Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2862▼ 326 respecto a la semana anterior
Críticas / altas1389▼ 28 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
96 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.3) | 1.1% | — | Code-industry Master PDF EditorFoxitsoftware Foxit ReaderFoxitsoftware PhantompdfGonitro Nitro PRO+9 | 7/1/2021 | 17/6/2026 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signatures. Consequently, an Incremental Saving vulnerability exists in multiple products. When an attacker uses the Incremental Saving feature to add pages or annotations, Body Updates… | |
| Modificada | Media (6.5) | 1.7% | — | LibreofficeOpensuse LeapFedoraproject Fedora | 8/6/2020 | 17/6/2026 | ODF documents can contain forms to be filled out by the user. Similar to HTML forms, the contained form data can be submitted to a URI, for example, to an external web server. To create submittable forms, ODF implements the XForms W3C standard, which allows data to be submitted without the need for macros or other… | |
| Modificada | Media (5.3) | 1.9% | — | LibreofficeFedoraproject FedoraOpensuse Leap | 8/6/2020 | 17/6/2026 | LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote resources. This mode is not the default mode, but can be enabled by users who want to disable LibreOffice's ability to include remote resources within a document. A flaw existed where remote graphic… | |
| Modificada | Media (5.3) | 1.3% | — | LibreofficeOpensuse Leap | 18/5/2020 | 17/6/2026 | If LibreOffice has an encrypted document open and crashes, that document is auto-saved encrypted. On restart, LibreOffice offers to restore the document and prompts for the password to decrypt it. If the recovery is successful, and if the file format of the recovered document was not LibreOffice's default ODF file… | |
| Modificada | Media (6.5) | 5.8% | — | LibreofficeDebian LinuxApache Openoffice | 20/12/2019 | 16/6/2026 | LibreOffice and OpenOffice automatically open embedded content | |
| Modificada | Alta (7.8) | 3.1% | — | Libreoffice | 27/9/2019 | 17/6/2026 | LibreOffice documents can contain macros. The execution of those macros is controlled by the document security settings, typically execution of macros are blocked by default. A URL decoding flaw existed in how the urls to the macros within the document were processed and categorized, resulting in the possibility to… | |
| Modificada | Crítica (9.8) | 2.6% | — | LibreofficeOpensuse Leap | 6/9/2019 | 17/6/2026 | LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script… | |
| Modificada | Alta (7.8) | 1.8% | — | LibreofficeCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+2 | 6/9/2019 | 17/6/2026 | LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to scripts under the share/Scripts/python, user/Scripts/python sub-directories of the LibreOffice install. Protection was… | |
| Modificada | Alta (7.8) | 1.8% | — | Canonical Ubuntu LinuxDebian LinuxFedoraproject FedoraOpensuse Leap+1 | 15/8/2019 | 17/6/2026 | LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to scripts under the share/Scripts/python, user/Scripts/python sub-directories of the LibreOffice install. Protection was… | |
| Modificada | Crítica (9.8) | 78% | 💥 Exploit | Canonical Ubuntu LinuxDebian LinuxFedoraproject FedoraOpensuse Leap+1 | 15/8/2019 | 17/6/2026 | LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from document event script handers, e.g. mouse over.… | |
| Modificada | Crítica (9.8) | 2.9% | — | Canonical Ubuntu LinuxDebian LinuxFedoraproject FedoraOpensuse Leap+1 | 15/8/2019 | 17/6/2026 | LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script… | |
| Modificada | Media (4.3) | 2.6% | 💥 PoC | LibreofficeCanonical Ubuntu LinuxFedoraproject FedoraDebian Linux+1 | 17/7/2019 | 17/6/2026 | LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote resources. This mode is not the default mode, but can be enabled by users who want to disable LibreOffice's ability to include remote resources within a document. A flaw existed where bullet graphics… | |
| Modificada | Crítica (9.8) | 29% | — | LibreofficeCanonical Ubuntu LinuxFedoraproject FedoraDebian Linux+1 | 17/7/2019 | 17/6/2026 | LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-over, etc. LibreOffice is typically also bundled with LibreLogo, a programmable turtle vector graphics script, which can be manipulated into executing arbitrary python commands. By… | |
| Modificada | Alta (7.8) | 1.0% | — | Libreoffice | 9/5/2019 | 17/6/2026 | A vulnerability in LibreOffice hyperlink processing allows an attacker to construct documents containing hyperlinks pointing to the location of an executable on the target users file system. If the hyperlink is activated by the victim the executable target is unconditionally launched. Under Windows and macOS when… | |
| Modificada | Crítica (9.8) | 67% | 💥 Exploit | Libreoffice | 25/3/2019 | 17/6/2026 | It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could be used to execute arbitrary macros bundled with a document. An attacker could craft a document, which when opened by LibreOffice, would execute a Python method from a script in any arbitrary file… | |
| Modificada | Crítica (9.8) | 2.2% | — | Libreoffice | 5/8/2018 | 17/6/2026 | The get_app_path function in desktop/unx/source/start.c in LibreOffice through 6.0.5 mishandles the realpath function in certain environments such as FreeBSD libc, which might allow attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact if LibreOffice… | |
| Modificada | Alta (7.5) | 78% | 💥 Exploit | LibreofficeApache OpenofficeDebian LinuxRedhat Enterprise Linux Desktop+3 | 1/5/2018 | 17/6/2026 | An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB connection embedded in a malicious file, as demonstrated by xlink:href=file://192.168.0.2/test.jpg within an office:document-content element in a .odt XML document. | |
| Modificada | Alta (7.8) | 2.1% | — | Debian LinuxLibreofficeRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 16/4/2018 | 17/6/2026 | The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overflow with write access) or possibly have unspecified other impact via a… | |
| Modificada | Alta (7.8) | 1.9% | — | LibreofficeDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 16/4/2018 | 17/6/2026 | sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possibly have unspecified other impact via a crafted document that uses the… | |
| Modificada | Crítica (9.8) | 23% | 💥 Exploit | LibreofficeDebian LinuxCanonical Ubuntu LinuxRedhat Enterprise Linux Desktop+5 | 9/2/2018 | 17/6/2026 | LibreOffice before 5.4.5 and 6.x before 6.0.1 allows remote attackers to read arbitrary files via =WEBSERVICE calls in a document, which use the COM.MICROSOFT.WEBSERVICE function. | |
| Modificada | Alta (7.5) | 2.5% | — | LibreofficeLibwpd | 9/9/2017 | 17/6/2026 | WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vulnerability can be triggered in LibreOffice before 5.3.7. It may lead… | |
| Modificada | Crítica (9.8) | 2.2% | — | Libreoffice | 30/4/2017 | 17/6/2026 | LibreOffice before 2017-03-17 has an out-of-bounds write caused by a heap-based buffer overflow related to the ReadJPEG function in vcl/source/filter/jpeg/jpegc.cxx. | |
| Modificada | Crítica (9.8) | 2.4% | — | Libreoffice | 15/4/2017 | 17/6/2026 | LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx. | |
| Modificada | Crítica (9.8) | 3.9% | — | Libreoffice | 14/4/2017 | 17/6/2026 | LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx. | |
| Modificada | Crítica (9.8) | 3.5% | — | Libreoffice | 14/4/2017 | 17/6/2026 | LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::ImplConvertFromSVM1 function in vcl/source/gdi/svmconverter.cxx. |