Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2723▼ 319 respecto a la semana anterior
Críticas / altas1277▼ 191 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
14.258 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Crítica (10) | 5.0% | — | Servicenow AI PlatformAI | 27/8/2026 | 3/9/2026 | ServiceNow has remediated an improper access control vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to create or modify instance data beyond what was intended, resulting in privilege escalation. ServiceNow deployed a… | |
| Pendiente de análisis | Crítica (10) | 7.2% | — | Servicenow AI PlatformAI | 27/8/2026 | 1/9/2026 | ServiceNow has remediated a code injection vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute arbitrary code in the ServiceNow platform and gain access to, or modify, instance data beyond what was intended.… | |
| Aplazada | Alta (8.7) | 0.46% | 💥 PoC | SpeechbrainAI | 27/8/2026 | 24/9/2026 | SpeechBrain before 1.1.1 contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary code by supplying a crafted CKPT.yaml checkpoint metadata file parsed with PyYAML's unsafe loader during candidate enumeration in Checkpointer.recover_if_possible(). Attackers can embed malicious… | |
| Aplazada | Crítica (9.3) | 0.41% | — | DJI NEOAIDJI NEO 2AIDJI FlipAIDJI AIR 3AI+12 | 27/8/2026 | 28/8/2026 | DJI drones contain an FTP service that uses hardcoded credentials shared across affected models and permits authenticated users to upload files without limits on file size, file count, or total storage consumed in **/blackbox/upgrade/**, as well as overwrite existing files in that directory. An attacker with access to… | |
| Analizada | Alta (7.8) | 0.34% | — | Adobe Substance 3D Painter | 27/8/2026 | 31/8/2026 | Substance3D - Sampler versions 5.1.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Pendiente de análisis | Alta (8.2) | 0.22% | — | Gitlab AI GatewayAI | 27/8/2026 | 28/8/2026 | GitLab has remediated a vulnerability in the GitLab AI Gateway component affecting all versions of the AI Gateway from 18.9.0 to 19.0.12, 19.1 to 19.1.7, and 19.2 to 19.2.2 that could have allowed an authenticated user with Duo Agent Platform access to redirect model requests to an externally-controlled endpoint via… | |
| Aplazada | Alta (7.6) | 0.22% | — | Pg-aiguideAI | 27/8/2026 | 23/9/2026 | pg-aiguide started its MCP HTTP transport without enabling the host allow-list the underlying SDK provides. src/httpServer.ts called the shared httpServerFactory helper and never set the DNS-rebinding-protection option, so the transport accepted a request whatever host it named. A page in a browser could therefore… | |
| Aplazada | Media (5.5) | 0.69% | — | Blackms AistackAI | 27/8/2026 | 29/8/2026 | A vulnerability was identified in blackms aistack up to 1.6.1. Affected by this issue is some unknown functionality of the file src/web/server.ts of the component Static File Handler. Such manipulation of the argument req.url leads to path traversal. The attack can be executed remotely. The exploit is publicly… | |
| Analizada | Alta (7.5) | 0.35% | — | Vmware Spring AI | 27/8/2026 | 4/9/2026 | A local attacker on a multi-user host can pre-create the deterministic cache path and plant a malicious ONNX model file. Spring AI 2.0.0 Spring AI 1.1.0 - 1.1.8 Spring AI 1.0.0 - 1.0.9 | |
| Analizada | Alta (7.5) | 0.46% | — | Vmware Spring AI | 27/8/2026 | 4/9/2026 | Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError in the ingestion thread. Spring AI 2.0.0 Spring AI 1.1.0 - 1.1.8 Spring AI 1.0.0 - 1.0.9 | |
| Pendiente de análisis | Media (5.5) | 0.15% | — | Activecampaign GeneralAI | 26/8/2026 | 28/8/2026 | A flaw was found in the ipa_getkeytab module of the community.general Ansible collection. The module's bind_pw parameter, used to supply the LDAP simple-bind password when retrieving a Kerberos keytab, is not declared with no_log, unlike the sibling password parameter in the same module. As a consequence, the supplied… | |
| Pendiente de análisis | Alta (7.5) | 0.13% | — | Vanderbilt Industries Acre Security Spc5300AIVanderbilt Industries Main BoardAI | 26/8/2026 | 9/9/2026 | An issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker to cause a denial of service via spoofed TCP FIN packets without validating the sequence or acknowledgment numbers. | |
