Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2723▼ 319 respecto a la semana anterior
Críticas / altas1277▼ 191 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
11.337 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.7) | 0.65% | — | Openbsd OpensshRedhat Hardened ImagesRedhat Enterprise Linux | 23/6/2026 | 24/9/2026 | A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is missing in the auth-indicators array. A remote attacker, under specific configurations involving… | |
| Modificada | Media (6.5) | 0.60% | — | Openbsd OpensshRedhat Hardened ImagesRedhat Openshift Container PlatformRedhat Enterprise Linux | 23/6/2026 | 7/10/2026 | A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Federal Information Processing Standards) mode known-group validation when the client processes attacker-controlled DH-GEX group parameters.… | |
| Analizada | Media (5.9) | 0.53% | — | Redhat Openshift Container PlatformRedhat Enterprise LinuxThekelleys Dnsmasq | 22/6/2026 | 31/8/2026 | A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may… | |
| Modificada | Alta (8.3) | 0.30% | — | Redhat Openshift Container PlatformRedhat Windows Machine Config Operator | 22/6/2026 | 9/9/2026 | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH connections to Windows worker nodes without verifying the remote server host key. An adjacent-network attacker who can intercept or redirect WMCO's SSH session can capture WICD and kubelet… | |
| Modificada | Alta (8.8) | 0.11% | — | Redhat Openshift Container PlatformRedhat Windows Machine Config Operator | 22/6/2026 | 9/9/2026 | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-approver validates that a Certificate Signing Request contains the organization system:wicd-nodes but does not reject additional organization values such as system:masters. A compromised Windows… | |
| Pendiente de análisis | Baja (2) | 0.44% | — | Thinkst CanarytokensAI | 22/6/2026 | 23/6/2026 | An HTML injection vulnerability exists in the Google Chat webhook notification sent by Thinkst Applied Research Canarytokens, enabling Interface Manipulation in Google Chat. An attacker can insert limited HTML content including links. This issue affects Canarytokens: from Docker tag sha-4aef1db90 before sha-8ab4dccd,… | |
| Aplazada | Crítica (9.1) | 0.63% | — | Crypt Openssl Pkcs12AI | 20/6/2026 | 22/6/2026 | Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8STRING path. print_attribute() copies a UTF8STRING ASN.1 attribute value into a heap buffer sized exactly to its declared length via strncpy, leaving no NUL terminator. Downstream callers run strlen() on the result and… | |
| Analizada | Alta (8.8) | 0.43% | — | Extensions Joomla Payage | 19/6/2026 | 19/8/2026 | Joomla Payage 2.05 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the aid parameter. Attackers can send GET requests to index.php with malicious aid values in the make_payment task to extract sensitive database information… | |
| Analizada | Alta (7.1) | 0.45% | — | Pulseextensions Flip Wall | 19/6/2026 | 19/8/2026 | Joomla! Component Flip Wall 8.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the wallid parameter. Attackers can send GET requests to index.php with the option=com_flipwall&task=click&wallid parameter containing SQL… | |
| Analizada | Alta (7.1) | 0.45% | — | Pulseextensions Sponsor Wall | 19/6/2026 | 19/8/2026 | Joomla! Component Sponsor Wall 8.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the wallid parameter. Attackers can send GET requests to index.php with the option=com_sponsorwall&task=click&wallid parameter containing… | |
| Analizada | Crítica (9.1) | 1.1% | 💥 PoC | Microsoft Heif Image Extension | 19/6/2026 | 5/10/2026 | Microsoft HEIF Image Extensions 1.2.22.0 tiene una lectura fuera de límites porque CHEIFItemInfoEntry_GetDataSize puede devolver éxito mientras deja el tamaño de datos reportado como 0. Esto provoca que un llamador realice una asignación de 1 byte. Más tarde, CopyPixels calcula copy_size = stride * abs(roi_height)… | |
| Analizada | Alta (7.5) | 1.1% | — | Envoyproxy EnvoyRedhat Openshift Service Mesh | 17/6/2026 | 20/7/2026 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.35.11, 1.36.7, 1.37.3, and 1.38.1, a vulnerability in Envoy's HTTP/2 downstream request processing allows an unauthenticated remote client to trigger excessive memory consumption, potentially resulting in OOM… | |
| Analizada | Media (6.8) | 0.46% | — | Openstack Horizon | 17/6/2026 | 22/9/2026 | OpenStack Horizon before 25.7.4 produces scripts for OpenStack RC file downloading that may have a crafted project name with shell metacharacters. NOTE: some parties consider this a security hardening opportunity to address certain types of user error, not a vulnerability. | |
