Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2712▼ 359 respecto a la semana anterior
Críticas / altas1261▼ 231 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)213▼ 109 respecto a la semana anterior
14.266 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.5) | 0.97% | — | In2code PowermailAI | 25/8/2026 | 28/9/2026 | La extensión pasa el valor en bruto de un campo de formulario configurado como 'Este campo contiene el nombre del remitente' directamente a una Vista Fluid como fuente de plantilla, sin ninguna sanitización, y lo renderiza. Un usuario anónimo, no autenticado, puede enviar sintaxis de plantilla Fluid en ese campo para… | |
| Aplazada | Alta (8.7) | 0.66% | — | Getgrav Grav-plugin-emailAI | 25/8/2026 | 31/8/2026 | The Grav Email plugin (getgrav/grav-plugin-email) before 4.2.2 renders page-editor-controlled Email action parameters as unsandboxed Twig templates. An authenticated remote user with only api.access and api.pages.write permissions can place a Twig expression in header.form.process.email.body, publish the page, and… | |
| Aplazada | Alta (7.5) | 0.42% | — | Siteleads Lead Generation Contact Widget AND AI ChatbotAI | 24/8/2026 | 26/8/2026 | Unauthenticated Sensitive Data Exposure in Lead Generation Contact Widget & AI Chatbot: Chat Button, Phone Call, Telegram, Email – SiteLeads <= 1.2.0 versions. | |
| Aplazada | Alta (8.8) | 0.46% | — | Liquidlabs MagicaiAI | 24/8/2026 | 26/8/2026 | Subscriber Local File Inclusion in MagicAI for WordPress - AI Text, Image, Chat, Code, and Voice Generator <= 1.4 versions. | |
| Aplazada | Crítica (9.9) | 0.48% | — | UltimateaiAI | 24/8/2026 | 27/8/2026 | Subscriber Arbitrary File Upload in UltimateAI <= 3.1.0 versions. | |
| Aplazada | Media (4.3) | 0.34% | — | DjangoAITorchbox WagtailAI | 24/8/2026 | 9/9/2026 | Wagtail is an open source content management system built on Django. Prior to versions 7.0.9, 7.3.4, 7.4.3, and 8.0rc2 on their respective release lines, the internal Pages admin API returns page fields declared in api_fields without sufficient access control, allowing a user with Wagtail admin access to retrieve… | |
| Pendiente de análisis | Media (6.4) | 0.11% | — | Zephyr RtosAINXP Mailbox DriverAI | 24/8/2026 | 26/8/2026 | The userspace syscall verifier z_vrfy_mbox_send() in drivers/mbox/mbox_handlers.c validated the nested msg->data/msg->size fields by reading them directly out of live userspace memory, and then forwarded the original, still-mutable userspace struct mbox_msg * pointer to z_impl_mbox_send() and the underlying driver.… | |
| Aplazada | Baja (2.1) | 0.57% | — | Bytebot-ai BytebotAI | 24/8/2026 | 27/8/2026 | A vulnerability was identified in bytebot-ai bytebot 0.0.1. The affected element is an unknown function of the component Agent Execution Workflow. Such manipulation leads to infinite loop. The attack may be performed from remote. The exploit is publicly available and might be used. This vulnerability only affects… | |
| Aplazada | Alta (8.4) | 0.38% | — | Informatik.hu-berlin FlairAI | 24/8/2026 | 24/9/2026 | The official Flair wheels for 0.15.0 and 0.15.1 still contain flair/models/clustering.py, whose ClusteringModel.load static method returns pickle.loads(joblib.load(str(model_file))) and so executes arbitrary Python while loading a model file. Loading a model supplied by an attacker therefore runs that attacker's code… | |
| Aplazada | Media (5.3) | 0.29% | — | RepairbuddyAI | 24/8/2026 | 24/8/2026 | Unauthenticated Broken Access Control in RepairBuddy <= 4.1223 versions. | |
| Aplazada | Media (6) | 0.24% | — | DJI NEOAIDJI NEO 2AIDJI FlipAIDJI AIR 3AI+12 | 24/8/2026 | 26/8/2026 | The HTTP media server on DJI drones does not enforce sufficient limits on incoming connections or request rates. An attacker with access to the drone's internal network can exhaust the server's connection pool by repeatedly requesting a stored media file, preventing the server from handling legitimate requests and… | |
| Aplazada | Alta (8.5) | 0.23% | 💥 PoC | DJI NEOAIDJI NEO 2AIDJI FlipAIDJI AIR 3AI+12 | 24/8/2026 | 26/8/2026 | DJI drones expose an unauthenticated DUML command interface over Bluetooth that allows an attacker within Bluetooth range to modify Wi-Fi configuration parameters, including the SSID, PSK, MAC address, regulatory country code, and wireless channel. An attacker can overwrite the Wi-Fi PSK with a known value and connect… | |
| Aplazada | Alta (8.7) | 0.41% | — | DJI NEOAIDJI NEO 2AIDJI FlipAIDJI AIR 3AI+12 | 24/8/2026 | 26/8/2026 | The HTTP media server running on DJI drones serves stored photos and videos through the `/v2` endpoint without authenticating the requesting client. Filenames follow a predictable pattern, allowing an attacker who joins the drone's internal network to enumerate valid filenames and exfiltrate stored photos and videos.… | |
