Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
9237 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.47% | — | Apple SafariApple IpadosApple Iphone OSApple Macos | 29/6/2026 | 17/8/2026 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash. | |
| Modificada | Media (6.5) | 0.37% | — | Apple SafariApple IpadosApple Iphone OSApple Macos | 29/6/2026 | 17/8/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Modificada | Media (6.5) | 0.37% | — | Apple SafariApple IpadosApple Iphone OSApple Macos | 29/6/2026 | 17/8/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| En análisis | Crítica (9.1) | 0.69% | — | Apple IpadosApple Iphone OSApple Macos | 29/6/2026 | 17/8/2026 | This issue was addressed with improved input validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination or corrupt… | |
| Modificada | Media (6.5) | 0.39% | — | Apple SafariApple IpadosApple Iphone OSApple Macos | 29/6/2026 | 17/8/2026 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected process crash. | |
| Analizada | Media (5.3) | 0.31% | — | Apple Swiftnio Http/2 | 25/6/2026 | 30/6/2026 | swift-nio-http2's HTTP/2-to-HTTP/1.1 codec did not validate pseudo-header values for control characters before placing them into the translated HTTP/1.1 message. swift-nio-http2 1.44.1 adds validation of all pseudo-header values (:path, :authority, :scheme, :method, and :status) at both the HPACK header validation… | |
| Pendiente de análisis | Alta (8.6) | 0.42% | — | Apple M1 GPUAI | 24/6/2026 | 25/6/2026 | Apple M1 GPUs retain register file data between compute shader dispatches from different processes. A sandboxed Metal attacker app can run a GPU reader shader that reads stale register values left by a separate sandboxed victim app. In the proof of concept, GPUVictim.app generates a fresh random 128-bit secret using… | |
| Analizada | Alta (7.5) | 0.27% | — | Apple Macos | 11/6/2026 | 7/10/2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be able to access protected user data. | |
| Analizada | Media (5.5) | 0.13% | — | Apple Macos | 11/6/2026 | 7/10/2026 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.1. An app may be able to access sensitive user data. | |
| Analizada | Media (5.3) | 0.23% | — | Apple IpadosApple Iphone OSApple Macos | 11/6/2026 | 7/10/2026 | An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to leak sensitive user information. | |
| Analizada | Media (5.5) | 0.14% | — | Apple Macos | 11/6/2026 | 7/10/2026 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user data. | |
| Analizada | Media (5.5) | 0.11% | — | Apple Macos | 11/6/2026 | 7/10/2026 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. A malicious app may be able to access sensitive user data. | |
| Analizada | Media (5.5) | 0.15% | — | Apple Macos | 11/6/2026 | 7/10/2026 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user data. | |
| Analizada | Alta (7.8) | 0.11% | — | Apple Macos | 11/6/2026 | 7/10/2026 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app may be able to bypass launch constraint protections and execute malicious code with elevated privileges. | |
| Analizada | Media (5.5) | 0.12% | — | Apple Macos | 11/6/2026 | 7/10/2026 | A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.4. An app may be able to access sensitive user data. | |
| Analizada | Media (5.5) | 0.13% | — | Apple Macos | 11/6/2026 | 7/10/2026 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A malicious app may be able to access private information. | |
| Analizada | Alta (8.8) | 0.13% | — | Apple Macos | 11/6/2026 | 7/10/2026 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Sequoia 15.4. An app may be able to break out of its sandbox. | |
| Analizada | Media (5.5) | 0.14% | — | Apple Macos | 11/6/2026 | 7/10/2026 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.4. An app may be able to access sensitive user data. | |
| Analizada | Media (5.5) | 0.12% | — | Apple Macos | 11/6/2026 | 7/10/2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to cause unexpected system termination. | |
| Analizada | Baja (3.5) | 0.15% | — | Apple Macos | 10/6/2026 | 23/7/2026 | A person with access to a Mac may be able to bypass Login Window. A consistency issue was addressed with improved state handling. This issue is fixed in macOS Monterey 12.4. | |
| Analizada | Alta (7.1) | 0.10% | — | Apple Macos | 10/6/2026 | 23/7/2026 | A malicious application may cause unexpected changes in memory shared between processes. A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.4. | |
| Analizada | Media (5.5) | 0.15% | — | Apple Macos | 26/5/2026 | 24/7/2026 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data. | |
| Analizada | Alta (7) | 0.10% | — | Apple Macos | 26/5/2026 | 24/7/2026 | A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7, macOS Tahoe 26. An app may be able to gain root privileges. | |
| Analizada | Media (5.5) | 0.14% | — | Apple Macos | 26/5/2026 | 24/7/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be able to cause unexpected system termination. | |
| Analizada | Media (5.5) | 0.14% | — | Apple Macos | 26/5/2026 | 20/7/2026 | A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data. |