Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3027▼ 35 respecto a la semana anterior
Críticas / altas1418▲ 79 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
–

1793 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (5.3)0.16%—Sierrawireless Hl78xxAI10/9/202610/9/2026
The Sierra Wireless HL78xx modem GNSS driver (drivers/modem/hl78xx/, later drivers/modem/vendor_standalone/hl78xx/) embeds a generic struct gnss_nmea0183_match_data match_data inside struct hl78xx_gnss_data. The generic NMEA0183 match helper (drivers/gnss/gnss_nmea0183_match.c) requires that context to be the first…
AplazadaMedia (5.1)0.68%—LaravelAILaravel LivewireAI31/8/20269/9/2026
Livewire is a full-stack framework for Laravel. From 3.0.0-beta.1 until 3.8.3 and 4.3.4, the dot-notated query-string parser in js/plugins/history/index.js, including fromQueryString() and insertDotNotatedValueIntoData(), accepts the __proto__, constructor, and prototype path segments and creates inherited objects.…
Pendiente de análisisBaja (3.7)0.25%—WireguardAI28/8/20261/9/2026
Zephyr's WireGuard implementation in subsys/net/lib/wireguard/wg_crypto.c mishandled keepalive packets. In wg_process_data_message(), any type-4 transport-data message whose payload was exactly 16 bytes (an empty plaintext plus a bare Poly1305 tag, i.e. a keepalive) was accepted and returned immediately, before…
Pendiente de análisisMedia (6.5)0.25%—WireguardAI28/8/20261/9/2026
Zephyr's WireGuard VPN data-plane receive handler wg_process_data_message() in subsys/net/lib/wireguard/wg_crypto.c validated the anti-replay counter too late. After AEAD decryption of a MESSAGE_TRANSPORT_DATA packet succeeded, the code committed several peer-state changes — update_peer_addr() (endpoint roaming…
AplazadaAlta (7.9)0.15%—Synergis SoftwireAIStreamvault Sv-100eAIStreamvault Sv-300eAI28/8/20269/9/2026
Improper access control to the Synergis Softwire installation folder. This vulnerability affects Streamvault all-in-one appliances (SV-100E and SV-300E series) and Synergis Softwire installed on Windows servers.
AnalizadaMedia (5.5)0.13%—Wireshark19/8/202631/8/2026
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaAlta (7.5)0.32%—Wireshark19/8/202631/8/2026
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaAlta (7.5)0.18%—Wireshark19/8/202631/8/2026
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.22%—Wireshark19/8/20261/9/2026
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.14%—Wireshark19/8/20261/9/2026
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.14%—Wireshark19/8/202631/8/2026
Bluetooth HFP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.14%—Wireshark19/8/202631/8/2026
Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.15%—Wireshark19/8/202631/8/2026
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.13%—Wireshark19/8/202631/8/2026
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaAlta (7.5)0.31%—Wireshark19/8/202631/8/2026
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.14%—Wireshark19/8/202631/8/2026
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.14%—Wireshark19/8/202631/8/2026
Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.21%—Wireshark19/8/202631/8/2026
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.21%—Wireshark19/8/202631/8/2026
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (5.5)0.13%—Wireshark19/8/202631/8/2026
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaAlta (7.5)0.21%—Wireshark19/8/202628/8/2026
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.18%—Wireshark19/8/202631/8/2026
Crash in the Wireshark dissection engine in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaCrítica (9.8)0.38%—Wireshark19/8/202628/8/2026
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.21%—Wireshark19/8/202631/8/2026
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
AnalizadaMedia (6.5)0.21%—Wireshark19/8/202631/8/2026
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service