Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2647▼ 688 respecto a la semana anterior
Críticas / altas1257▼ 290 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 277 respecto a la semana anterior
–

23.383 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.5)0.46%—Protobufjs Project Protobufjs22/6/202626/6/2026
protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 7.6.1 and 8.4.1, protobufjs could recurse without a depth limit while converting decoded messages to plain objects or JSON. This affected generated toObject() conversion and the custom google.protobuf.Any JSON conversion path. A crafted…
AnalizadaCrítica (9.3)0.61%—Misp-project Misp22/6/202623/6/2026
MISP allowed an authenticated site administrator to set the Kafka_rdkafka_config setting to an arbitrary filesystem path. MISP subsequently parsed the referenced INI file and passed its options to rdkafka. A crafted attacker-controlled configuration file could use rdkafka options such as plugin.library.paths to load…
AnalizadaAlta (8.7)0.69%—Misp-project Misp22/6/202623/6/2026
MISP allowed a site administrator to configure an arbitrary filesystem path for the NDJSON error log used by JsonLogTool. Because log entries can include attacker-controlled content, an authenticated attacker with site administrator privileges could direct log output to a PHP file in a web-accessible directory and…
AnalizadaCrítica (9.3)0.46%—Misp-project Misp22/6/202626/6/2026
The Azure Active Directory (AAD) authentication implementation contained multiple weaknesses in its OAuth 2.0 authorization flow that could allow attackers to bypass important security guarantees provided by the protocol. The application used the PHP session identifier (session_id()) as the OAuth state parameter.…
AnalizadaAlta (7.1)0.52%—Misp-project Misp22/6/202623/6/2026
MISP core contained multiple broken access-control flaws where authorization checks were performed against the wrong entity, or where ownership/editability checks were missing on write paths. In affected subsystems, a lower-privileged authenticated user with the relevant feature permission could cause the application…
AnalizadaCrítica (9.4)0.47%💥 PoCMisp-project Misp22/6/202623/6/2026
MISP Core contained broken access-control checks in the bulk deletion flows for Event Reports and Sharing Groups. The affected deleteSelection handlers authorized deletion using broad role-level permissions instead of validating authorization for each selected object. For Event Reports,…
AnalizadaMedia (5.9)0.18%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219.
AnalizadaMedia (6.9)0.13%—Libexpat Project Libexpat21/6/202623/6/2026
xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.
AnalizadaMedia (6.9)0.13%—Libexpat Project Libexpat21/6/202623/6/2026
xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.
AnalizadaMedia (6.5)0.12%—Libexpat Project Libexpat21/6/202623/6/2026
xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used.
AnalizadaMedia (6.9)0.13%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in copyString.
AnalizadaMedia (6.9)0.17%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.
AnalizadaMedia (6.9)0.17%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.
AnalizadaMedia (6.9)0.13%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in getAttributeId.
AnalizadaMedia (6.9)0.13%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in addBinding.
AnalizadaMedia (6.9)0.17%—Libexpat Project Libexpat21/6/202623/6/2026
libexpat before 2.8.2 has an integer overflow in storeAtts.
AnalizadaAlta (8.7)0.66%—Joomboost Joomproject19/6/202621/8/2026
Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive user data by exploiting the projects endpoint. Attackers can send requests to index.php with option=com_jpprojects&view=projects&tmpl=component&format=json parameters to…
AnalizadaAlta (8.8)0.49%—Gegabyte MY Projects19/6/202619/8/2026
Joomla! Component My Projects 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the VerAyari parameter. Attackers can craft requests to the component endpoint with SQL injection payloads to extract sensitive database…
AnalizadaMedia (6.9)0.10%—Libexpat Project Libexpat19/6/202623/6/2026
In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers.
AnalizadaMedia (4.9)0.18%—Libexpat Project Libexpat19/6/202623/6/2026
libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation).
AnalizadaCrítica (9.8)0.68%—Coturn Project Coturn18/6/202626/6/2026
Coturn is a free open source implementation of TURN and STUN Server. Versions prior to 4.10.0 contain a stack buffer overflow in decode_oauth_token_gcm(). A uint16_t nonce_len field read from an attacker-supplied OAuth access token (0-65535) is passed directly to memcpy() as the copy length into a 256-byte stack…
AnalizadaMedia (5.4)0.24%—Coturn Project Coturn18/6/202626/6/2026
Coturn is a free open source implementation of TURN and STUN Server. Versions prior to 4.11.0 contain a stored cross-site scripting (XSS) vulnerability in the web-admin HTTPS interface. An attacker who can create a TURN allocation with a crafted USERNAME value can inject HTML/JavaScript that executes when an…
AnalizadaMedia (5.3)0.43%—Markdown-it Project Markdown-it17/6/202624/6/2026
markdown-it is a Markdown parser. Versions 14.1.1 and below contain a denial-of-service vulnerability when typographer: true is enabled, due to quadratic (O(n^2)) processing in the smartquotes rule. The issue stems from repeatedly modifying strings with replaceAt(), which performs O(n) slicing and concatenation per…
ModificadaAlta (7.1)0.28%—Zephyrproject Zephyr17/6/202614/7/2026
Zephyr's Bluetooth Classic Hands-Free Profile (HFP) Hands-Free role parser (subsys/bluetooth/host/classic/hfp_hf.c) contains an out-of-bounds write. During Service Level Connection setup the HF sends AT+CIND=? and parses the AG's +CIND: response in cind_handle(), which assigns a per-entry counter index and calls…
ModificadaAlta (7.5)0.93%—WS Project WS17/6/202611/9/2026
ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.0.0 up to 8.21.0 are affected by a memory exhaustion DoS vulnerability. A peer can send a high volume of exceptionally small fragments and…