Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1928 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.3) | 0.25% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Ventura 13.6.7, tvOS 17.5, visionOS 1.2, watchOS 10.5. An attacker that has already achieved kernel code execution may be able to bypass kernel memory… | |
| Modificada | Media (6.5) | 0.73% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 10/6/2024 | 17/6/2026 | The issue was addressed by adding additional logic. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. A maliciously crafted webpage may be able to fingerprint the user. | |
| Modificada | Alta (7.8) | 0.59% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges. | |
| Modificada | Media (6.5) | 0.65% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 10/6/2024 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in Safari 17.5, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. A maliciously crafted webpage may be able to fingerprint the user. | |
| Modificada | Alta (7.8) | 0.27% | — | Apple IpadosApple Iphone OSApple TvosApple Visionos+1 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (8.8) | 1.0% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. Processing web content may lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 2.0% | 💥 PoC | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Baja (2.4) | 0.27% | — | Apple Watchos | 10/6/2024 | 17/6/2026 | This issue was addressed through improved state management. This issue is fixed in watchOS 10.5. A person with physical access to a device may be able to view contact information from the lock screen. | |
| Modificada | Alta (7.8) | 0.56% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges. | |
| Modificada | Alta (8.8) | 1.2% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+3 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 17.5, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. Processing web content may lead to arbitrary code execution. | |
| Modificada | Media (5.5) | 0.26% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 10/6/2024 | 17/6/2026 | This issue was addressed with improved environment sanitization. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, watchOS 10.5. An app may be able to access sensitive user data. | |
| Modificada | Media (5.5) | 0.25% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 10/6/2024 | 17/6/2026 | An issue was addressed with improved validation of environment variables. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, watchOS 10.5. An app may be able to access sensitive user data. | |
| Modificada | Alta (7.8) | 0.36% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges. | |
| Modificada | Media (6.5) | 0.60% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 10/6/2024 | 17/6/2026 | This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, visionOS 1.2, watchOS 10.5. Processing a maliciously crafted message may lead to a denial-of-service. | |
| Modificada | Media (5.5) | 0.24% | — | Apple IpadosApple Iphone OSApple MacosApple Watchos | 10/6/2024 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, watchOS 10.5. A maliciously crafted email may be able to initiate FaceTime calls without user authorization. | |
| Modificada | Media (4.6) | 0.37% | — | Apple IpadosApple Iphone OSApple MacosApple Watchos | 10/6/2024 | 17/6/2026 | An authentication issue was addressed with improved state management. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, watchOS 10.5. An attacker with physical access may be able to leak Mail account credentials. | |
| Modificada | Media (5.5) | 0.60% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+5 | 14/5/2024 | 17/6/2026 | The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, watchOS 10.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication. | |
| Modificada | Media (4.7) | 0.92% | 💥 PoC | Apple IpadosApple Iphone OSApple MacosApple Watchos | 14/5/2024 | 17/6/2026 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, watchOS 10.5. A shortcut may output sensitive user data without consent. | |
| Modificada | Media (5.5) | 0.98% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 14/5/2024 | 17/6/2026 | A logic issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, watchOS 10.5. An attacker may be able to access user data. | |
| Modificada | Media (5.5) | 0.71% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 14/5/2024 | 17/6/2026 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7, tvOS 17.5, watchOS 10.5. An app may be able to read sensitive location information. | |
| Modificada | Media (5.5) | 1.3% | 💥 PoC | Apple IpadosApple Iphone OSApple MacosApple Tvos+2 | 14/5/2024 | 17/6/2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.3, watchOS 10.5. An app may be able to cause unexpected system termination. | |
| Modificada | Media (6.5) | 0.80% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 24/4/2024 | 17/6/2026 | A logic issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior. | |
| Modificada | Alta (8.8) | 1.1% | — | Apple SafariApple IpadosApple Iphone OSApple Macos+2 | 28/3/2024 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (8.6) | 0.25% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 28/3/2024 | 17/6/2026 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to break out of its sandbox. | |
| Modificada | Media (5.5) | 0.22% | — | Apple IpadosApple Iphone OSApple MacosApple Tvos+1 | 28/3/2024 | 17/6/2026 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to access user-sensitive data. |