Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

58 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)2.2%—CactiDebian LinuxOpensuse Backports SLEOpensuse Leap+316/1/202017/6/2026
Cacti 1.2.8 has stored XSS in data_sources.php, color_templates_item.php, graphs.php, graph_items.php, lib/api_automation.php, user_admin.php, and user_group_admin.php, as demonstrated by the description parameter in data_sources.php (a raw string from the database that is displayed by $header to trigger the XSS).
ModificadaAlta (7.5)6.8%—SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+724/12/201917/6/2026
zipfileUpdate in ext/misc/zipfile.c in SQLite 3.30.1 mishandles a NULL pathname during an update of a ZIP archive.
ModificadaAlta (7.5)6.8%—SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+724/12/201917/6/2026
flattenSubquery in select.c in SQLite 3.30.1 mishandles certain uses of SELECT DISTINCT involving a LEFT JOIN in which the right-hand side is a view. This can cause a NULL pointer dereference (or incorrect results).
ModificadaAlta (7.5)7.0%—SqliteSiemens Sinec Infrastructure Network ServicesOracle Mysql WorkbenchDebian Linux+723/12/201917/6/2026
multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE: this vulnerability exists because of an incomplete fix for CVE-2019-19880.
ModificadaAlta (7.5)6.9%—SqliteNetapp Cloud BackupDebian LinuxSuse Package HUB+718/12/201917/6/2026
exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled.
ModificadaAlta (8.8)6.4%💥 PoCGoogle ChromeDebian LinuxFedoraproject FedoraSuse Package HUB+410/12/201917/6/2026
Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
ModificadaMedia (6.5)1.5%—Google ChromeDebian LinuxSuse Package HUBOpensuse Backports SLE+410/12/201917/6/2026
Insufficient policy enforcement in audio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
ModificadaAlta (8.8)3.9%—Google ChromeFedoraproject FedoraRedhat Openshift Container PlatformRedhat Enterprise Linux+1110/12/201917/6/2026
Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
ModificadaAlta (8.8)1.9%—Google ChromeDebian LinuxFedoraproject FedoraNovell Suse Package HUB FOR Suse Linux Enterprise+510/12/201917/6/2026
Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
ModificadaAlta (8.3)2.6%—Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdDebian Linux+223/7/201917/6/2026
As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
ModificadaMedia (6.5)20%💥 PoCMozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdDebian Linux+223/7/201917/6/2026
A vulnerability exists where if a user opens a locally saved HTML file, this file can use file: URIs to access other files in the same directory or sub-directories if the names are known or guessed. The Fetch API can then be used to read the contents of any files stored in these directories and they may uploaded to a…
ModificadaMedia (5.3)2.1%—Mozilla FirefoxMozilla ThunderbirdDebian LinuxNovell Suse Package HUB FOR Suse Linux Enterprise+123/7/201917/6/2026
A vulnerability exists where the caret ("^") character is improperly escaped constructing some URIs due to it being used as a separator, allowing for possible spoofing of origin attributes. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
ModificadaCrítica (9.8)2.3%—Mozilla FirefoxMozilla ThunderbirdOpensuse LeapSuse Package HUB+123/7/201917/6/2026
Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 60.8,…
ModificadaMedia (6.5)3.2%—Google ChromeDebian LinuxSuse Package HUBCanonical Ubuntu Linux+323/5/201917/6/2026
Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
ModificadaAlta (8.8)2.4%—FfmpegDebian LinuxNovell Suse Package HUB FOR Suse Linux EnterpriseCanonical Ubuntu Linux19/4/201917/6/2026
libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.
ModificadaMedia (5.3)9.4%—LibpngDebian LinuxCanonical Ubuntu LinuxOracle Hyperion Infrastructure Technology+284/2/201917/6/2026
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
ModificadaMedia (5.3)2.5%—Redhat AnsibleDebian LinuxRedhat Ansible EngineRedhat Openstack+53/1/201917/6/2026
ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure flaw in vvv+ mode with no_log on that can lead to leakage of sensible data.
ModificadaAlta (7.8)0.36%—Redhat Ansible EngineRedhat Ansible TowerDebian LinuxSuse Package HUB23/10/201817/6/2026
Ansible "User" module leaks any data which is passed on as a parameter to ssh-keygen. This could lean in undesirable situations such as passphrases credentials passed as a parameter for the ssh-keygen executable. Showing those credentials in clear text form for every user which have access just to the process list.
ModificadaAlta (7.8)0.59%—Redhat Ansible EngineRedhat Ceph StorageRedhat Gluster StorageRedhat Openshift+613/7/201817/6/2026
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code.
ModificadaMedia (5.9)2.2%—Golang GONovell Suse Package HUB FOR Suse Linux EnterpriseFedoraproject FedoraOpensuse Leap6/7/201717/6/2026
A bug in the standard library ScalarMult implementation of curve P-256 for amd64 architectures in Go before 1.7.6 and 1.8.x before 1.8.2 causes incorrect results to be generated for specific input points. An adaptive attack can be mounted to progressively extract the scalar input to ScalarMult by submitting crafted…
ModificadaCrítica (9.8)7.0%—ES Iperf3Novell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapOpensuse+126/9/201617/6/2026
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.
ModificadaAlta (8.8)1.1%—Google ChromeCanonical Ubuntu LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+43/7/201617/6/2026
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.103 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
ModificadaAlta (8.8)3.9%—Mozilla FirefoxDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux FOR IBM Z Systems+1713/6/201617/6/2026
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
ModificadaMedia (4.3)1.2%—Novell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapGoogle ChromeDebian Linux18/4/201617/6/2026
The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted extension.
ModificadaMedia (4.3)1.2%—Debian LinuxNovell Suse Package HUB FOR Suse Linux EnterpriseOpensuse LeapGoogle Chrome18/4/201617/6/2026
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL.
Orbitaley — Vulnerabilidades