Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
–

110 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.1)0.53%—Backstage Backend-defaultsAIBackstage Plugin-scaffolder-backendAIBackstage Plugin-scaffolder-nodeAI21/1/202615/7/2026
Backstage is an open framework for building developer portals. Multiple Scaffolder actions and archive extraction utilities were vulnerable to symlink-based path traversal attacks. An attacker with access to create and execute Scaffolder templates could exploit symlinks to read arbitrary files via the `debug:log`…
AnalizadaMedia (6.9)0.27%—Vertikalsystems Hospital Manager Backend Services29/10/202517/6/2026
Prior to September 19, 2025, the Hospital Manager Backend Services returned verbose ASP.NET error pages for invalid WebResource.axd requests, disclosing framework and ASP.NET version information, stack traces, internal paths, and the insecure configuration 'customErrors mode="Off"', which could have facilitated…
AnalizadaAlta (8.7)0.42%—Vertikalsystems Hospital Manager Backend Services29/10/202517/6/2026
Prior to September 19, 2025, the Hospital Manager Backend Services exposed the ASP.NET tracing endpoint /trace.axd without authentication, allowing a remote attacker to obtain live request traces and sensitive information such as request metadata, session identifiers, authorization headers, server variables, and…
AplazadaBaja (2.6)0.24%—Backstage Plugin-scaffolder-backendAI15/8/202517/6/2026
@backstage/plugin-scaffolder-backend is the backend for the default Backstage software templates. Prior to version 2.1.1, duplicate logging of the input values in the fetch:template action in the Scaffolder meant that some of the secrets were not properly redacted. If ${{ secrets.x }} is not passed through to…
AplazadaAlta (7.5)0.17%—Clerk BackendAI9/7/202517/6/2026
Clerk helps developers build user management. Applications that use the verifyWebhook() helper to verify incoming Clerk webhooks are susceptible to accepting improperly signed webhook events. The issue was resolved in @clerk/backend 2.4.0.
AplazadaAlta (8)0.35%—Lablup BackendaiAI9/6/202517/6/2026
Exposure of sensitive data in active sessions in Lablup's BackendAI allows attackers to retrieve credentials for users on the management platform.
AplazadaCrítica (9.8)0.43%—Lablup BackendaiAI9/6/202517/6/2026
Missing Authentication in the registration feature of Lablup's BackendAI allows arbitrary users to create user accounts that can access private data even when registration is disabled.
AplazadaAlta (8.1)0.34%—Lablup BackendaiAI9/6/202517/6/2026
Missing Authorization in Lablup's BackendAI allows attackers to takeover all active sessions; Accessing, stealing, or altering any data accessible in the session. This vulnerability exists in all current versions of BackendAI.
AnalizadaMedia (4.8)0.23%—Humansignal Label Studio ML Backend26/5/202517/6/2026
A vulnerability has been found in HumanSignal label-studio-ml-backend up to 9fb7f4aa186612806af2becfb621f6ed8d9fdbaf and classified as problematic. Affected by this vulnerability is the function load of the file label-studio-ml-backend/label_studio_ml/examples/yolo/utils/neural_nets.py of the component PT File…
AplazadaAlta (7.1)0.23%—Martinjuhasz ONE Backend LanguageAI24/1/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in martinjuhasz One Backend Language one-backend-language allows Reflected XSS.This issue affects One Backend Language: from n/a through <= 1.0.
AplazadaMedia (5.8)0.38%—Backstage Plugin-app-backendAI3/10/202417/6/2026
Backstage is an open framework for building developer portals. Configuration supplied through APP_CONFIG_* environment variables, for example APP_CONFIG_backend_listen_port=7007, where unexpectedly ignoring the visibility defined in configuration schema. This occurred even if the configuration schema specified that…
AplazadaCrítica (9.8)0.41%—Buy-addons Complete FOR Create A Quote IN Frontend Backend PROAI24/6/202417/6/2026
SQL injection vulnerability in the module "Complete for Create a Quote in Frontend + Backend Pro" (askforaquotemodul) <= 1.0.51 from Buy Addons for PrestaShop allows attackers to view sensitive information and cause other impacts via methods `AskforaquotemodulcustomernewquoteModuleFrontController::run()`,…
AplazadaMedia (4.3)0.21%—Decentralizejustice AnonymouslockerAIDecentralizejustice AnonbackendAI13/6/202417/6/2026
An issue in Annonshop.app DecentralizeJustice/anonymousLocker commit 2b2b4 to ba9fd and DecentralizeJustice/anonBackend commit 57837 to cd815 was discovered to store credentials in plaintext.