| Analizada | Alta (8.5) | 0.46% | — | Openstack Nova | 16/6/2026 | 26/6/2026 | In OpenStack Nova before 33.0.2, the server create API does not strip certain hint data. The resulting instance has no Placement allocation. | |
| Aplazada | Alta (8.8) | 0.43% | 💥 PoC | Opensips-cpAI | 15/6/2026 | 17/6/2026 | A Time-Based Blind SQL Injection vulnerability in the alias_management module of OpenSIPS Control Panel (opensips-cp) prior to version 9.3.3 allows authenticated attackers to execute arbitrary SQL commands via the 'table' GET parameter in alias_management.php. | |
| Aplazada | Alta (7.1) | 0.18% | — | Elis Wordcents Adsense Widget With AnalyticsAI | 15/6/2026 | 7/10/2026 | Scripting entre sitios (XSS) no autenticado en el Widget de adSense WordCents de Eli con Analytics en versiones iguales o anteriores a 1.3.03.27. | |
| Aplazada | Media (4.8) | 0.10% | — | Genspark AI Workspace APPAI | 14/6/2026 | 24/7/2026 | Una vulnerabilidad ha sido encontrada en Genspark AI Workspace App 2.8.4 en Android. Esta vulnerabilidad afecta código desconocido del componente ai.mainfunc.genspark. La manipulación conduce a una autorización indebida en el gestor para el esquema de URL personalizado. El ataque solo puede realizarse desde un entorno… | |
| Aplazada | Media (6.8) | 0.47% | — | Openstack IronicAI | 14/6/2026 | 23/7/2026 | En OpenStack Ironic hasta la versión 35.0.1, al aplicar un parche para actualizar campos en las propiedades de volumen para las que el usuario está autorizado, Ironic puede devolver información sensible sin redactar (como credenciales iSCSI). El resultado de la operación PATCH es un problema de seguridad; el resultado… | |
| Aplazada | Media (6) | 0.38% | — | TypesenseAI | 12/6/2026 | 17/6/2026 | Typesense is a fast, typo-tolerant search engine. Prior to versions 29.1 and 30.2, there is a cache isolation issue affecting search requests that use both server-side search result caching and Scoped Search API Keys. Under specific request ordering, cached search results could be reused across requests with different… | |
| Aplazada | Alta (8.7) | 0.54% | — | TypesenseAI | 12/6/2026 | 17/6/2026 | Typesense is a fast, typo-tolerant search engine. Prior to versions 29.1 and 30.2, there is an unauthenticated denial-of-service vulnerability in the /multi_search endpoint. A specially crafted request can trigger an unhandled exception during request processing, causing the server process to terminate. This issue can… | |
| Analizada | Alta (8.4) | 0.21% | — | Paloaltonetworks Idira Identity Browser Extension | 11/6/2026 | 22/6/2026 | Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation flaw within its internal web-page verification routines. If an authenticated user navigates to a specially crafted webpage, this interaction could potentially allow a remote attacker to trigger… | |
| Modificada | Alta (7.7) | 1.0% | — | AxiosRedhat Advanced Cluster Management FOR KubernetesRedhat Advanced Cluster SecurityRedhat Ansible Automation Platform+8 | 11/6/2026 | 11/9/2026 | Axios is a promise based HTTP client for the browser and Node.js. From 0.19.0 to before 0.31.1 and 1.15.2, Axios contains prototype-pollution gadgets in request config processing. If another vulnerability in the same JavaScript process has already polluted Object.prototype.transformResponse, affected Axios versions… | |
| Aplazada | Alta (7.1) | 0.41% | — | Opensis ClassicAI | 11/6/2026 | 17/6/2026 | openSIS Classic 9.3 contains an insecure direct object reference vulnerability in the messaging module. Any authenticated user with access to the messaging module can request sent-message details from modules/messaging/SentMail.php by supplying an arbitrary mail_id value. | |
| Modificada | Alta (7.5) | 0.99% | — | Js-cookie Javascript CookieRedhat 3scale API ManagementRedhat Ansible Automation PlatformRedhat Openshift AI+2 | 10/6/2026 | 9/9/2026 | JavaScript Cookie es una API de JavaScript para manejar cookies, del lado del cliente. Antes de la versión 3.0.7, la función auxiliar interna assign() de js-cookie copia propiedades con for...in + asignación simple. Cuando el objeto fuente es producido por JSON.parse, el miembro __proto__ del objeto JSON es una… | |
| Pendiente de análisis | Baja (2) | 0.26% | — | Thinkst CanarytokensAI | 10/6/2026 | 17/6/2026 | An HTML injection vulnerability in the "fetch links" email sent by Thinkst Applied Research Canarytokens, enabling Interface Manipulation, Cross-Site Scripting (XSS) in emails clients that render HTML emails. This issue affects Canarytokens: from Docker tag sha-c0f3cf142 before sha-08c3f93d, from Git commit c0f3cf142… |