Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2723▼ 319 respecto a la semana anterior
Críticas / altas1277▼ 191 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
23.689 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.8) | 0.07% | — | Mongodb Entity Framework Core Provider | 17/9/2026 | 24/9/2026 | Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption settings may silently lose TLS and schema-map settings leading to protected fields being stored unencrypted in the database. | |
| Aplazada | Crítica (9) | 0.70% | — | AnyqueryAIGoogle ChromeAIBraveAIMicrosoft EdgeAI+1 | 17/9/2026 | 30/9/2026 | Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, authenticated users with INSERT or UPDATE access to affected macOS virtual tables can execute operating-system commands because the Chrome plugin and equivalent Brave, Edge, and Safari variants interpolate a SQL-controlled URL into AppleScript or… | |
| Pendiente de análisis | Alta (7.5) | 0.19% | — | Libp2p GossipsubAI | 17/9/2026 | 30/9/2026 | libp2p is a JavaScript implementation of the libp2p networking stack. From 15.0.0 until 16.0.5, @libp2p/gossipsub uses the default StrictSign policy in packages/gossipsub/src/utils/buildRawMessage.ts, where validateToRawMessage verifies a signature with attacker-controlled msg.key but skips binding that key to… | |
| Pendiente de análisis | Alta (8.7) | 0.28% | — | Google ProtobufAI | 17/9/2026 | 18/9/2026 | google-protobuf contains an unbounded recursion when parsing unknown protobuf group fields. An attacker can send a small crafted payload of deeply nested START_GROUP wire bytes to any Node.js service that calls the generated deserializeBinary() API, causing a RangeError: Maximum call stack size exceeded and crashing… | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Cologne FirmwareQualcomm Congo FirmwareQualcomm Cq7790 FirmwareQualcomm Cq7790m Firmware+71 | 17/9/2026 | 22/9/2026 | Transient DOS while parsing frame during channel usage. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Memory Corruption when validating large data buffers from external sources using addition to check buffer length. | |
| Analizada | Alta (7.3) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Information Disclosure when a pointer is reused after being deallocated. | |
| Analizada | Alta (8.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size. | |
| Analizada | Alta (7.9) | 0.06% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Transient DOS when processing unverified data from a neighboring system causes out of bound memory access. | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Snapdragon X2 Elite FirmwareQualcomm Wcd9378c Firmware+3 | 17/9/2026 | 22/9/2026 | Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Wsa8845h FirmwareQualcomm Cologne FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 Firmware+16 | 17/9/2026 | 22/9/2026 | Memory corruption when processing escape handling flow with insufficient user buffer sizes. | |
| Analizada | Alta (7.5) | 0.19% | — | Qualcomm Q-7790 FirmwareQualcomm Qam8255p FirmwareQualcomm Qam8295p FirmwareQualcomm Qamsrv1h Firmware+372 | 17/9/2026 | 22/9/2026 | Transient DOS when processing authentication frames with invalid FILS information element header lengths. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+20 | 17/9/2026 | 22/9/2026 | Memory corruption while processing rear sensor IOCTL calls. | |
| Analizada | Alta (7.4) | 0.10% | — | Qualcomm Ar8035 FirmwareQualcomm C110100 FirmwareQualcomm Cologne FirmwareQualcomm Cq7790 Firmware+148 | 17/9/2026 | 22/9/2026 | Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled. | |
| Analizada | Alta (7) | 0.06% | — | Qualcomm Wsa8845h FirmwareQualcomm Aqt1000 FirmwareQualcomm Cologne FirmwareQualcomm Fastconnect 6200 Firmware+39 | 17/9/2026 | 22/9/2026 | Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Iqx5121 FirmwareQualcomm Iqx7181 FirmwareQualcomm Qca0000 FirmwareQualcomm Qcm5430 Firmware+21 | 17/9/2026 | 22/9/2026 | Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Iqx5121 Firmware+10 | 17/9/2026 | 22/9/2026 | Memory corruption when processing decode statistics due to insufficient validation of offset against structure size. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm Cologne FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Sc8380xp Firmware+10 | 17/9/2026 | 22/9/2026 | Memory Corruption when copying large input data exceeds normal allocation limits. | |
| Aplazada | Crítica (9.1) | 0.48% | — | DjustAIDjangoAI | 16/9/2026 | 30/9/2026 | djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the live (WebSocket) transport authorizes a mount via `check_view_auth`, not Django's `View.dispatch()` chain. As a result, standard Django authorization — `LoginRequiredMixin`,… | |
| Aplazada | Alta (7.1) | 0.37% | — | NangoAI | 16/9/2026 | 22/9/2026 | Nango through 0.70.4 fails to validate caller-supplied connection configuration values interpolated into provider token and proxy URL templates. Authenticated attackers can supply malicious configuration values to direct server requests at internal addresses or cloud metadata endpoints, potentially exfiltrating… | |
| Aplazada | Alta (8.6) | 0.45% | — | GoadminAI | 16/9/2026 | 22/9/2026 | GoAdmin through 1.2.26 fails to properly anchor the logout pattern when checking permissions, allowing authenticated users to bypass permission checks by appending a query parameter. Attackers can append a query string containing the admin prefix followed by /logout to reach administrative endpoints and perform… | |
| Pendiente de análisis | Media (6.3) | 0.38% | — | Opentelemetry GOAI | 16/9/2026 | 30/9/2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.21.0, the go.opentelemetry.io/otel/sdk/log BatchingProcessor can enter a tight CPU loop when attacker-driven log emission fills its asynchronous export buffer while the exporter is backpressured. NewBatchingProcessor wraps the exporter with… | |
| Pendiente de análisis | Media (6.3) | 0.20% | — | Opentelemetry-goAI | 16/9/2026 | 30/9/2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.21.0, the exporters/otlp/otlplog/otlploggrpc package loads OTEL_EXPORTER_OTLP_LOGS_CERTIFICATE, OTEL_EXPORTER_OTLP_CERTIFICATE, and related client certificate environment variables through loadEnvTLS into cfg.tlsCfg, but newGRPCDialOptions… | |
| Pendiente de análisis | Media (5.1) | 0.18% | — | Opentelemetry GOAI | 16/9/2026 | 30/9/2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. From version 1.10.0 until 1.33.0, the sdk/trace/span.go attribute truncation path can fail to enforce AttributeValueLengthLimit for string and string-slice attributes containing the valid Unicode replacement character U+FFFD. safeTruncateValidUTF8 treats the… | |
| Aplazada | Baja (2) | 0.19% | — | Opentelemetry-goAI | 16/9/2026 | 30/9/2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. From version 1.5.0 to 1.44.0, sdk/trace.NewTracerProvider emits a TracerProvider created internal Info-level diagnostic event whose MarshalLog implementations recursively include span processor, exporter, and client configuration. Applications that call… |