| Aplazada | Media (5.3) | 0.45% | — | Rexrainbow Phaser3-rex-notesAI | 24/8/2026 | 24/8/2026 | A vulnerability was identified in rexrainbow phaser3-rex-notes up to 1.80.17. This vulnerability affects the function SetValue of the file plugins/utils/object/SetValue.js of the component BehaviorTree Blackboard Data Interface. Such manipulation of the argument key leads to improperly controlled modification of… | |
| Aplazada | Baja (3.7) | 0.41% | — | Apache Appsamurai UtilAI | 23/8/2026 | 26/8/2026 | Apache::AppSamurai::Util versions through 1.01 for Perl generate predictable session authentication keys from the clock and process id in CreateSessionAuthKey. CreateSessionAuthKey runs five rounds of SHA-256, each over a fresh Time::HiRes reading formatted to six decimal places, the running digest, and the process… | |
| Pendiente de análisis | Media (5.3) | 0.25% | — | Infineon Airoc Wifi DriverAI | 22/8/2026 | 26/8/2026 | The Infineon Airoc Wi-Fi driver's transmit callback airoc_mgmt_send() in drivers/wifi/infineon/airoc_wifi.c allocates a net_buf from the fixed airoc_pool for every outbound packet. When whd_network_send_ethernet_data() returns a synchronous failure, the underlying WHD library does not take ownership of the buffer, but… | |
| Aplazada | Media (6.4) | 0.33% | — | Ibericode Mailchimp FOR WordpressAI | 22/8/2026 | 24/8/2026 | The MC4WP: Mailchimp for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form response message post meta fields (e.g., 'text_subscribed', 'text_error') in all versions up to, and including, 4.12.0 due to insufficient input sanitization and output escaping. This makes it possible for… | |
| Aplazada | Crítica (9.8) | 0.79% | — | Mailgun FOR WordpressAI | 22/8/2026 | 25/8/2026 | The Mailgun for WordPress plugin for WordPress is vulnerable to Server-Side Request Forgery (SSRF) via path traversal in versions up to and including 2.2.0. This is due to insufficient input validation in the add_list() function, which accepts user-controlled array keys from $_POST['addresses'], passes them through… | |
| Aplazada | Crítica (9.4) | 0.09% | 💥 PoC | DJI NEOAIDJI NEO 2AIDJI FlipAIDJI AIR 3AI+12 | 21/8/2026 | 26/8/2026 | DJI drones transmit DUML (DJI Universal Markup Language) protocol messages over BLE (Bluetooth Low Energy) without encryption. When a client attempts to connect to the drone over Wi-Fi, or when the drone is switched to QuickTransfer mode, the DJI Fly application exchanges DUML messages with the drone over BLE,… | |
| Aplazada | Alta (8.7) | 0.51% | — | Stability AI Stable Diffusion WebuiAI | 21/8/2026 | 24/9/2026 | to_abs_path in scripts/iib/tool.py normalised the requested path with os.path.normpath, which collapses dot segments but does not resolve symbolic links. A symlink placed inside a scanned directory therefore satisfies the containment comparison performed by is_path_trusted in scripts/iib/api.py while pointing outside… | |
| Aplazada | Crítica (9.9) | 0.48% | — | Linuxcontainers IncusAI | 21/8/2026 | 18/9/2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, a malicious image containing a `metadata.yaml` symlink pointing to an arbitrary host path allows an authenticated Incus user to read or overwrite any file on the host as root via the instance metadata API. The `exec-output` and… | |
| Aplazada | Crítica (9.9) | 0.66% | — | Linuxcontainers IncusAI | 21/8/2026 | 18/9/2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, an unprivileged, project-confined Incus user (a non-admin TLS/RBAC identity with `can_create_images` and `can_create_instances`) can execute arbitrary code as root on the host. A crafted image ships `backup.yaml` as a symlink to a host… | |
| Aplazada | Crítica (9.9) | 0.44% | — | Linuxcontainers IncusAI | 21/8/2026 | 18/9/2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the project restriction check (`AllowInstanceCreation`) runs BEFORE the source instance's configuration is merged into the request. Dangerous configuration keys (including `security.privileged`,… | |
| Aplazada | Crítica (9.9) | 0.42% | — | Linuxcontainers IncusAI | 21/8/2026 | 18/9/2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster member, user-supplied configuration overrides (including security-critical keys like `security.privileged` and `raw.lxc`) are applied without any project restriction enforcement, allowing a… | |
| Aplazada | Crítica (9.9) | 0.52% | — | Linuxcontainers IncusAI | 21/8/2026 | 18/9/2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, improper validation of user-provided `block.create_options` in storage volume configuration leads to argument injection in the constructed filesystem creation command line. This allows a project-scoped user to inject arbitrary arguments… |