Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
570 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.56% | — | Paella PlayerAIOpencastAI | 17/9/2026 | 24/9/2026 | Paella Player is a set of libraries to create a multi stream video player. Prior to Paella Player 2.12.11 (as used in Opencast prior to 19.7 and 20.2), there is a potential XSS attack though closed captions cue text. This vulnerability is fixed in 2.12.11. | |
| Aplazada | Alta (8.8) | 0.55% | — | OpencastAI | 17/9/2026 | 30/9/2026 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to versions 19.7 and 20.2, the default security configuration in etc/security/mh_default_org.xml accepts a client-selected JSESSIONID from the ;jsessionid= URL path parameter and does not replace it when… | |
| Aplazada | Media (6.4) | 0.45% | — | Podlove Podcast PublisherAI | 9/9/2026 | 9/9/2026 | The Podlove Podcast Publisher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'episode_contributor[..][..][comment]' Parameter in all versions up to, and including, 4.5.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with… | |
| Aplazada | Alta (7.1) | 0.25% | — | Sonaar MP3 Audio Player FOR Music Radio AND PodcastAI | 2/9/2026 | 2/9/2026 | Unauthenticated Cross Site Scripting (XSS) in MP3 Audio Player for Music, Radio & Podcast by Sonaar <= 5.13.1 versions. | |
| Aplazada | Crítica (9) | 0.37% | — | UI Unifi Connect Display Cast PROAI | 26/8/2026 | 28/8/2026 | A malicious actor with access to the network and under certain conditions could exploit an Improper Access Control vulnerability found in UniFi Connect Display Cast Pro to escalate privileges on the device. | |
| Aplazada | Alta (8.7) | 0.41% | — | AzuracastAILiquidsoapAI | 24/8/2026 | 24/9/2026 | AzuraCast exposes the Liquidsoap custom configuration fields through an endpoint that does not require the permission guarding them. The backend_config property in backend/src/Entity/Station.php is annotated with GROUP_GENERAL, and PUT /api/station/{station_id}/profile/edit in… | |
| Aplazada | Alta (7.1) | 0.25% | — | Podlove Podcast PublisherAI | 20/8/2026 | 20/8/2026 | Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions. | |
| Aplazada | Crítica (9.8) | 0.59% | — | AzuracastAI | 17/8/2026 | 9/9/2026 | zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup restore functionality. The `azuracast:restore` command executes the `db.sql` file extracted from a backup archive without any content validation or sanitization. This allows a remote attacker to escalate privileges | |
| Aplazada | Alta (8.8) | 1.1% | — | Podlove Podcast PublisherAI | 16/8/2026 | 20/8/2026 | The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the create_link_item function in all versions up to, and including, 4.5.3. This makes it possible for authenticated attackers, with contributor-level access and above, to delete… | |
| Aplazada | Alta (7.5) | 1.1% | — | Mustafaakin Cast-localvideoAI | 10/8/2026 | 3/9/2026 | A path traversal vulnerability in mustafaakin/cast-localvideo (all versions) allows an unauthenticated remote attacker to read arbitrary files from the server. The app.js handler at lines 151-153 passes the user-supplied req.body.dir parameter directly to res.sendFile() without sanitization, enabling directory… | |
| Aplazada | Media (5.3) | 0.32% | — | Podcast PlayerAI | 10/8/2026 | 26/8/2026 | The Podcast Player WordPress plugin before 8.3.1 does not validate the destination of a server-side request built from user-supplied input, allowing unauthenticated attackers to make the server issue requests to arbitrary hosts and read back responses that parse as RSS/XML. | |
| Pendiente de análisis | Alta (8.7) | 0.25% | — | Bouncycastle Bc-fipsAI | 8/8/2026 | 3/9/2026 | In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series), sensitive key material held by the AES and DESede engines, the SP 800-90A DRBGs, SymmetricSecretKey and the PBKD and scrypt parameter classes was zeroised on garbage collection by overriding… | |
| Pendiente de análisis | Alta (8.7) | 0.43% | — | Bouncycastle Bc-fipsAI | 8/8/2026 | 3/9/2026 | In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.1.3, the native entropy source used on Intel platforms retried the CPU entropy instructions without any bound. RDSEED and RDRAND report failure through their carry flag, and the JNI seeding routine spun re-issuing the instruction for as long as that flag stayed… | |
| Analizada | Alta (8.7) | 0.33% | — | Bouncycastle Bc-javaBouncycastle Bctls-fipsBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 28/8/2026 | In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series), and before… | |
| Analizada | Media (5.3) | 0.35% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 28/8/2026 | In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series). | |
| Analizada | Alta (8.7) | 0.44% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 28/8/2026 | In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series). | |
| Analizada | Alta (8.7) | 0.17% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTS | 3/8/2026 | 28/8/2026 | In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issue also affects Bouncy Castle for Java LTS before 2.73.12. | |
| Analizada | Alta (8.7) | 0.31% | — | Bouncycastle Bc-java | 3/8/2026 | 28/8/2026 | In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check. | |
| Analizada | Alta (8.7) | 0.17% | — | Bouncycastle Bc-javaBouncycastle Bcpg-fipsBouncycastle Bouncy Castle FOR Java LTS | 3/8/2026 | 31/8/2026 | In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series). | |
| Analizada | Alta (8.7) | 0.18% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTS | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also affects Bouncy Castle for Java LTS before 2.73.12. | |
| Analizada | Alta (8.7) | 0.20% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTS | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery). This issue also affects Bouncy Castle for Java LTS before 2.73.12. | |
| Analizada | Alta (8.7) | 0.15% | — | Bouncycastle Bc-javaBouncycastle Bcpkix-fipsBouncycastle Bouncy Castle FOR Java LTS | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series). | |
| Analizada | Media (5.3) | 0.42% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series). | |
| Analizada | Crítica (9.3) | 0.27% | 💥 PoC | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series). | |
| Analizada | Alta (8.7) | 0.24% | — | Bouncycastle Bc-javaBouncycastle Bouncy Castle FOR Java LTSBouncycastle Fips Java API | 3/8/2026 | 2/9/2026 | In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series). |