Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

9650 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.5)0.33%—Synacor Zimbra Collaboration Suite13/8/202628/8/2026
In Zimbra Collaboration before 10.1.17, a local file inclusion (LFI) vulnerability exists in the Zimbra Classic Web Client due to improper validation of the fu request parameter. An unauthenticated attacker can exploit this vulnerability by supplying a crafted path, potentially allowing unauthorized disclosure of…
AnalizadaMedia (6.5)0.45%—Synacor Zimbra Collaboration Suite13/8/202628/8/2026
In Zimbra Collaboration (ZCS) before 10.1.17, a path traversal vulnerability exists in the Zimbra Briefcase document editing functionality due to improper validation of the packages parameter. An authenticated attacker can exploit this vulnerability by supplying a crafted path traversal sequence, potentially allowing…
AnalizadaMedia (6.1)0.26%—Synacor Zimbra Collaboration Suite13/8/202628/8/2026
In Zimbra Collaboration (ZCS) before 10.1.17, a stored cross-site scripting (XSS) vulnerability exists in the Zimbra Classic Web Client due to insufficient sanitization of specific attachment content during inline preview. An attacker can send a crafted email containing a malicious attachment that, when previewed by a…
AnalizadaMedia (4.3)0.26%—Synacor Zimbra Collaboration Suite13/8/202628/8/2026
An authorization bypass vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.17 due to improper authorization validation in delegated email sending functionality. An authenticated attacker can send specially crafted SOAP requests to impersonate another user and send emails without possessing the required…
AnalizadaAlta (8.9)72%⚠ Explotación activa💥 ExploitSynacor Zimbra Collaboration Suite13/8/202624/8/2026
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted…
AplazadaAlta (8.1)0.37%—Inspireui Mstore APIAI13/8/202614/8/2026
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
AnalizadaMedia (6.3)0.20%—Mongodb Odbc DriverMongodb SQL Schema Builder CLI12/8/202629/9/2026
MongoDB Schema Manager and MongoDB Atlas SQL ODBC Driver do not validate the scheme of the authorization and token endpoints returned by an OIDC issuer's discovery document. A user induced to connect to an uncontrolled MongoDB deployment using MONGODB-OIDC authentication may have an uncontrolled URI dispatched to…
AnalizadaMedia (6.8)0.12%—Mongodb SQL Schema Builder CLI12/8/202629/9/2026
MongoDB SQL Schema Builder CLI records its startup configuration to standard output and, when file logging is enabled, to a log file on disk. Certain connection settings were written without redaction, so authentication material supplied by the operator could appear in plaintext in that diagnostic output. A local user…
AplazadaCrítica (9.9)0.65%—Semaphore UIAI12/8/20269/9/2026
Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.17 and 2.19.5-beta2, repository git_url handling passes an attacker-controlled --upload-pack option to CmdGitClient.GetLastRemoteCommitHash through POST /api/project/{id}/repositories and scheduled commit-hash polling, allowing a project Manager…
AplazadaAlta (8.8)0.57%—Semaphore UIAI12/8/20269/9/2026
Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.19 and from 2.19.0-alpha3 until 2.19.5-beta5, ProjectMiddleware and GetProjectOrGlobalRoleBySlug allow a project manager to use POST /api/project/{id}/roles to create a custom manager role with permission bitmask 15, overriding the built-in…
AplazadaAlta (8.3)0.23%💥 PoCSemaphore UIAI12/8/20269/9/2026
Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.21, the /api/users/{id}/password endpoint accepts a cross-site request using the authenticated user's semaphore session cookie without CSRF protection or current-password confirmation, allowing an unauthenticated attacker to change an…
AplazadaMedia (6.3)0.42%—Joomshaper SP Page BuilderAI12/8/202626/8/2026
Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated attacker can create comments on instances with disabled guest commenting by overriding the setting in question with user supplied input.
AplazadaMedia (6.3)0.52%—Joomshaper SP Page BuilderAI12/8/202626/8/2026
Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creation and file write in SP Page Builder < 6.8.0 - An unauthenticated attacker can create arbitrary directories and files with a predefined name.
