Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
58 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 2.2% | — | CactiDebian LinuxOpensuse Backports SLEOpensuse Leap+3 | 16/1/2020 | 17/6/2026 | Cacti 1.2.8 has stored XSS in data_sources.php, color_templates_item.php, graphs.php, graph_items.php, lib/api_automation.php, user_admin.php, and user_group_admin.php, as demonstrated by the description parameter in data_sources.php (a raw string from the database that is displayed by $header to trigger the XSS). | |
| Modificada | Alta (7.5) | 6.8% | — | SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+7 | 24/12/2019 | 17/6/2026 | zipfileUpdate in ext/misc/zipfile.c in SQLite 3.30.1 mishandles a NULL pathname during an update of a ZIP archive. | |
| Modificada | Alta (7.5) | 6.8% | — | SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+7 | 24/12/2019 | 17/6/2026 | flattenSubquery in select.c in SQLite 3.30.1 mishandles certain uses of SELECT DISTINCT involving a LEFT JOIN in which the right-hand side is a view. This can cause a NULL pointer dereference (or incorrect results). | |
| Modificada | Alta (7.5) | 7.0% | — | SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+7 | 23/12/2019 | 17/6/2026 | multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE: this vulnerability exists because of an incomplete fix for CVE-2019-19880. | |
| Modificada | Alta (7.5) | 6.9% | — | SqliteNetapp Cloud BackupDebian LinuxSuse Package HUB+7 | 18/12/2019 | 17/6/2026 | exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled. | |
| Modificada | Alta (8.8) | 6.4% | 💥 PoC | Google ChromeDebian LinuxFedoraproject FedoraSuse Package HUB+4 | 10/12/2019 | 17/6/2026 | Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.5% | — | Google ChromeDebian LinuxSuse Package HUBOpensuse Backports SLE+4 | 10/12/2019 | 17/6/2026 | Insufficient policy enforcement in audio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.9% | — | Google ChromeFedoraproject FedoraRedhat Openshift Container PlatformRedhat Enterprise Linux+11 | 10/12/2019 | 17/6/2026 | Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | |
| Modificada | Alta (8.8) | 1.9% | — | Google ChromeDebian LinuxFedoraproject FedoraNovell Suse Package HUB FOR Suse Linux Enterprise+5 | 10/12/2019 | 17/6/2026 | Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | |
| Modificada | Alta (8.3) | 2.6% | — | Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdDebian Linux+2 | 23/7/2019 | 17/6/2026 | As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8. | |
| Modificada | Media (6.5) | 20% | 💥 PoC | Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdDebian Linux+2 | 23/7/2019 | 17/6/2026 | A vulnerability exists where if a user opens a locally saved HTML file, this file can use file: URIs to access other files in the same directory or sub-directories if the names are known or guessed. The Fetch API can then be used to read the contents of any files stored in these directories and they may uploaded to a… | |
| Modificada | Media (5.3) | 2.1% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxNovell Suse Package HUB FOR Suse Linux Enterprise+1 | 23/7/2019 | 17/6/2026 | A vulnerability exists where the caret ("^") character is improperly escaped constructing some URIs due to it being used as a separator, allowing for possible spoofing of origin attributes. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8. | |
| Modificada | Crítica (9.8) | 2.3% | — | Mozilla FirefoxMozilla ThunderbirdOpensuse LeapSuse Package HUB+1 | 23/7/2019 | 17/6/2026 | Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 60.8,… | |
| Modificada | Media (6.5) | 3.2% | — | Google ChromeDebian LinuxSuse Package HUBCanonical Ubuntu Linux+3 | 23/5/2019 | 17/6/2026 | Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. | |
| Modificada | Alta (8.8) | 2.4% | — | FfmpegDebian LinuxNovell Suse Package HUB FOR Suse Linux EnterpriseCanonical Ubuntu Linux | 19/4/2019 | 17/6/2026 | libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data. | |
| Modificada | Media (5.3) | 9.4% | — | LibpngDebian LinuxCanonical Ubuntu LinuxOracle Hyperion Infrastructure Technology+28 | 4/2/2019 | 17/6/2026 | png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute. | |
| Modificada | Media (5.3) | 2.5% | — | Redhat AnsibleDebian LinuxRedhat Ansible EngineRedhat Openstack+5 | 3/1/2019 | 17/6/2026 | ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure flaw in vvv+ mode with no_log on that can lead to leakage of sensible data. | |
| Modificada | Alta (7.8) | 0.36% | — | Redhat Ansible EngineRedhat Ansible TowerDebian LinuxSuse Package HUB | 23/10/2018 | 17/6/2026 | Ansible "User" module leaks any data which is passed on as a parameter to ssh-keygen. This could lean in undesirable situations such as passphrases credentials passed as a parameter for the ssh-keygen executable. Showing those credentials in clear text form for every user which have access just to the process list. | |
| Modificada | Alta (7.8) | 0.59% | — | Redhat Ansible EngineRedhat Ceph StorageRedhat Gluster StorageRedhat Openshift+6 | 13/7/2018 | 17/6/2026 | A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code. | |
| Modificada | Media (5.9) | 2.2% | — | Golang GONovell Suse Package HUB FOR Suse Linux EnterpriseFedoraproject FedoraOpensuse Leap | 6/7/2017 | 17/6/2026 | A bug in the standard library ScalarMult implementation of curve P-256 for amd64 architectures in Go before 1.7.6 and 1.8.x before 1.8.2 causes incorrect results to be generated for specific input points. An adaptive attack can be mounted to progressively extract the scalar input to ScalarMult by submitting crafted… | |
| Modificada | Crítica (9.8) | 7.0% | — | ES Iperf3Novell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapOpensuse+1 | 26/9/2016 | 17/6/2026 | The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow. | |
| Modificada | Alta (8.8) | 1.1% | — | Google ChromeCanonical Ubuntu LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+4 | 3/7/2016 | 17/6/2026 | Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.103 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. | |
| Modificada | Alta (8.8) | 3.9% | — | Mozilla FirefoxDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux FOR IBM Z Systems+17 | 13/6/2016 | 17/6/2026 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. | |
| Modificada | Media (4.3) | 1.2% | — | Novell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapGoogle ChromeDebian Linux | 18/4/2016 | 17/6/2026 | The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted extension. | |
| Modificada | Media (4.3) | 1.2% | — | Debian LinuxNovell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapGoogle Chrome | 18/4/2016 | 17/6/2026 | The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL. |