Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2697▼ 350 respecto a la semana anterior
Críticas / altas1260▼ 214 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
8468 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.24% | — | Redhat Directory ServerRedhat 389 Directory ServerRedhat Enterprise Linux | 8/6/2026 | 23/7/2026 | Se encontró una vulnerabilidad en 389 Directory Server. El plugin de búsqueda persistente de sincronización de contenido permite un crecimiento ilimitado de la memoria cuando un cliente autenticado deja de leer las respuestas de sincronización, lo que permite la denegación de servicio. Condiciones de carrera… | |
| Pendiente de análisis | Alta (8.3) | 0.52% | — | Altium Enterprise ServerAIAltium 365AI | 5/6/2026 | 23/7/2026 | Una vulnerabilidad de salto de ruta existe en el endpoint de descarga del Servicio de Proyectos compartido por Altium Enterprise Server y Altium 365. Un usuario autenticado puede proporcionar un parámetro de ruta manipulado que omite la validación, permitiendo que archivos arbitrarios (incluyendo directorios completos… | |
| Pendiente de análisis | Crítica (10) | 1.1% | — | Altium Enterprise ServerAIAltium 365AI | 5/6/2026 | 23/7/2026 | Una vulnerabilidad de salto de ruta existe en el componente de Servicio Git compartido por Altium Enterprise Server y Altium 365. El servicio acepta una secuencia de operaciones de manipulación de archivos post-clonación que utilizan rutas proporcionadas por el usuario sin validación, permitiendo a un usuario… | |
| Pendiente de análisis | Alta (8.3) | 0.23% | — | Altium Enterprise ServerAIAltium 365AI | 5/6/2026 | 23/7/2026 | Una vulnerabilidad de falsificación de petición del lado del servidor (SSRF) existe en un componente de servicio GraphQL compartido por Altium Enterprise Server y Altium 365. Un usuario autenticado puede enviar una petición cuya entrada es tratada como una URL por el servidor y utilizada para emitir una petición HTTP… | |
| Pendiente de análisis | Crítica (9.4) | 0.32% | — | Altium Enterprise Server Collaboration ServiceAI | 5/6/2026 | 23/7/2026 | Una vulnerabilidad de salto de ruta existe en el Servicio de Colaboración de Altium Enterprise Server debido al manejo inadecuado de nombres de archivo proporcionados por el usuario en los flujos de descarga de archivos MCAD y de Simulación. Un usuario autenticado regular puede enviar un mensaje de colaboración que… | |
| Analizada | Crítica (10) | 0.71% | — | Altium On-prem Enterprise Server | 5/6/2026 | 23/7/2026 | Dos vulnerabilidades de salto de ruta en el Servicio de Instalación de Red (NIS) de Altium Enterprise Server permiten a un atacante de red no autenticado escribir archivos arbitrarios en cualquier ubicación con permisos de escritura en el sistema de archivos del servidor y leer archivos de paquetes archivados del… | |
| Analizada | Crítica (9.4) | 0.55% | — | Altium On-prem Enterprise Server | 5/6/2026 | 23/7/2026 | Una vulnerabilidad de salto de ruta existe en el UploadController del servicio Altium Enterprise Server Vault debido a una validación incorrecta de un componente de ruta controlado por el usuario en las solicitudes de carga de imágenes. Un usuario autenticado puede proporcionar una ruta absoluta manipulada de modo que… | |
| Analizada | Crítica (10) | 0.48% | — | Altium On-prem Enterprise Server | 5/6/2026 | 17/6/2026 | A hard-coded cryptographic key is used by Altium Enterprise Server to sign file download URLs in the Vault service. Because the key is identical across all installations, an unauthenticated network attacker who can reach the server can forge valid download signatures and retrieve files from the Vault storage area… | |
| Modificada | Alta (7.8) | 0.20% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 27/7/2026 | An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A client that requests multiple DRI2BufferBackLeft attachments and one DRI2BufferFrontLeft can trigger an out-of-bounds heap write. This may be used to crash the server, or for privilege escalation if the… | |
| Modificada | Media (5.5) | 0.14% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, leading to information disclosure. | |
