Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
1171 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.8) | 0.24% | — | Compliance-trestle TrestleAI | 26/8/2026 | 9/9/2026 | Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions prior to 3.12.4 and 4.0.0 through 4.0.3, the custom Jinja2 include tags mdsection_include and md_clean_include re-parse the content of an included Markdown file as Jinja2 template code in a… | |
| Aplazada | Alta (8.6) | 0.44% | — | Compliance-trestle TrestleAI | 26/8/2026 | 9/9/2026 | Compliance-trestle (Trestle) is a tooling platform for managing compliance as code. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, the URLSecurityValidator that guards trestle's remote-fetch paths against server-side request forgery can be bypassed to reach loopback, link-local, cloud-metadata, and… | |
| Aplazada | Alta (7.8) | 0.36% | — | Compliance-trestle TrestleAI | 25/8/2026 | 9/9/2026 | Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, Trestle is vulnerable to server-side template injection that can lead to remote code execution. This occurs because the MDCleanInclude and… | |
| Pendiente de análisis | Crítica (9.1) | 0.31% | — | Drupal Webform RestAI | 25/8/2026 | 28/8/2026 | Incorrect Authorization vulnerability in Drupal Webform REST allows Forceful Browsing. This issue affects Webform REST versions: from 0.0.0 to 4.1.0. | |
| Aplazada | Crítica (9.8) | 0.30% | — | RestrictmateAI | 23/8/2026 | 28/8/2026 | The RestrictMate WordPress plugin before 1.3.0 does not restrict the user role supplied during account registration, allowing unauthenticated attackers to create a new administrator account and gain a logged-in administrator session, leading to full site takeover. | |
| Aplazada | Alta (8.1) | 0.47% | — | Motopress Restaurant MenuAI | 18/8/2026 | 20/8/2026 | Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions. | |
| Aplazada | Alta (8.4) | 0.20% | — | Compliance-trestleAI | 17/8/2026 | 18/9/2026 | compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle author jinja` allows writing files outside the intended workspace. The application does not properly validate, `../`, `..\`, or absolute paths. This allows arbitrary file… | |
| Aplazada | Media (4.3) | 0.47% | — | Wpeverest Everest FormsAI | 16/8/2026 | 20/8/2026 | The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder with AI plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.5.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for… | |
| Aplazada | Alta (7.8) | 0.27% | — | Compliance-trestleAI | 14/8/2026 | 18/9/2026 | compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 and 4.0.3 have a Server-Side Template Injection (SSTI) vulnerability exists in the `trestle author jinja` command. The command recursively evaluates rendered templates, allowing an attacker to achieve arbitrary command… | |
| Aplazada | Media (6.7) | 0.14% | — | Compliance-trestleAI | 14/8/2026 | 18/9/2026 | compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the HTTPSFetcher._do_fetch() method passes a user-supplied URL directly to requests.get() without validation. This allows an attacker to perform Server-Side Request Forgery, targeting internal services or… | |
| Aplazada | Media (6.9) | 0.54% | — | Compliance-trestleAI | 13/8/2026 | 18/9/2026 | compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the compliance-trestle library's profile import mechanism resolves `trestle://` URIs and relative file paths by joining them with `trestle_root` and calling `.resolve()`, but performs no boundary check to… | |
| Aplazada | Alta (7.1) | 0.47% | — | Compliance-trestle Compliance TrestleAI | 13/8/2026 | 18/9/2026 | compliance-trestle is a tooling platform for managing compliance as code. Prior to versiions 3.12.2 and 4.0.3, the compliance-trestle library's remote fetching cache mechanism (HTTPSFetcher and SFTPFetcher) constructs the local cache file path from the URL path component without sanitizing path traversal sequences… | |
| Aplazada | Media (6.3) | 0.17% | — | Restore-repoAI | 13/8/2026 | 26/8/2026 | SSRF in restore-repo via unsanitized pull_request.yml Head.CloneURL | |
