Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

1171 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.8)0.24%—Compliance-trestle TrestleAI26/8/20269/9/2026
Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions prior to 3.12.4 and 4.0.0 through 4.0.3, the custom Jinja2 include tags mdsection_include and md_clean_include re-parse the content of an included Markdown file as Jinja2 template code in a…
AplazadaAlta (8.6)0.44%—Compliance-trestle TrestleAI26/8/20269/9/2026
Compliance-trestle (Trestle) is a tooling platform for managing compliance as code. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, the URLSecurityValidator that guards trestle's remote-fetch paths against server-side request forgery can be bypassed to reach loopback, link-local, cloud-metadata, and…
AplazadaAlta (7.8)0.36%—Compliance-trestle TrestleAI25/8/20269/9/2026
Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, Trestle is vulnerable to server-side template injection that can lead to remote code execution. This occurs because the MDCleanInclude and…
Pendiente de análisisCrítica (9.1)0.31%—Drupal Webform RestAI25/8/202628/8/2026
Incorrect Authorization vulnerability in Drupal Webform REST allows Forceful Browsing. This issue affects Webform REST versions: from 0.0.0 to 4.1.0.
AplazadaCrítica (9.8)0.30%—RestrictmateAI23/8/202628/8/2026
The RestrictMate WordPress plugin before 1.3.0 does not restrict the user role supplied during account registration, allowing unauthenticated attackers to create a new administrator account and gain a logged-in administrator session, leading to full site takeover.
AplazadaAlta (8.1)0.47%—Motopress Restaurant MenuAI18/8/202620/8/2026
Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions.
AplazadaAlta (8.4)0.20%—Compliance-trestleAI17/8/202618/9/2026
compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle author jinja` allows writing files outside the intended workspace. The application does not properly validate, `../`, `..\`, or absolute paths. This allows arbitrary file…
AplazadaMedia (4.3)0.47%—Wpeverest Everest FormsAI16/8/202620/8/2026
The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder with AI plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.5.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for…
AplazadaAlta (7.8)0.27%—Compliance-trestleAI14/8/202618/9/2026
compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 and 4.0.3 have a Server-Side Template Injection (SSTI) vulnerability exists in the `trestle author jinja` command. The command recursively evaluates rendered templates, allowing an attacker to achieve arbitrary command…
AplazadaMedia (6.7)0.14%—Compliance-trestleAI14/8/202618/9/2026
compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the HTTPSFetcher._do_fetch() method passes a user-supplied URL directly to requests.get() without validation. This allows an attacker to perform Server-Side Request Forgery, targeting internal services or…
AplazadaMedia (6.9)0.54%—Compliance-trestleAI13/8/202618/9/2026
compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the compliance-trestle library's profile import mechanism resolves `trestle://` URIs and relative file paths by joining them with `trestle_root` and calling `.resolve()`, but performs no boundary check to…
AplazadaAlta (7.1)0.47%—Compliance-trestle Compliance TrestleAI13/8/202618/9/2026
compliance-trestle is a tooling platform for managing compliance as code. Prior to versiions 3.12.2 and 4.0.3, the compliance-trestle library's remote fetching cache mechanism (HTTPSFetcher and SFTPFetcher) constructs the local cache file path from the URL path component without sanitizing path traversal sequences…
AplazadaMedia (6.3)0.17%—Restore-repoAI13/8/202626/8/2026
SSRF in restore-repo via unsanitized pull_request.yml Head.CloneURL
AplazadaCrítica (9.3)0.40%—Everest BackupAI13/8/202614/8/2026
Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.
AplazadaAlta (7.5)0.42%—Rest API LOGAI13/8/202614/8/2026
Unauthenticated Sensitive Data Exposure in REST API Log <= 1.7.1 versions.
Pendiente de análisisMedia (4.3)0.37%—Django Rest FrameworkAI11/8/202611/9/2026
Django REST framework is a powerful and flexible toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's rest_framework/renderers.py AdminRenderer.render() uses override_method() to simulate GET and directly invokes view.get() without view.check_permissions() while rendering an invalid write request,…
Pendiente de análisisMedia (5.3)0.56%—Django-rest-framework Django Rest FrameworkAI11/8/202611/9/2026
Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser for application/json and application/x-www-form-urlencoded bodies, bypassing…
Pendiente de análisisAlta (7.1)0.37%—MalcolmAINginx OpenrestyAI11/8/20262/10/2026
Malcolm is a network traffic analysis tool suite. Prior to version 26.07.0, role-based access control enforced in the Nginx OpenResty Lua layer evaluates the raw, unnormalized `ngx.var.request_uri`, while Nginx itself routes requests using the normalized path. An authenticated low-privilege user can prepend a…
AplazadaMedia (5.3)0.16%—Fivestarplugins Five Star Restaurant ReservationsAI6/8/202626/8/2026
The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not verify the authenticity of incoming payment notifications, failing to validate the payment recipient, amount, and status or to bind the notification to the intended booking, allowing unauthenticated attackers to mark arbitrary pending…
AplazadaAlta (7.5)0.69%—Page AND Post RestrictionAI5/8/202612/8/2026
The Page and Post Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to and including 1.4.0 via the WordPress core REST endpoints /wp-json/wp/v2/pages, /wp-json/wp/v2/pages/<id>, /wp-json/wp/v2/posts, and /wp-json/wp/v2/posts/<id>. This is due to the plugin's REST guards —…
AplazadaMedia (5.9)0.40%—GorestAIGolang GINAI4/8/202610/9/2026
GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions prior to 1.12.2 nMemorySecret2FA contains a race condition due to an unsynchronized package-level map used to store 2FA secrets. Multiple HTTP handlers in handler/login.go and handler/twoFA.go read from…
AplazadaMedia (5.9)0.39%—Rest API LOGAI4/8/202626/8/2026
The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log entry being requested, nor does it check the capability of the requester, allowing unauthenticated users in possession of any such token to download the logged REST API requests and responses of any…
AplazadaBaja (2.7)0.30%—Wpchill Simple RestrictAI2/8/202626/8/2026
The Simple Restrict WordPress plugin before 1.2.9 does not enforce its content-restriction permission check on the REST API the way it does on the front end, relying there on a generic capability check instead of the Simple Restrict WordPress plugin before 1.2.9's own permission system, allowing users with…
AplazadaAlta (7.5)0.39%—Fivestarplugins Five Star Restaurant ReservationsAI2/8/202626/8/2026
The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not perform a capability check on one of its AJAX actions, allowing users with the lowest booking-management role (which by default cannot access the Five Star Restaurant Reservations WordPress plugin before 2.7.23's settings) to reset the…
AplazadaAlta (7.2)0.50%💥 PoCEverest ToolkitAI1/8/202626/8/2026
The Everest Toolkit WordPress plugin through 1.2.3 does not validate the type of files uploaded during demo-content import (the WordPress file-type test is disabled), allowing high-privilege users (Administrator by default, including non-super-admin site administrators on multisite) to upload executable PHP files to…
Orbitaley — Vulnerabilidades