| Modificada | Media (5.5) | 0.13% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong size validation check can read a client-controlled number of bytes, exceeding the request buffer, leading to information disclosure. A write path also exists but requires byte-swapped clients which… | |
| Modificada | Alta (7.8) | 0.20% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multiple SyncCounters can trigger a use-after-free when destroying those counters via a second client connection while changing those counters. This may be used to crash the server, or for privilege… | |
| Modificada | Alta (7.8) | 0.20% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple SyncCounters and awaits on those triggers can trigger a use-after-free when destroying those counters via a second client connection. This may be used to crash the server, or for privilege escalation if… | |
| Modificada | Alta (7.8) | 0.22% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-size stack buffer mapWidths[256] indexed by key type index. The helper function CheckKeyTypes() writes to this buffer at a client-controlled offset, allowing a stack buffer overflow. This may be used to… | |
| Modificada | Alta (7.8) | 0.22% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes() does not verify or clamp non-canonical key types to XkbMaxShiftLevel. A client can change key types to excessive shift levels and trigger… | |
| Modificada | Alta (7.8) | 0.20% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence,… | |
| Modificada | Alta (7.8) | 0.21% | — | X.org X ServerX.org XwaylandRedhat Enterprise Linux | 5/6/2026 | 5/8/2026 | A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the libXfont2 library's maximum font name length can cause a stack buffer overflow during font alias resolution. The server allocates a 256 byte stack buffer but libXfont2's alias target name length is… | |
| Pendiente de análisis | Media (6.1) | 0.28% | — | Northern.tech Cfengine EnterpriseAI | 2/6/2026 | 22/7/2026 | Northern.tech CFEngine Enterprise 3.24.3 antes de 3.24.4 y 3.27.0 antes de 3.27.1 permite XSS. | |
| Aplazada | Media (6.3) | 0.39% | — | Nextcloud ServerAINextcloud Enterprise ServerAI | 1/6/2026 | 22/7/2026 | Nextcloud es una plataforma de colaboración de contenido de código abierto. En Nextcloud Servidor, desde las versiones 32.0.0 hasta antes de la 32.0.9, y de la 33.0.0 hasta antes de la 33.0.3, cuando un usuario malicioso tiene acceso a un recurso compartido de archivos de un usuario, podría usar este token de recurso… | |
| Aplazada | Baja (2.6) | 0.31% | — | Nextcloud ServerAINextcloud Enterprise ServerAI | 1/6/2026 | 22/7/2026 | Nextcloud es una plataforma de colaboración de contenido de código abierto. En Nextcloud Server desde las versiones 32.0.0 hasta antes de la 32.0.7 y 33.0.0 hasta antes de la 33.0.1, una comprobación de acceso faltante a nivel de API permitió añadir círculos desconocidos por su ID directamente a otros círculos. Dado… | |
| Pendiente de análisis | Crítica (9.3) | 0.78% | — | National Instruments Systemlink EnterpriseAI | 29/5/2026 | 22/7/2026 | Hay una vulnerabilidad de omisión de autenticación en la aplicación NI SystemLink Enterprise Dashboard que puede permitir a un atacante remoto no autenticado omitir los controles de autenticación, lo que lleva a una escalada de privilegios o revelación de información. La explotación exitosa requiere que un atacante… | |
| Modificada | Crítica (9.8) | 1.8% | 💥 PoC | Redhat Openshift Container PlatformSambaRedhat Enterprise Linux | 28/5/2026 | 18/9/2026 | A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell… | |
| Aplazada | Baja (3.7) | 0.30% | — | Northern.tech Mender Enterprise ServerAI | 27/5/2026 | 17/6/2026 | Northern.tech Mender Enterprise Server before 4.1.1 has Incorrect Access Control. | |
| Modificada | Media (5.5) | 0.14% | — | IBM APP Connect Enterprise | 27/5/2026 | 17/6/2026 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.0 stores potentially sensitive information in log files that could be read by a local user. | |
| Modificada | Media (6.5) | 0.94% | — | Redhat Openshift Container PlatformSambaRedhat Enterprise Linux | 27/5/2026 | 1/10/2026 | A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections by preventing modification of files after a configurable grace period. Due to insufficient validation during rename operations, an authenticated user with write access to a share could overwrite a… |