Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
6912 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.1) | 0.65% | — | Opener Project Opener | 13/7/2026 | 11/8/2026 | EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing short malformed packets. An attacker can send a valid ENIP outer frame carrying a malformed CIP ForwardOpen/LargeForwardOpen request, causing the parser to continue reading… | |
| Analizada | Crítica (9.1) | 0.63% | — | Opener Project Opener | 13/7/2026 | 11/8/2026 | In OpENer 2.3.0 (commit 76b95cf) when parsing incoming CIP (Common Industrial Protocol) network packets, the length parameter is inconsistently typed across the call stack. Specifically, an upstream length calculated as an int is passed to a downstream function that expects an EipInt16 (a 16-bit signed integer). If a… | |
| Analizada | Baja (3.3) | 0.21% | 💥 PoC | Openai Provider Project Openai Provider | 10/7/2026 | 6/8/2026 | Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenAI Provider allows Server Side Request Forgery. This issue affects OpenAI Provider versions: from 0.0.0 to 1.1.1, from 1.2.0 to 1.2.2. | |
| En análisis | Media (6.4) | 0.12% | — | Fedoraproject SssdRedhat Enterprise Linux | 30/6/2026 | 31/8/2026 | A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free vulnerability, where a memory pointer is incorrectly handled. A local attacker could exploit this flaw by manipulating smartcard or YubiKey contents, leading to a denial of service that disrupts… | |
| Modificada | Media (5.5) | 0.19% | — | Redhat Automatic BUG Reporting ToolFedoraproject FedoraRedhat Enterprise Linux | 13/6/2026 | 21/9/2026 | A content injection vulnerability was found in the ABRT post-create event handler scripts in libreport. The event script queries the systemd journal for log entries matching the crashed process and writes the results to files in the dump directory without sanitizing embedded control characters. A local user can inject… | |
| Modificada | Alta (7.8) | 0.23% | — | Redhat Automatic BUG Reporting ToolFedoraproject FedoraRedhat Enterprise Linux | 13/6/2026 | 21/9/2026 | A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the… | |
| Analizada | Media (5.1) | 0.24% | — | Avatar Uploader Project Avatar Uploader | 10/5/2026 | 24/7/2026 | Drupal avatar_uploader 7.x-1.0-beta8 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the file parameter. Attackers can craft URLs with script payloads in the file parameter of avatar_uploader.pages.inc to execute arbitrary… | |
| Analizada | Media (5.3) | 0.23% | — | Uriparser Project Uriparser | 8/5/2026 | 17/6/2026 | In uriparser before 1.0.2, the function family EqualsUri can misclassify two unequal URIs as equal. | |
| Analizada | Media (5.3) | 0.23% | — | Uriparser Project Uriparser | 8/5/2026 | 17/6/2026 | In uriparser before 1.0.2, there is pointer difference truncation to int in various places. | |
| Analizada | Media (5.1) | 0.16% | — | Uriparser Project Uriparser | 27/4/2026 | 17/6/2026 | uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes. | |
| Modificada | Alta (7.5) | 0.53% | — | Junrar Project Junrar | 20/4/2026 | 18/8/2026 | Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue. | |
| Analizada | Media (5.5) | 0.15% | — | Fedoraproject SssdRedhat Openshift Container PlatformRedhat Enterprise Linux | 15/4/2026 | 1/9/2026 | A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_child_read_data() function within the PAM passkey responder fails to properly handle raw bytes received from a pipe. Because the data is treated as a NUL-terminated C string without explicit termination, it results in an out-of-bounds read… | |
| Aplazada | Alta (8.6) | 0.19% | — | R Project RAI | 12/4/2026 | 15/7/2026 | R 3.4.4 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by injecting malicious input into the GUI Preferences language field. Attackers can craft a payload with a 292-byte offset and JMP ESP instruction to execute commands like calc.exe when the payload is pasted into the… | |
