Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2674▼ 561 respecto a la semana anterior
Críticas / altas1270▼ 252 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)217▼ 222 respecto a la semana anterior
2655 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.1) | 0.47% | — | FlowsintAI | 12/5/2026 | 17/6/2026 | Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a map node with a malicious label that contains arbitrary HTML. When the map tab is selected and a map node marker is selected, it will render… | |
| Aplazada | Alta (7.1) | 0.48% | — | FlowsintAI | 12/5/2026 | 17/6/2026 | Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a node with a malicious type that can escape an existing Cypher query and an adversary can execute an arbitrary Cypher query. This vulnerability… | |
| Aplazada | Alta (7.5) | 0.49% | — | DeskflowAI | 12/5/2026 | 17/6/2026 | Deskflow is a keyboard and mouse sharing app. Prior to 1.26.0.167, a remote, unauthenticated denial of service (DoS) vulnerability affects Deskflow servers running with TLS enabled (the default). When any TCP peer connects to the listening port and its first bytes do not parse as a valid TLS ClientHello,… | |
| Analizada | Crítica (9.6) | 0.60% | 💥 PoC | Langflow | 12/5/2026 | 17/6/2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow is vulnerable to Path Traversal in the Knowledge Bases API (DELETE /api/v1/knowledge_bases). This occurs because user-supplied knowledge base names are concatenated directly into file paths without proper… | |
| Aplazada | Crítica (9.8) | 0.80% | — | Adversarial Robustness Toolbox ARTAIKubeflowAI | 12/5/2026 | 11/8/2026 | The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a command-line argument injection vulnerability in its Kubeflow component (robustness_evaluation_fgsm_pytorch.py). The script uses the unsafe eval() function to parse string values provided via the --clip_values and --input_shape command-line arguments.… | |
| Aplazada | Media (6.5) | 0.40% | — | Eight DAY Week Print WorkflowAI | 12/5/2026 | 17/6/2026 | The Eight Day Week Print Workflow plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'title' parameter in the `pp-get-articles` AJAX action in all versions up to, and including, 1.2.6. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on… | |
| Aplazada | Alta (7.5) | 0.69% | — | Aiwu AI Chatbot Workflow AutomationAI | 12/5/2026 | 17/6/2026 | The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.4.17 due to insufficient escaping on user supplied parameters and lack of sufficient preparation on the existing SQL query in the getListForTbl() function. This makes it possible for… | |
| Analizada | Crítica (9.6) | 1.1% | ⚠ Explotación activa💥 PoC | Tanstack/arktype-adapterTanstack/eslint-plugin-routerTanstack/eslint-plugin-startTanstack/history+167 | 12/5/2026 | 17/6/2026 | On 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicious versions across 42 @tanstack/* packages were published to the npm registry. The publishes were authenticated via the legitimate GitHub Actions OIDC trusted-publisher binding for TanStack/router, but the publish workflow itself was not modified. The… | |
| Modificada | Alta (7.5) | 3.2% | 💥 Exploit | Lfprojects Mlflow | 11/5/2026 | 28/8/2026 | A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and earlier allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem. The issue arises when a `CreateModelVersion` request includes the tag… | |
| Analizada | Media (5.3) | 0.48% | — | Flowiseai Flowise | 11/5/2026 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, multiple tool implementations directly import and invoke raw HTTP clients (node-fetch, axios) instead of using the secured wrapper. These tools include (1) OpenAPIToolkit/OpenAPIToolkit.ts, (2)… | |
| Aplazada | Media (5.4) | 0.29% | — | HireflowAI | 11/5/2026 | 17/6/2026 | HireFlow v1.2 is vulnerable to Cross Site Scripting (XSS) in candidate_detail.html via the Resume or Feedback Comment fields via POST /candidates/add or POST /feedback/add. | |
| Aplazada | Alta (8.1) | 0.41% | — | HireflowAI | 11/5/2026 | 17/6/2026 | HireFlow v1.2 is vulnerable to Incorrect Access Control. The application does not enforce object-level authorization on the /candidate/<id> and /interview/<id> endpoints. The route handlers retrieve records by the user-supplied ID without verifying that the requesting user is the owner or has an authorized role. Any… | |
| Aplazada | Crítica (9.8) | 0.73% | — | HireflowAI | 11/5/2026 | 17/6/2026 | HireFlow v1.2 is vulnerable to SQL injection in the /login and /search endpoints. User-supplied input is concatenated directly into SQL queries without parameterization. An unauthenticated attacker can bypass authentication by supplying a crafted username (e.g. admin'--) or extract the full contents of the database… | |