| Aplazada | Baja (3.5) | 0.28% | — | Apple MailAIApple CalendarAIApple ContactsAIHCL TravelerAI | 26/8/2026 | 28/8/2026 | The Apple profile generated for the Apple built-in Mail, Calendar and Contacts account to synchronize with HCL Traveler requires the Logon Name and Mail Address to be embedded in them. The values cannot be changed later on, so the Apple profile generation page asks for those values and reflects them back in the… | |
| Pendiente de análisis | Crítica (9.3) | 0.23% | — | Google Vertex AI Search FOR CommerceAIGoogle BigqueryAI | 26/8/2026 | 31/8/2026 | A Predictable Resource Name vulnerability in BigQuery Import Staging in Google Cloud Vertex AI Search for Commerce versions prior to 2026-04-27 on Google Cloud Platform allows an attacker knowing the victim's project number to obtain read/write access to staged data and error logs using predictable bucket names. This… | |
| Aplazada | Crítica (9.8) | 0.35% | — | Cohere North AIAI | 26/8/2026 | 3/9/2026 | An arbitrary file upload vulnerability in the /v1/my_drive/batch_upload component of cohere North AI v1.1.5 allows attackers to exeute arbitrary code via uploading a crafted file. | |
| Aplazada | Alta (7.5) | 0.26% | — | Cohere North AIAI | 26/8/2026 | 3/9/2026 | Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint. | |
| Aplazada | Crítica (9.8) | 0.28% | — | Cohere North AIAI | 26/8/2026 | 3/9/2026 | Cohere North AI v1.1.5 was discovered to contain excessively permissive cross-domain policy with untrusted domains. This occurs via the server failing to validate the Origin header of incoming connection requests. | |
| Aplazada | Alta (7.5) | 0.21% | — | Cohere North AIAI | 26/8/2026 | 3/9/2026 | Incorrect access control in Cohere North AI v1.1.5 allows attackers to arbitrarily overwrite user info via a crafted request to the /api/internal/v1/users/{{USER_ID}} endpoint | |
| Aplazada | Alta (8.8) | 0.24% | — | Lime Technology INC Unraid OSAI | 26/8/2026 | 9/9/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Lime Technology, Inc.'s Unraid OS version 6.12.14 and earlier allows remote attackers to escalate privileges via the Unraid authentication cookie's lax same-site policy. | |
| Aplazada | Crítica (9.8) | 1.2% | — | Senaite CoreAI | 26/8/2026 | 9/9/2026 | SENAITE.CORE is the core framework for the SENAITE laboratory information management system. From 2.0.0 to 2.6.0, the SENAITE.CORE JSON API permits unauthenticated remote code execution through a two-request chain involving missing authorization and unsafe evaluation. The state-changing routes in… | |
| Aplazada | Alta (8.5) | 0.39% | — | Stalwart Mail ServerAI | 26/8/2026 | 24/9/2026 | Stalwart Mail Server does not compare an OAuth redirect target against any registered destination in its default configuration. The validation routine in crates/http/src/auth/oauth/registration.rs returns success immediately when the client-authentication requirement is disabled, and that requirement is false in the… | |
| Aplazada | Alta (7.1) | 0.48% | — | Mage AIAI | 26/8/2026 | 24/9/2026 | Mage AI does not confine the paths accepted by its browser-items API to the project directory. BrowserItemResource in mage_ai/api/resources/BrowserItemResource.py passes a caller-supplied path to the filesystem read and write helpers without calling the containment helper that the sibling FileContentResource and… | |
| Aplazada | Crítica (9.8) | 0.55% | — | UI Unifi Protect AI KEYAI | 26/8/2026 | 28/8/2026 | A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect AI Key to escalate privileges on the device. | |
| Aplazada | Media (5.3) | 0.30% | — | AI EngineAI | 26/8/2026 | 26/8/2026 | The AI Engine WordPress plugin before 3.7.2 does not perform an authorisation check on one of its administration-only features, relying instead on a token it hands out to anonymous visitors, allowing unauthenticated attackers to run AI queries of their own choosing against the site owner's configured provider account. | |
| Aplazada | Alta (7.7) | 0.44% | — | AI EngineAI | 26/8/2026 | 26/8/2026 | The AI Engine WordPress plugin before 3.7.2 does not confine a caller-supplied URL when mapping it to a local filesystem path before reading the file and forwarding its contents to an external service, allowing users with a subscriber-level account to read arbitrary files from the server and exfiltrate them off-host.… |