Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3034▼ 62 respecto a la semana anterior
Críticas / altas1427▲ 61 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
28 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 4.0% | — | Tencent Wechat | 14/5/2019 | 17/6/2026 | vcodec2_hls_filter in libvoipCodec_v7a.so in the WeChat application through 7.0.3 for Android allows attackers to cause a denial of service (application crash) by replacing an emoji file (under the /sdcard/tencent/MicroMsg directory) with a crafted .wxgf file. The content of the replacement must be derived from the… | |
| Modificada | Crítica (9.8) | 63% | — | Wechat Brodcast Project Wechat Brodcast | 24/9/2018 | 17/6/2026 | The Wechat Broadcast plugin 1.2.0 and earlier for WordPress allows Directory Traversal via the Image.php url parameter. | |
| Modificada | Alta (7.5) | 1.9% | — | Tencent Wechat PAY | 8/7/2018 | 17/6/2026 | WXPayUtil in WeChat Pay Java SDK allows XXE attacks involving a merchant notification URL. |