Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
9810 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.21% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 27/9/2026 | 30/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function. The manipulation results in cross-site request forgery. The attack can be launched remotely. The exploit is now public and may be used. This product does… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file viewresult.php. Performing a manipulation of the argument seno results in sql injection. Remote exploitation of the attack is possible. The exploit is now… | |
| Aplazada | Media (5.5) | 0.39% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 30/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file mydetailsfaculty.php. The manipulation of the argument myfid results in sql injection. The attack can be launched remotely. The exploit is now public and… | |
| Aplazada | Media (5.5) | 0.39% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file updatedetailsfromstudent.php. The manipulation of the argument eno leads to sql injection. The attack can be initiated remotely. The exploit… | |
| Aplazada | Baja (2.1) | 0.42% | — | Vishalmathur Cloudclassroom-php-projectAI | 26/9/2026 | 28/9/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file updatequery.php. Executing a manipulation of the argument queryx can lead to cross site scripting. It is possible to launch the attack remotely. The… | |
| Aplazada | Baja (2.1) | 0.19% | — | Vishalmathur Cloudclassroom-php-projectAI | 26/9/2026 | 30/9/2026 | A security flaw has been discovered in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function of the file /updateguest.php. Performing a manipulation of the argument gname/editassid results in sql injection. It is possible to initiate the… | |
| Aplazada | Baja (2) | 0.19% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A vulnerability was identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The affected element is an unknown function of the file managevideos2.php of the component Faculty Video Management. Such manipulation of the argument V_Title/V_Url/V_Remarks leads to cross site… | |
| Pendiente de análisis | Media (5.9) | 0.36% | — | PHPAI | 25/9/2026 | 29/9/2026 | The convert.base64-encode, convert.quoted-printable-encode and convert.quoted-printable-decode stream filters accept a line-break-chars option whose length is tracked separately from the string itself. The filter constructors duplicate the value with pestrdup(), which stops at the first NUL byte, while keeping the… | |
| Pendiente de análisis | Media (6.5) | 0.56% | — | PHPAI | 25/9/2026 | 29/9/2026 | The IPv6 branch of the FastCGI client access check compares only the first 12 bytes of a 16-byte IPv6 address, so listen.allowed_clients matches on a /96 prefix instead of the exact address. An attacker who can source an address sharing the first 96 bits with an allowed one passes the check and reaches the FastCGI… | |
| Pendiente de análisis | Media (4.3) | 0.14% | — | PHPAI | 25/9/2026 | 29/9/2026 | PHP's OpenSSL stream peer verification checks the certificate's subjectAltName entries first and, whenever no entry matches, falls back to the Common Name. RFC 6125 requires the CN to be ignored once the certificate presents any service identity, so a certificate carrying a non-matching DNS SAN was still accepted when… | |
| Pendiente de análisis | Media (6.5) | 0.15% | — | PHPAI | 25/9/2026 | 29/9/2026 | php_openssl_matches_wildcard_name() in ext/openssl/xp_ssl.c underflows the length argument passed to memchr() when a TLS server certificate presents a wildcard name whose literal characters are together longer than the hostname being verified. A malicious server presenting such a certificate makes the PHP client read… | |
| Pendiente de análisis | Media (5.9) | 0.34% | — | PHPAI | 25/9/2026 | 29/9/2026 | When the http:// stream wrapper follows a redirect it forwards the user-supplied Authorization, Cookie and Proxy-Authorization headers unchanged, even when the redirect target is a different host, a different port, or a downgrade from HTTPS to HTTP. A server that can steer a redirect therefore receives credentials… | |
| Pendiente de análisis | Alta (7.5) | 0.52% | — | PHPAI | 25/9/2026 | 29/9/2026 | cleanup_xml_node() in the SOAP XML parser recurses once per XML nesting level with no depth limit. An unauthenticated attacker can post a SOAP request containing tens of thousands of nested elements to any SoapServer endpoint, exhaust the stack and crash the process. The same unbounded recursion exists in the SOAP… | |
| Pendiente de análisis | Media (4.3) | 0.17% | — | PHPAI | 25/9/2026 | 29/9/2026 | phar_tar_number() parses the octal size field of a TAR header into a uint32_t with no overflow check. The field is 11 octal digits wide and holds values up to 0x1FFFFFFFF, so a size above 0xFFFFFFFF silently wraps. The parser then skips the wrong number of data blocks and interprets attacker-controlled file content as… | |
| Pendiente de análisis | Media (6.9) | 0.32% | — | PHPAI | 25/9/2026 | 29/9/2026 | On Windows, PHP's filesystem and stream APIs do not reject reserved device names such as CON, PRN, AUX, NUL, COM1 to COM9, LPT1 to LPT9, CONIN$ and CONOUT$ when they appear as a component of a path. An attacker-controlled filename therefore reaches CreateFileW() and opens a device instead of the regular file the… | |
| Pendiente de análisis | Baja (3.4) | 0.18% | — | PHP MysqlndAI | 25/9/2026 | 29/9/2026 | The mysqlnd wire protocol parser reads fields out of server packets before checking that the packet still holds enough bytes for them. A malicious or compromised MySQL server can send a truncated packet and make the client read past the end of the packet buffer, which is undefined behaviour and can crash the process. | |
| Pendiente de análisis | Media (5.8) | 0.35% | — | PHPAI | 25/9/2026 | 29/9/2026 | When the HTTP stream wrapper follows a redirect and the response carries a Location header with an empty value, the redirect code reads one byte past the end of the heap buffer holding the location. The value of that out-of-bounds byte decides which redirect target is built, so a malicious server controls whether the… | |
| Aplazada | Baja (2.1) | 0.30% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 29/9/2026 | A vulnerability has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected by this vulnerability is an unknown functionality of the file managevideos2.php. Such manipulation of the argument editassid leads to sql injection. The attack may be launched remotely.… | |
| Aplazada | Media (5.5) | 0.26% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file updatefaculty.php. This manipulation of the argument fid causes sql injection. The attack may be initiated remotely. The exploit has been published and may be… | |
| Aplazada | Baja (2.1) | 0.19% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file updatestudent.php of the component Student Update Functionality. The manipulation of the argument eno results in sql injection. The attack can be launched… | |
| Aplazada | Media (5.5) | 0.31% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file updatequery.php. The manipulation of the argument gid leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Aplazada | Media (5.5) | 0.51% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 29/9/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function of the file loginlinkfaculty.php of the component Faculty Authentication. Executing a manipulation of the argument fid/pass can lead to sql injection. It… | |
| Aplazada | Alta (8.6) | 0.32% | — | PhpipamAI | 25/9/2026 | 6/10/2026 | phpIPAM through 1.8.3 has incorrect authorization for id=="admins" and id=="all" in api/controllers/User.php. | |
| Aplazada | Alta (8.5) | 0.26% | — | PhpmyfaqAI | 24/9/2026 | 5/10/2026 | phpMyFAQ is an open source FAQ web application. The `StopWords::add()` method inversions prior to 4.1.6 builds a SQL `INSERT` statement using `sprintf()` and inserts the user-supplied stop word value directly into the query string without calling the application's database escaping function on it. A sibling method,… | |
| Aplazada | Media (5.4) | 0.25% | — | PhpmyfaqAI | 24/9/2026 | 24/9/2026 | phpMyFAQ is an open source FAQ web application. Prior to version 4.2.0-alpha, an authenticated SQL LIKE wildcard injection vulnerability in phpMyFAQ’s chat user search allows any logged-in user to bypass the intended display-name search filter and enumerate active users. The endpoint escapes SQL string syntax but does… |