| Aplazada | Crítica (9.3) | 0.40% | — | Everest BackupAI | 13/8/2026 | 14/8/2026 | Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions. | |
| Aplazada | Alta (7.5) | 0.42% | — | Rest API LOGAI | 13/8/2026 | 14/8/2026 | Unauthenticated Sensitive Data Exposure in REST API Log <= 1.7.1 versions. | |
| Pendiente de análisis | Media (4.3) | 0.37% | — | Django Rest FrameworkAI | 11/8/2026 | 11/9/2026 | Django REST framework is a powerful and flexible toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's rest_framework/renderers.py AdminRenderer.render() uses override_method() to simulate GET and directly invokes view.get() without view.check_permissions() while rendering an invalid write request,… | |
| Pendiente de análisis | Media (5.3) | 0.56% | — | Django-rest-framework Django Rest FrameworkAI | 11/8/2026 | 11/9/2026 | Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser for application/json and application/x-www-form-urlencoded bodies, bypassing… | |
| Pendiente de análisis | Alta (7.1) | 0.37% | — | MalcolmAINginx OpenrestyAI | 11/8/2026 | 2/10/2026 | Malcolm is a network traffic analysis tool suite. Prior to version 26.07.0, role-based access control enforced in the Nginx OpenResty Lua layer evaluates the raw, unnormalized `ngx.var.request_uri`, while Nginx itself routes requests using the normalized path. An authenticated low-privilege user can prepend a… | |
| Aplazada | Media (5.3) | 0.16% | — | Fivestarplugins Five Star Restaurant ReservationsAI | 6/8/2026 | 26/8/2026 | The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not verify the authenticity of incoming payment notifications, failing to validate the payment recipient, amount, and status or to bind the notification to the intended booking, allowing unauthenticated attackers to mark arbitrary pending… | |
| Aplazada | Alta (7.5) | 0.69% | — | Page AND Post RestrictionAI | 5/8/2026 | 12/8/2026 | The Page and Post Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to and including 1.4.0 via the WordPress core REST endpoints /wp-json/wp/v2/pages, /wp-json/wp/v2/pages/<id>, /wp-json/wp/v2/posts, and /wp-json/wp/v2/posts/<id>. This is due to the plugin's REST guards —… | |
| Aplazada | Media (5.9) | 0.40% | — | GorestAIGolang GINAI | 4/8/2026 | 10/9/2026 | GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions prior to 1.12.2 nMemorySecret2FA contains a race condition due to an unsynchronized package-level map used to store 2FA secrets. Multiple HTTP handlers in handler/login.go and handler/twoFA.go read from… | |
| Aplazada | Media (5.9) | 0.39% | — | Rest API LOGAI | 4/8/2026 | 26/8/2026 | The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log entry being requested, nor does it check the capability of the requester, allowing unauthenticated users in possession of any such token to download the logged REST API requests and responses of any… | |
| Aplazada | Baja (2.7) | 0.30% | — | Wpchill Simple RestrictAI | 2/8/2026 | 26/8/2026 | The Simple Restrict WordPress plugin before 1.2.9 does not enforce its content-restriction permission check on the REST API the way it does on the front end, relying there on a generic capability check instead of the Simple Restrict WordPress plugin before 1.2.9's own permission system, allowing users with… | |
| Aplazada | Alta (7.5) | 0.39% | — | Fivestarplugins Five Star Restaurant ReservationsAI | 2/8/2026 | 26/8/2026 | The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not perform a capability check on one of its AJAX actions, allowing users with the lowest booking-management role (which by default cannot access the Five Star Restaurant Reservations WordPress plugin before 2.7.23's settings) to reset the… | |
| Aplazada | Alta (7.2) | 0.50% | 💥 PoC | Everest ToolkitAI | 1/8/2026 | 26/8/2026 | The Everest Toolkit WordPress plugin through 1.2.3 does not validate the type of files uploaded during demo-content import (the WordPress file-type test is disabled), allowing high-privilege users (Administrator by default, including non-super-admin site administrators on multisite) to upload executable PHP files to… |