AplazadaCrítica (9.2)0.51%—Joomshaper SP Page BuilderAI12/8/202626/8/2026
Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can perform includes to arbitrary PHP files that are accessible by the system.
AplazadaMedia (5.3)0.16%—Fullworksplugins Quick Paypal PaymentsAI12/8/202626/8/2026
The Quick Paypal Payments WordPress plugin through 5.7.50 does not verify the paid amount, receiver, or payment status in its PayPal IPN handler and marks an order paid on an order-token match alone, so a buyer who pays an arbitrary small amount can have a full-price order marked paid.
AplazadaBaja (2.3)0.37%—Temporal UI ServerAI11/8/20268/9/2026
When OAuth authentication is enabled and browser-facing TLS terminates at a reverse proxy that forwards the callback to Temporal UI Server over HTTP, affected versions derive authentication-cookie Secure attributes from the proxy-to-server connection. Temporal UI Server can therefore issue access-token cookies, and…
AplazadaCrítica (10)0.82%—LiquidjsAI11/8/202616/9/2026
LiquidJS is a Shopify/GitHub Pages compatible template engine. Prior to version 10.26.0, it is possible to execute arbitrary code with crafted templates. Version 10.26.0 patches the issue.
Pendiente de análisisMedia (5.4)0.16%—EquitritonAI11/8/202612/8/2026
Uncontrolled search path for some EquiTriton before version f5ddbb5 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access…
AplazadaAlta (8.8)0.43%—Pimcore Admin-ui-classic-bundleAI11/8/20263/9/2026
An SQL injection vulnerability in Pimcore admin-ui-classic-bundle through version 2.3 allows authenticated backend users to execute arbitrary SQL via the DataObject grid id column filter. The filter value is concatenated directly into the SQL WHERE clause without parameterization. An attacker with backend access can…
AplazadaAlta (8.4)0.15%—Asus GPU Tweak IIIAIAsus GPU Tweak IIAIAsus AI Suite 3AIAsus VgadllAI11/8/202617/9/2026
Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the ' Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3,…
Pendiente de análisisMedia (6.1)0.38%—Sapui5AI11/8/202626/8/2026
SAPUI5 allows a key user with content adaptation privileges to inject malicious script content into persisted application changes. When another user subsequently opens the adapted application, the injected script executes in the victim's browser session. Successful exploitation could allow the attacker to access…
AplazadaCrítica (9.8)2.0%—Alseambusher Crontab-uiAI10/8/202628/8/2026
An OS command injection vulnerability in alseambusher/crontab-ui through 0.4.2 allows an unauthenticated remote attacker to inject arbitrary cron job entries by sending a crafted GET request to /crontab with URL-encoded newlines in the env_vars parameter.
AplazadaCrítica (9.8)1.9%—Alseambusher Crontab-uiAI10/8/202628/8/2026
An OS command injection vulnerability in alseambusher/crontab-ui through 0.4.2 allows an unauthenticated remote attacker to execute arbitrary system commands by importing a crafted crontab database file. The POST /import endpoint accepts arbitrary .db files and overwrites the application database without validation.
AplazadaBaja (1.9)0.17%—Nikolaibibo Claude-comfyui-mcpAI9/8/202613/8/2026
A vulnerability was identified in Nikolaibibo claude-comfyui-mcp 1.0.0. Affected is the function copyFileSync of the file src/tools/utils.ts of the component comfy_upload_image. Such manipulation of the argument image_path leads to path traversal. An attack has to be approached locally. The project was informed of the…
AplazadaMedia (4.8)0.17%—Pv-bhat Gemsuite-mcpAI9/8/202612/8/2026
A vulnerability was found in PV-Bhat gemsuite-mcp 1.0.0. Affected by this issue is some unknown functionality of the file src/handlers/unified-gemini.ts of the component gemini_search/gemini_reason/gemini_process/gemini_analyze. The manipulation of the argument file_path/file_paths results in path traversal. The…