Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2619▼ 461 respecto a la semana anterior
Críticas / altas1277▼ 72 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)235▼ 274 respecto a la semana anterior
5391 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.98% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to OS command injection. | |
| Analizada | Alta (7.7) | 0.28% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection. | |
| Analizada | Alta (7.7) | 0.23% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other users or environments. | |
| Analizada | Media (6.5) | 0.33% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts. | |
| Analizada | Alta (8.8) | 0.94% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |
| Analizada | Alta (8.8) | 0.54% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper escaping of connector property values during OSH script generation. | |
| Analizada | Alta (8.8) | 0.94% | — | IBM Datastage ON Cloud PAK FOR Data | 23/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |
| Aplazada | Baja (2.1) | 0.19% | — | Tduckcloud Tduck-platformAI | 22/9/2026 | 25/9/2026 | A vulnerability was identified in TDuckCloud tduck-platform up to 5.3. This vulnerability affects the function PaginationInnerInterceptor.concatOrderBy of the file tduck-api/src/main/java/com/tduck/cloud/api/config/MybatisPlusConfig.java of the component Pagination Inner Interceptor. The manipulation of the argument… | |
| Analizada | Alta (8.8) | 0.58% | — | IBM Datastage ON Cloud PAK FOR Data | 22/9/2026 | 25/9/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |
| Analizada | Alta (8.8) | 0.55% | — | IBM Datastage ON Cloud PAK FOR Data | 22/9/2026 | 25/9/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command. | |
| Analizada | Alta (8.8) | 0.96% | — | IBM Datastage ON Cloud PAK FOR Data | 22/9/2026 | 25/9/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 px-runtime could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |
| Analizada | Alta (8.8) | 1.7% | — | IBM Datastage ON Cloud PAK FOR Data | 22/9/2026 | 25/9/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to OS command injection. | |
| Analizada | Crítica (9.9) | 0.45% | — | IBM Datastage ON Cloud PAK FOR Data | 22/9/2026 | 6/10/2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |
| Aplazada | Media (6.5) | 0.40% | — | CloudreveAI | 22/9/2026 | 22/9/2026 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.18.0, the ValidateExternalURL server-side request forgery guard in pkg/request/ssrf.go passes resolved addresses to checkIP without decoding NAT64, IPv4-compatible, and 6to4 IPv4-in-IPv6 transition forms. An authenticated user with… | |
| Aplazada | Baja (3.8) | 0.33% | — | CloudreveAI | 22/9/2026 | 22/9/2026 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.18.0, tool.GET("wopi") and tool.POST("mail") in routers/router.go inherit ScopeAdminRead but omit the RequiredScopes(types.ScopeAdminWrite) middleware applied to neighboring state-changing admin tool routes. An OAuth application or API key… | |
| Aplazada | Alta (7.1) | 0.37% | — | CloudreveAI | 22/9/2026 | 25/9/2026 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.18.0, PrepareUpload in pkg/filemanager/fs/dbfs/upload.go checks a stale in-memory user storage value through validateUserCapacity and later applies an unconditional storage charge outside the same quota-enforcing transaction. An authenticated… | |
| Analizada | Crítica (9.5) | 1.1% | ⚠ Explotación activa | Arista Velocloud Orchestrator | 22/9/2026 | 23/9/2026 | VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.… | |
| Aplazada | Baja (2.1) | 0.32% | — | Yonyou U8cloudAI | 21/9/2026 | 22/9/2026 | A security vulnerability has been detected in Yonyou U8cloud 5.x. This vulnerability affects unknown code of the file /u8cloud/openapi/so.saleorder.sendaudit of the component OpenAPI. The manipulation of the argument operator leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed… | |
| Aplazada | Media (5.3) | 0.34% | — | Tangyh Lamp-cloudAI | 21/9/2026 | 23/9/2026 | lamp-cloud through 5.10.0 fails to validate the employeeId parameter in the /anyone/visible/resource endpoint, allowing authenticated users to read any employee's roles and permissions. Attackers can supply arbitrary employeeId values to enumerate other employees' role codes, permission codes, and complete front-end… | |
| Aplazada | Alta (7.1) | 0.47% | — | Tangyh Lamp-cloudAI | 21/9/2026 | 22/9/2026 | lamp-cloud through 5.10.0 contains an authorization bypass vulnerability in the deleteMyNotice endpoint that allows authenticated users to delete other users' notifications. Attackers can call the DELETE /anyone/extendNotice/deleteMyNotice endpoint with arbitrary notice IDs to permanently remove notifications… | |
| Aplazada | Alta (7.1) | 0.49% | — | Tangyh Lamp-cloudAI | 21/9/2026 | 22/9/2026 | lamp-cloud through 5.10.0 fails to validate user identity in PUT /anyone/baseInfo and PUT /anyone/avatar endpoints, allowing authenticated attackers to modify arbitrary user profiles. Attackers can supply target user IDs in request bodies to rewrite profile fields including nickname, ID card, sex, nation, education,… | |
| Aplazada | Alta (7.1) | 0.44% | — | Tangyh Lamp-cloudAI | 21/9/2026 | 22/9/2026 | lamp-cloud through 5.10.0 contains an authorization bypass vulnerability in FileAnyoneController that allows authenticated users to download arbitrary attachments. Attackers can retrieve other users' stored files by supplying valid attachment identifiers to the /anyone/file/down and /anyone/file/download endpoints, as… | |
| Aplazada | Alta (7.1) | 0.44% | — | Lamp-cloud Lamp CloudAI | 21/9/2026 | 24/9/2026 | lamp-cloud through 5.10.0 contains an authorization bypass vulnerability in the getUserInfoById endpoint that allows authenticated users to read any other user's full profile. Attackers can iterate the userId parameter to harvest sensitive user information including mobile numbers, email addresses, national identity… | |
| Aplazada | Alta (8.8) | 0.58% | — | Wpcloudplugins USE Your DriveAIWpcloudplugins OUT OF THE BOXAIWpcloudplugins Share ONE DriveAIWpcloudplugins Lets BOXAI | 18/9/2026 | 21/9/2026 | The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-Box plugins for WordPress are vulnerable to Arbitrary File Upload in all versions from 2.0 up to, and including, 3.8.3 via the download_file_to_uploads function. This is due to the import action being registered for unauthenticated users… | |
| Analizada | Alta (8.8) | 0.44% | — | IBM Cloud PAK FOR Data | 18/9/2026 | 22/9/2026 | IBM Cloud Pak for Data 5.1.2 could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input. |