Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2674▼ 561 respecto a la semana anterior
Críticas / altas1270▼ 252 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)217▼ 222 respecto a la semana anterior
–

23.384 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.93%—WS Project WS17/6/202611/9/2026
ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.0.0 up to 8.21.0 are affected by a memory exhaustion DoS vulnerability. A peer can send a high volume of exceptionally small fragments and…
AnalizadaMedia (6.1)0.34%—Carrierwave Project Carrierwave17/6/202618/6/2026
CarrierWave is a framework to upload files from Ruby applications. In versions prior to 2.2.7 and 3.1.3, the content_type_denylist check fails to escape regex metacharacters in string entries, causing the denylist to silently not match the content types it is intended to block. In…
AnalizadaAlta (8.8)0.43%—Oracle Project Portfolio Analysis17/6/202618/6/2026
Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Project Portfolio…
AnalizadaAlta (8.8)0.43%—Oracle Project Portfolio Analysis17/6/202618/6/2026
Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Project Portfolio…
AnalizadaAlta (7.2)0.49%—Oracle Project Portfolio Analysis17/6/202618/6/2026
Vulnerability in the Oracle Project Portfolio Analysis product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Project Portfolio…
ModificadaAlta (7.1)0.37%—Zephyrproject Zephyr16/6/202614/7/2026
Zephyr's IPv6 Neighbor Discovery send paths (net_ipv6_send_na, net_ipv6_send_ns, net_ipv6_send_rs in subsys/net/ip/ipv6_nbr.c) updated the per-interface ICMP-sent statistics by calling net_pkt_iface(pkt) after net_send_data(pkt) had already returned successfully. On the success path the network stack owns and releases…
ModificadaMedia (4.8)0.23%—Zephyrproject Zephyr16/6/20266/8/2026
In Zephyr's native IPv4 stack, icmpv4_handle_echo_request() in subsys/net/ip/icmpv4.c builds an echo-reply packet (reply), hands it to net_try_send_data(), and then, on success, calls net_stats_update_icmp_sent(net_pkt_iface(reply)). net_try_send_data() transfers ownership of reply to the TX path (net_if_try_queue_tx…
ModificadaAlta (7.5)0.35%—Zephyrproject Zephyr16/6/202617/7/2026
subsys/net/ip/icmpv6.c reads the network interface from a net_pkt after that packet has been handed to net_try_send_data(). In icmpv6_handle_echo_request() and net_icmpv6_send_error(), the post-send statistics update calls net_pkt_iface(reply)/net_pkt_iface(pkt) on the just-sent packet. The send path…
ModificadaAlta (7.1)0.30%—Zephyrproject Zephyr16/6/202614/7/2026
subsys/net/ip/ipv6_mld.c:mld_send() read the packet interface via net_pkt_iface(pkt) after net_send_data(pkt) returned successfully. Per the network stack's ownership contract (include/zephyr/net/net_core.h, and the explicit warning in subsys/net/ip/net_core.c:453-460 'do not use pkt after that call'), a successful…
ModificadaBaja (3.7)0.31%—Zephyrproject Zephyr16/6/202614/7/2026
In Zephyr's IPv4 IGMP implementation, igmp_send() in subsys/net/ip/igmp.c read the network interface back out of the packet via net_pkt_iface(pkt) after the packet had been handed to net_send_data(). On the successful-send path the packet's last reference may already have been released by the L2 driver or by the…
ModificadaMedia (6.3)0.16%—Zephyrproject Zephyr16/6/202614/7/2026
On Xtensa targets with CONFIG_USERSPACE and CONFIG_XTENSA_MMU, the page-table code (arch/xtensa/core/ptables.c) maintains a global list, xtensa_domain_list, of active memory domains using a list node embedded inside the caller-owned struct k_mem_domain. When a domain is destroyed via k_mem_domain_deinit() ->…
AplazadaAlta (7.5)0.29%—ProjectopiaAI15/6/202617/6/2026
Custom role Insecure Direct Object References (IDOR) in Projectopia <= 5.1.25.2 versions.
