Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2811▼ 173 respecto a la semana anterior
Críticas / altas1356▲ 48 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)267▼ 256 respecto a la semana anterior
894 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.8) | 0.17% | — | Adobe DNG Software Development KIT | 10/2/2026 | 28/8/2026 | DNG SDK versions 1.7.1 2410 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.3) | 0.24% | — | Silabs Simplicity Software Development KIT | 5/2/2026 | 20/8/2026 | A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service. | |
| Modificada | Media (6.5) | 0.79% | — | Mediatek Nbiot SDKMediatek Software Development KITOpenwrt | 2/2/2026 | 17/6/2026 | In wlan AP/STA firmware, there is a possible system becoming irresponsive due to an uncaught exception. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00461663 / WCNCR00463309; Issue ID:… | |
| Analizada | Alta (8.8) | 0.30% | — | Mediatek Software Development KITOpenwrt | 2/2/2026 | 17/6/2026 | In wlan, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00461651; Issue ID: MSV-4758. | |
| Analizada | Alta (7) | 0.38% | — | Microsoft Windows Software Development KIT | 13/1/2026 | 17/6/2026 | Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally. | |
| Analizada | Media (5.5) | 0.17% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this issue to cause the application to crash or become unresponsive. Exploitation of this issue requires user interaction in that a victim must… | |
| Analizada | Alta (7.1) | 0.18% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure or application denial of service. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a… | |
| Analizada | Alta (7.1) | 0.20% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure or application denial of service. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a… | |
| Analizada | Alta (7.8) | 0.21% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Crítica (9.8) | 0.30% | — | Zoom Meeting Software Development KITZoom Workplace | 13/11/2025 | 17/6/2026 | Inefficient regular expression complexity in certain Zoom Workplace Clients before version 6.5.10 may allow an unauthenticated user to conduct an escalation of privilege via network access. | |
| Analizada | Crítica (9.8) | 0.42% | — | Zoom Meeting Software Development KITZoom Workplace | 13/11/2025 | 17/6/2026 | Improper authorization handling in Zoom Workplace for Android before version 6.5.10 may allow an unauthenticated user to conduct an escalation of privilege via network access. | |
| Analizada | Alta (7.5) | 0.32% | — | Zoom Meeting Software Development KITZoom RoomsZoom Rooms ControllerZoom Workplace Desktop+1 | 13/11/2025 | 17/6/2026 | External control of file name or path in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via network access. | |
| Analizada | Media (5.5) | 0.15% | — | Zoom Meeting Software Development KITZoom Workplace Desktop | 13/11/2025 | 17/6/2026 | External control of file name or path in Zoom Workplace for macOS before version 6.5.10 may allow an authenticated user to conduct a disclosure of information via local access. | |
| Analizada | Alta (7.5) | 0.27% | — | Zoom Meeting Software Development KITZoom RoomsZoom Rooms ControllerZoom Workplace Desktop+1 | 13/11/2025 | 17/6/2026 | Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated user to conduct a disclosure of information via network access. | |
| Analizada | Media (6.1) | 0.19% | — | Zoom Meeting Software Development KITZoom Workplace Desktop | 13/11/2025 | 17/6/2026 | Cross-site scripting in Zoom Workplace for Windows before version 6.5.10 may allow an unauthenticated user to impact integrity via network access. | |
| Analizada | Media (6.5) | 0.10% | — | Zoom Meeting Software Development KITZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 13/11/2025 | 17/6/2026 | Improper certificate validation in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via adjacent access. | |
| Modificada | Media (6.7) | 0.18% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00432679; Issue ID: MSV-3950. | |
| Analizada | Alta (8) | 0.30% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00432680; Issue ID: MSV-3949. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00434422; Issue ID: MSV-3958. | |
| Analizada | Media (4.7) | 0.10% | — | Mediatek Software Development KIT | 4/11/2025 | 17/6/2026 | In wlan STA driver, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435337; Issue ID: MSV-4036. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435340; Issue ID: MSV-4038. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435342; Issue ID: MSV-4039. | |
| Analizada | Alta (7.8) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435343; Issue ID: MSV-4040. | |
| Analizada | Media (6.7) | 0.15% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435347; Issue ID: MSV-4049. | |
| Analizada | Alta (7.8) | 0.15% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435349; Issue ID: MSV-4051. |