| Aplazada | Alta (8.1) | 0.23% | — | HireflowAI | 11/5/2026 | 17/6/2026 | HireFlow v1.2 does not implement CSRF token validation on any state-changing POST endpoint. All forms (password change at /profile, candidate deletion at /candidates/delete/<id>, feedback submission at /feedback/add/<id>, interview scheduling at /interviews/add) are vulnerable to CSRF. An attacker who can trick an… | |
| Analizada | Alta (7.1) | 0.29% | — | Lfprojects Mlflow | 11/5/2026 | 17/6/2026 | A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3.9.0. The `_create_webhook()` function in `mlflow/server/handlers.py` accepts a user-controlled `url` parameter without validation, and the `_send_webhook_request()` function in `mlflow/webhooks/delivery.py` sends HTTP POST requests… | |
| Analizada | Media (6.5) | 0.66% | — | Apache-airflow-providers-opensearch | 11/5/2026 | 17/6/2026 | The OpenSearch logging provider, when configured with a `host` URL that embeds credentials (for example `https://user:password@server.example.com:9200`), wrote the full host URL — including the embedded credentials — into task logs. Any user with task-log read permission could harvest the backend credentials. Users… | |
| Analizada | Media (6.5) | 0.66% | — | Apache-airflow-providers-elasticsearch | 11/5/2026 | 17/6/2026 | The Elasticsearch logging provider, when configured with a `host` URL that embeds credentials (for example `https://user:password@server.example.com:9200`), wrote the full host URL — including the embedded credentials — into task logs. Any user with task-log read permission could harvest the backend credentials. Users… | |
| Modificada | Alta (8.5) | 0.53% | — | Argoproj Argo Workflows | 9/5/2026 | 24/7/2026 | Argo Workflows es un motor de flujo de trabajo nativo de contenedores de código abierto para orquestar trabajos paralelos en Kubernetes. Desde la versión 4.0.0 hasta antes de la versión 4.0.5, el proveedor respaldado por ConfigMap del Servicio de Sincronización (servidor/sync/sync_cm.go) no realiza ninguna… | |
| Modificada | Alta (8.1) | 0.49% | — | Argoproj Argo Workflows | 9/5/2026 | 24/7/2026 | Argo Workflows es un motor de flujo de trabajo de código abierto nativo de contenedores para orquestar trabajos paralelos en Kubernetes. Antes de las versiones 3.7.14 y 4.0.5, un usuario con permiso para crear flujos de trabajo (Workflow) puede eludir templateReferencing: Strict para obtener acceso a la red del host,… | |
| Analizada | Alta (8.5) | 0.40% | — | Argoproj Argo Workflows | 9/5/2026 | 24/7/2026 | Argo Workflows es un motor de flujo de trabajo de código abierto nativo de contenedores para orquestar trabajos paralelos en Kubernetes. Desde la versión 4.0.0 hasta antes de la versión 4.0.5, el ejecutor del flujo de trabajo registra todas las credenciales del repositorio de artefactos (claves de acceso de S3, claves… | |
| Modificada | Alta (8.2) | 0.74% | — | Argoproj Argo Workflows | 9/5/2026 | 24/7/2026 | Argo Workflows es un motor de flujo de trabajo de código abierto nativo de contenedor para orquestar trabajos paralelos en Kubernetes. Antes de las versiones 3.7.14 y 4.0.5, el Interceptor de Webhook carga el cuerpo completo de la solicitud en la memoria antes de autenticar la solicitud o verificar su firma. Esto… | |
| Analizada | Baja (2.3) | 0.57% | — | Argoproj Argo Workflows | 9/5/2026 | 24/7/2026 | Argo Workflows es un motor de flujo de trabajo de código abierto nativo de contenedores para orquestar trabajos paralelos en Kubernetes. Desde la versión 4.0.0 hasta antes de la versión 4.0.5, una desreferencia de puntero nulo en server/auth/gatekeeper.go rbacAuthorization() causa un pánico (denegación de servicio)… | |
| Analizada | Baja (2.9) | 0.53% | — | Flowiseai Flowise | 6/5/2026 | 17/6/2026 | A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is… | |
| Analizada | Media (5.3) | 0.44% | — | Flowiseai Flowise | 6/5/2026 | 17/6/2026 | A weakness has been identified in FlowiseAI Flowise up to 3.0.12. Affected by this vulnerability is an unknown functionality of the component User Controller Handler. This manipulation of the argument userId/organizationId/workspaceId/email causes authorization bypass. The attack may be initiated remotely. The… | |
| Analizada | Media (6.3) | 0.37% | — | Flowiseai Flowise | 6/5/2026 | 17/6/2026 | A security flaw has been discovered in FlowiseAI Flowise up to 3.0.12. Affected is the function Login of the file packages/server/src/enterprise/services/account.service.ts of the component API Response Handler. The manipulation results in information disclosure. The attack can be launched remotely. A high complexity… |