AplazadaMedia (5.9)0.34%—Daniele DE Rosa Backend DesignerAI18/4/202417/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Daniele De Rosa Backend Designer allows Stored XSS.This issue affects Backend Designer: from n/a through 1.3.
ModificadaAlta (7.1)0.36%—Sane-project Sane Backends27/3/202417/6/2026
Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.
ModificadaAlta (7.3)0.37%—Sane-project Sane Backends27/3/202417/6/2026
An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function. NOTE: this is disputed because there is no expectation that the product should be starting with an attacker-controlled configuration file.
AnalizadaAlta (8.8)2.1%—Microsoft Django Backend12/3/202417/6/2026
Microsoft Django Backend for SQL Server Remote Code Execution Vulnerability
AnalizadaAlta (7.5)0.80%—Linuxfoundation Backstage Backend-common23/2/202417/6/2026
`@backstage/backend-common` is a common functionality library for backends for Backstage, an open platform for building developer portals. In `@backstage/backend-common` prior to versions 0.21.1, 0.20.2, and 0.19.10, paths checks with the `resolveSafeChildPath` utility were not exhaustive enough, leading to risk of…
ModificadaAlta (8.1)0.71%—Startutorial PHP Backend FOR Resumable.js26/12/202317/6/2026
resumable.php (aka PHP backend for resumable.js) 0.1.4 before 3c6dbf5 allows arbitrary file upload anywhere in the filesystem via ../ in multipart/form-data content to upload.php. (File overwrite hasn't been possible with the code available in GitHub in recent years, however.)
ModificadaAlta (8.8)0.27%—Kau-boys Backend Localization10/10/202317/6/2026
Cross-Site Request Forgery (CSRF) vulnerability in Bernhard Kau Backend Localization plugin <= 2.1.10 versions.
ModificadaAlta (7.5)1.2%—Open-xchange Appsuite Backend2/8/202317/6/2026
Functions with insufficient randomness were used to generate authorization tokens of the integrated oAuth Authorization Service. Authorization codes were predictable for third parties and could be used to intercept and take over the client authorization process. As a result, other users accounts could be compromised.…
ModificadaCrítica (9.8)0.82%—Open-xchange Appsuite Backend2/8/202317/6/2026
Full-text autocomplete search allows user-provided SQL syntax to be injected to SQL statements. With existing sanitization in place, this can be abused to trigger benign SQL Exceptions but could potentially be escalated to a malicious SQL injection vulnerability. We now properly encode single quotes for SQL FULLTEXT…
ModificadaBaja (3.1)0.60%—Open-xchange Appsuite Backend2/8/202317/6/2026
External service lookups for a number of protocols were vulnerable to a time-of-check/time-of-use (TOCTOU) weakness, involving the JDK DNS cache. Attackers that were timing DNS cache expiry correctly were able to inject configuration that would bypass existing network deny-lists. Attackers could exploit this weakness…
ModificadaMedia (4.3)0.75%—Open-xchange Appsuite Backend2/8/202317/6/2026
Attackers with access to user accounts can inject arbitrary control characters to SIEVE mail-filter rules. This could be abused to access SIEVE extension that are not allowed by App Suite or to inject rules which would break per-user filter processing, requiring manual cleanup of such rules. We have added sanitization…
ModificadaAlta (8.8)1.3%—Open-xchange Appsuite Backend20/6/202317/6/2026
Attackers with access to the "documentconverterws" API were able to inject serialized Java objects, that were not properly checked during deserialization. Access to this API endpoint is restricted to local networks by default. Arbitrary code could be injected that is being executed when processing the request. A check…
Orbitaley — Vulnerabilidades