (ovsx.publishing.max-content-size, 512 MB by default) but nothing limited how large an entry becomes when opened. On the first request to /vscode/unpkg/{namespace}/{extension}/{version}/{path}, WebResourceService opened the entry with ZipFile.getInputStream() and passed…