| Analizada | Alta (8.6) | 0.20% | — | River Past Video Cleaner Project River Past Video Cleaner | 5/4/2026 | 24/7/2026 | River Past Video Cleaner 7.6.3 contains a structured exception handler buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious string in the Lame_enc.dll field. Attackers can craft a payload with 280 bytes of padding, a next structured exception handler override,… | |
| Analizada | Media (6.9) | 0.19% | — | River Past Ringtone Converter Project River Past Ringtone Converter | 5/4/2026 | 24/7/2026 | River Past Ringtone Converter 2.7.6.1601 contains a local buffer overflow vulnerability that allows attackers to crash the application by supplying oversized input to activation fields. Attackers can paste 300 bytes of data into the Email textbox and Activation code textarea via the Help menu's Activate dialog to… | |
| Analizada | Media (5.5) | 0.17% | — | Freedesktop LibinputFedoraproject Fedora | 1/4/2026 | 17/6/2026 | A flaw was found in libinput. An attacker capable of deploying a Lua plugin file in specific system directories can exploit a dangling pointer vulnerability. This occurs when a garbage collection cleanup function is called, leaving a pointer that can then be printed to system logs. This could potentially expose… | |
| Modificada | Alta (8.8) | 0.21% | — | Freedesktop LibinputFedoraproject Fedora | 1/4/2026 | 15/7/2026 | A flaw was found in libinput. A local attacker who can place a specially crafted Lua bytecode file in certain system or user configuration directories can bypass security restrictions. This allows the attacker to run unauthorized code with the same permissions as the program using libinput, such as a graphical… | |
| Analizada | Alta (8.2) | 0.42% | — | Express XSS Sanitizer Project Express XSS Sanitizer | 27/3/2026 | 17/6/2026 | Express XSS Sanitizer is Express 4.x and 5.x middleware which sanitizes user input data (in req.body, req.query, req.headers and req.params) to prevent Cross Site Scripting (XSS) attack. A vulnerability has been identified in versions prior to 2.0.2 where restrictive sanitization configurations are silently ignored.… | |
| Analizada | Media (4.3) | 0.37% | — | Icalendar Project Icalendar | 26/3/2026 | 17/6/2026 | iCalendar is a Ruby library for dealing with iCalendar files in the iCalendar format defined by RFC-5545. Starting in version 2.0.0 and prior to version 2.12.2, .ics serialization does not properly sanitize URI property values, enabling ICS injection through attacker-controlled input, adding arbitrary calendar lines… | |
| Modificada | Alta (7.5) | 0.97% | — | Jsonparser Project Jsonparser | 26/3/2026 | 9/9/2026 | The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack. | |
| Analizada | Media (6.3) | 5.3% | — | Libvncserver Project Libvncserver | 24/3/2026 | 14/7/2026 | LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation… | |
| Analizada | Media (6.9) | 0.44% | — | Libvncserver Project Libvncserver | 24/3/2026 | 14/7/2026 | LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read vulnerability in the UltraZip encoding handler that allows a malicious VNC server to cause information disclosure or application crash. Attackers can exploit improper bounds checking in the HandleUltraZipBPP() function… | |
| Analizada | Media (5.1) | 0.41% | — | TAR Project TAR | 20/3/2026 | 17/6/2026 | tar-rs is a tar archive reading/writing library for Rust. In versions 0.4.44 and below, when unpacking a tar archive, the tar crate's unpack_dir function uses fs::metadata() to check whether a path that already exists is a directory. Because fs::metadata() follows symbolic links, a crafted tarball containing a symlink… | |
| Analizada | Media (6.9) | 0.45% | — | Cleanuparr Project Cleanuparr | 16/3/2026 | 17/6/2026 | Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. From 2.7.0 to 2.8.0, the /api/auth/login endpoint contains a logic flaw that allows unauthenticated remote attackers to enumerate valid usernames by measuring the… | |
| Aplazada | Media (6.9) | 0.12% | 💥 PoC | R Project RAI | 11/3/2026 | 17/6/2026 | R 3.4.4 on Windows x64 contains a buffer overflow vulnerability in the GUI Preferences language menu field that allows local attackers to bypass DEP and ASLR protections. Attackers can inject a crafted payload through the Language for menus preference to trigger a structured exception handler chain pivot and execute… |