Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2723▼ 319 respecto a la semana anterior
Críticas / altas1277▼ 191 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
7726 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.4) | 0.56% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A high-privileged attacker could leverage this vulnerability to bypass security measures and gain unauthorized… | |
| Modificada | Media (6.2) | 0.29% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of… | |
| Modificada | Media (6.2) | 0.26% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service… | |
| Modificada | Media (6.2) | 0.26% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition.… | |
| Modificada | Media (6.2) | 0.29% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of… | |
| Modificada | Media (6.2) | 0.26% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition.… | |
| Modificada | Media (6.2) | 0.27% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of… | |
| Modificada | Alta (7.5) | 0.90% | — | Adobe C2paAdobe C2pa-web | 12/5/2026 | 28/8/2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service… | |
| Analizada | Media (4.8) | 0.41% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a… | |
| Analizada | Media (4.3) | 0.59% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access.… | |
| Analizada | Media (4.8) | 0.41% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a… | |
| Analizada | Media (5.3) | 0.80% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a… | |
| Analizada | Alta (8.7) | 1.0% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary file system read and write. An authenticated attacker with administrative… | |
| Analizada | Alta (7.5) | 0.90% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a… | |
| Analizada | Alta (7.5) | 0.90% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application… | |
| Analizada | Alta (7.5) | 0.90% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application… | |
| Analizada | Alta (7.5) | 0.90% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application… | |
| Analizada | Alta (7.5) | 1.0% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application… | |
| Analizada | Alta (7.4) | 0.92% | — | Adobe CommerceAdobe Commerce B2BAdobe Magento | 12/5/2026 | 28/8/2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read… |