Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

3281 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.3)0.19%—Twin GatusAI11/6/202617/6/2026
A vulnerability was determined in TwiN gatus 5.36.0. Impacted is the function setSessionCookie of the file security/oidc.go of the component OIDC Session Cookie Handler. Executing a manipulation can lead to sensitive cookie without secure attribute. The attack can be launched remotely. This attack is characterized by…
AnalizadaAlta (8.8)32%💥 PoCSplunkSplunk Cloud PlatformSplunk Secure Gateway10/6/202617/6/2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, Splunk Cloud Platform versions below 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, and Splunk Secure Gateway versions below 3.10.6, 3.9.20, and 3.8.67, a low-privileged user that does not hold the 'admin' or 'power' Splunk roles…
AnalizadaAlta (8.7)0.73%—Image-sizeRedhat DiscoveryRedhat GatekeeperRedhat Trusted Artifact Signer+19/6/202624/7/2026
image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by supplying a specially crafted image buffer with a zero-valued size field in a recognized box-type. Attackers can trigger an infinite loop in the JXL or HEIF image parsers by…
AplazadaMedia (4.3)0.49%—Feedzy RSS AggregatorAI6/6/202623/7/2026
The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.1.7. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes…
AnalizadaAlta (7.1)0.27%—Ericsson Packet Core Gateway5/6/202617/6/2026
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers…
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.
AnalizadaAlta (8.7)0.68%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaCrítica (9.3)0.59%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices.
Pendiente de análisisBaja (1.8)0.10%—Seagate OpenseachestAI2/6/202622/7/2026
Out of bounds write in openSeaChest’s --showSupportedFormats in Seagate’s openSeaChest v25.05.3 on all supported platforms allows for writing 1 extra byte outside of allocated memory which sets a value to 1 via a maliciously crafted NVMe device with a bogus value in the namespace FLBAS byte.
Pendiente de análisisMedia (4.6)0.11%—Seagate OpenseachestAI2/6/202622/7/2026
Out of bounds write in openSeaChest’s Trim/Unmap operation in Seagate’s openSeaChest v26.03.0 on all supported platforms allows for writing extra memory describing a range of LBAs to deallocate 16 bytes outside of the allocated space when running this operation.
Pendiente de análisisBaja (1.8)0.10%—Seagate OpenseachestAI2/6/202622/7/2026
Out of bounds write and reads in openSeaChest’s --showSCSIDefects in Seagate’s openSeaChest v25.05.3 on all supported platforms allows for writing defect information out of bounds for very large defects lists via a very bad drive with lots of defects or a maliciously crafted SCSI device’s defect response length.
AplazadaAlta (8.8)0.32%—Projectworlds Gate Pass Management SystemAI30/5/202622/7/2026
Gate Pass Management System 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code through the login and password parameters. Attackers can submit crafted POST requests to login-exec.php with SQL injection payloads in form parameters to…
AplazadaAlta (7.1)0.56%—Navigate CMSAI29/5/202624/7/2026
Navigate CMS 2.8.5 contains a path traversal vulnerability that allows authenticated users to download arbitrary files by injecting directory traversal sequences in the id parameter. Attackers can send GET requests to navigate_download.php with path traversal payloads ../../../cfg/globals.php to access sensitive…
Pendiente de análisisMedia (5.3)0.85%—Opentelemetry-javaAIOpentelemetry-apiAIOpentelemetry-extension-trace-propagatorsAI28/5/202610/9/2026
opentelemetry-java is the Java implementation of the OpenTelemetry API for recording telemetry, and SDK for managing telemetry recorded by the API. Prior to 1.62.0, a vulnerability affects the baggage propagation implementation in opentelemetry-api and opentelemetry-extension-trace-propagators. Parsing oversized…
AplazadaAlta (7.3)0.49%—Smsgate Sms-coreAI28/5/202617/6/2026
An issue in SMSGate sms-core<=2.1.13.6 allows a remote attacker to execute arbitrary code via the Cmpp7FDeliverRequestMessageCodec.java component