Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

3145 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.9)2.0%—Oracle MysqlRedhat Software CollectionsRedhat Enterprise LinuxRedhat Enterprise Linux EUS+223/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability…
ModificadaMedia (5.3)1.8%—Oracle MysqlRedhat Software CollectionsRedhat Enterprise LinuxRedhat Enterprise Linux EUS+223/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Options). Supported versions that are affected are 8.0.15 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks…
ModificadaMedia (4.4)1.9%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 8.0.15 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of…
ModificadaMedia (4.4)2.8%—Oracle MysqlCanonical Ubuntu LinuxMariadbRedhat Enterprise Linux Desktop+723/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks…
ModificadaAlta (7.5)4.4%—Oracle JDKOracle JRERedhat Openshift Container PlatformRedhat Satellite+1223/4/201917/6/2026
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u211, 8u202, 11.0.2 and 12; Java SE Embedded: 8u201. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to…
ModificadaMedia (4.9)2.2%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability…
ModificadaMedia (4.9)2.2%—Oracle MysqlCanonical Ubuntu LinuxFedoraproject FedoraRedhat Software Collections+423/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: PS). Supported versions that are affected are 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Partition). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability…
ModificadaMedia (4.9)2.1%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks…
ModificadaMedia (4.9)2.2%—Oracle MysqlCanonical Ubuntu LinuxFedoraproject FedoraRedhat Software Collections+423/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.…
ModificadaMedia (4.9)2.2%—Oracle MysqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+323/4/201917/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability…
ModificadaAlta (7.4)6.2%—Apache QpidRedhat Jboss AMQ Clients 2Redhat OpenstackRedhat Satellite+623/4/201917/6/2026
While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27.0 (C library and its language bindings) can connect to a peer anonymously using TLS *even when configured to verify the peer certificate* while used with OpenSSL versions before 1.1.0. This means…
ModificadaMedia (5.5)1.4%—Gnome EvinceCanonical Ubuntu LinuxFedoraproject FedoraDebian Linux+522/4/201917/6/2026
The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince through 3.32.0 did not handle errors from TIFFReadRGBAImageOriented(), leading to uninitialized memory use when processing certain TIFF image files.
ModificadaCrítica (9.8)3.6%—FreeradiusFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux EUS+622/4/201917/6/2026
FreeRADIUS before 3.0.19 mishandles the "each participant verifies that the received scalar is within a range, and that the received group element is a valid point on the curve being used" protection mechanism, aka a "Dragonblood" issue, a similar issue to CVE-2019-9498 and CVE-2019-9499.
ModificadaAlta (7.5)2.5%—Eclipse Openj9Redhat SatelliteRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+219/4/201917/6/2026
In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode array causing crashes. Eclipse OpenJ9 v0.14.0 correctly detects this case and rejects the attempted class load.
ModificadaAlta (7.8)0.38%—Clusterlabs PacemakerCanonical Ubuntu LinuxFedoraproject FedoraDebian Linux+518/4/201917/6/2026
A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalation.
ModificadaMedia (6.5)1.8%—Linux KernelCanonical Ubuntu LinuxDebian LinuxRedhat Codeready Linux Builder+1211/4/201917/6/2026
A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel before 5.1-rc1.
ModificadaMedia (6.5)1.8%—Linux KernelCanonical Ubuntu LinuxRedhat Codeready Linux BuilderRedhat Enterprise Linux+1211/4/201917/6/2026
A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5.1-rc1.
ModificadaAlta (7.5)1.7%—Redhat Enterprise Linux Server AUSRedhat Enterprise Linux Server EUSRedhat Enterprise Linux Server TUS9/4/201917/6/2026
A denial of service flaw was found in the way BIND handled DNSSEC validation. A remote attacker could use this flaw to make named exit unexpectedly with an assertion failure via a specially crafted DNS response.