ModificadaMedia (5.3)0.27%—Zephyrproject Zephyr15/6/20266/8/2026
Zephyr's native TCP stack iterates the global connection list in net_tcp_foreach() (subsys/net/ip/tcp.c) using the SYS_SLIST_FOR_EACH_CONTAINER_SAFE macro, which caches a pointer to the next list node. Prior to this fix the function released tcp_lock while invoking the per-connection callback and re-acquired it…
ModificadaMedia (5.5)0.19%—Redhat Automatic BUG Reporting ToolFedoraproject FedoraRedhat Enterprise Linux13/6/202621/9/2026
Se encontró una vulnerabilidad de inyección de contenido en los scripts del gestor de eventos post-creación de ABRT en libreport. El script de evento consulta el registro de systemd en busca de entradas de registro que coincidan con el proceso bloqueado y escribe los resultados en archivos en el directorio de volcado…
ModificadaAlta (7.8)0.23%—Redhat Automatic BUG Reporting ToolFedoraproject FedoraRedhat Enterprise Linux13/6/202621/9/2026
Una vulnerabilidad de seguimiento de enlaces simbólicos fue encontrada en los scripts del gestor de eventos post-creación de ABRT en libreport. Los scripts de eventos escriben archivos de salida usando redirecciones de shell sin la bandera O_NOFOLLOW. Si el archivo objetivo es reemplazado por un enlace simbólico, el…
AplazadaAlta (7.1)0.27%—Misp-project MispAI12/6/202617/6/2026
MISP contains an insecure default configuration in which the Security.check_sec_fetch_site_header control is disabled. When this setting is disabled, state-changing requests such as POST, PUT, or AJAX requests are not restricted based on the browser-provided Sec-Fetch-Site header. A remote unauthenticated attacker…
AnalizadaAlta (7.2)0.10%—Docker EngineMobyproject MobyMobyproject Moby/v212/6/202617/6/2026
Moby is an open source container framework. In Docker Engine prior to version 29.5.1, Docker Daemon versions 28.5.2 and prior, and Moby Daemon prior to version 2.0.0-beta.14, a race condition during docker cp mount setup allows a malicious container to redirect a bind mount target to an arbitrary host path,…
AnalizadaMedia (6.1)0.10%—Docker EngineMobyproject MobyMobyproject Moby/v212/6/202617/6/2026
Moby is an open source container framework. In Docker Engine prior to version 29.5.1, Docker Daemon versions 28.5.2 and prior, and Moby Daemon prior to version 2.0.0-beta.14, a race condition during docker cp mount setup allows a malicious container to create empty files or directories at arbitrary absolute paths on…
AplazadaAlta (7.5)0.49%—Crypt Pbkdf2 Project Crypt Pbkdf2AI12/6/202617/6/2026
Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography.
Pendiente de análisisAlta (7.6)0.68%—389 Project 389 Directory ServerAIFreeipaAIRedhat Identity ManagementAI11/6/202615/7/2026
An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to a crafted SASL packet length prefix of 0xFFFFFFFC causes unsigned wraparound to zero, bypassing the nsslapd-maxsasliosize limit and leading to a heap buffer overflow of…
AplazadaMedia (5.1)0.41%—Cerebrate-project CerebrateAI11/6/202617/6/2026
Cerebrate before version 1.37 exposed credential material from self-registration requests. The self-registration workflow stored the registrant’s hashed password in the inbox message data payload. This payload was returned unredacted through inbox index and view responses, including HTML, JSON, and CSV outputs, and…
AplazadaMedia (6.3)0.35%—Cerebrate-project CerebrateAI11/6/202617/6/2026
Cerebrate before version 1.37 allowed the id primary key field to be supplied through request input during CRUD edit operations and certain custom entity patching flows. In affected entities that did not explicitly mark id as inaccessible, an authenticated attacker could submit a crafted edit request containing the id…
AplazadaAlta (8.7)0.43%—Cerebrate-project CerebrateAI11/6/202623/7/2026
Cerebrate antes de la versión 1.37 contiene una vulnerabilidad de asignación masiva en la ruta genérica de adición CRUD. El gestor add() intentó eliminar un id proporcionado por el atacante de $params antes de normalizar la solicitud a través de __massageInput(). Debido a que el $input normalizado aún podía contener…
Pendiente de análisisMedia (6.5)0.35%—389 Project 389 Directory ServerAI10/6/202630/6/2026
A heap buffer overflow flaw was found in 389 Directory Server. When serializing objectclass definitions, the oc_superior (SUP) field length is omitted from buffer size calculations in read_schema_dse() and schema_oc_to_string(), but the field is still written via strcat(). An attacker with Directory Manager…
AnalizadaMedia (6.5)0.37%—Lldpd Project Lldpd9/6/202623/7/2026
lldpd es una implementación de IEEE 802.1ab (LLDP). Antes de la versión 1.0.22, lldpd_decode() en src/daemon/lldpd.c elimina las etiquetas VLAN 802.1Q de las tramas Ethernet recibidas al llamar a memmove() para desplazar la carga útil de la trama 4 bytes a la izquierda. El tercer argumento (recuento de bytes) es s - 2…