Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
1690 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4.8) | 0.11% | — | Samsung Android | 9/9/2026 | 28/9/2026 | Improper authorization in ProxyHandler prior to SMR Aug-2026 Release 1 allows local attackers to access proxy configuration. | |
| Aplazada | Media (6.2) | 0.17% | — | Samsung EscargotAI | 7/9/2026 | 28/9/2026 | An out-of-bounds write caused by numeric truncation Samsung Open Source Escargot on Linux x86-64 allows an attacker who can supply JavaScript for execution to corrupt native memory and crash the host process via a crafted class definition whose instance initialization entry count exceeds UINT16_MAX. This issue affects… | |
| Aplazada | Media (6.2) | 0.18% | — | Samsung WalrusAI | 7/9/2026 | 28/9/2026 | Integer overflow in the source-bounds check in Memory::init() (src/runtime/Memory.cpp) in Samsung walrus on all platforms allows a remote attacker to cause an out-of-bounds heap read and denial of service via a crafted WebAssembly module in which a 32-bit unsigned addition wraps around and bypasses the bounds check.… | |
| Aplazada | Alta (7.8) | 0.17% | — | Samsung WalrusAI | 7/9/2026 | 28/9/2026 | Out-of-bounds write vulnerability in Samsung Opensource Walrus allows Overflow Buffers. This issue affects Walrus: af80e665ea49d9003695a66502f841ed1d8397e7. | |
| Aplazada | Media (4.4) | 0.15% | — | Samsung RlottieAI | 4/9/2026 | 8/9/2026 | Out-of-bounds read vulnerability in Samsung Opensource rLottie allows Overread Buffers. This issue affects rLottie: 25648aef19187b3f87f4d9420b8d761453ad4630. | |
| Aplazada | Media (6.3) | 0.13% | — | Samsung TizenfxAI | 3/9/2026 | 8/9/2026 | Out-of-bounds Write and Improper Validation of Array Index vulnerability in Samsung Open Source TizenFX Samsung/TizenFX allows Overflow Buffers. | |
| Aplazada | Media (5.5) | 0.11% | — | Samsung MtowerAI | 1/9/2026 | 1/9/2026 | Untrusted pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation. This issue affects mTower: before 102d3dc75cf8e58e68e4bea54ae3c803992c91be. | |
| Aplazada | Media (5.5) | 0.15% | — | Samsung MtowerAI | 1/9/2026 | 1/9/2026 | Untrusted pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation. This issue affects mTower: before 06994e303637512e39062f3e037c222e8448e57e. | |
| Aplazada | Media (5.5) | 0.15% | — | Samsung MtowerAI | 1/9/2026 | 1/9/2026 | NULL pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation. This issue affects mTower: before afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a. | |
| Aplazada | Media (5.5) | 0.15% | — | Samsung RlottieAI | 31/8/2026 | 1/9/2026 | Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Serialized Data with Nested Payloads. This issue affects rlottie: before 8de0d9e6ca80ffef654965505981727b9fa06a51. | |
| Analizada | Media (6.5) | 0.35% | — | Samsung Rlottie | 12/8/2026 | 30/9/2026 | Integer Overflow to Buffer Overflow vulnerability in Samsung Open Source rlottie allows Overflow Buffers. | |
| Analizada | Media (6.5) | 0.36% | — | Samsung Rlottie | 12/8/2026 | 30/9/2026 | Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlottie allows Excessive Allocation. | |
| Analizada | Media (6.5) | 0.36% | — | Samsung Rlottie | 11/8/2026 | 23/9/2026 | Improper Validation of Specified Quantity in Input vulnerability in Samsung Open Source rlottie allows Input Data Manipulation. | |
| Analizada | Media (6.5) | 0.36% | — | Samsung Rlottie | 11/8/2026 | 23/9/2026 | Improper Validation of Specified Quantity in Input and Allocation of Resources Without Limits or Throttling vulnerability in Samsung Open Source rlottie allows Excessive Allocation. | |
| Pendiente de análisis | Media (6.9) | 0.13% | — | Samsung SmartthingsAI | 10/8/2026 | 18/8/2026 | Improper access control in SmartThings prior to version 1.8.47.24 allows local attackers to access sensitive information. | |
| Analizada | Media (6.8) | 0.26% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Improper input validation in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. | |
| Analizada | Media (6.9) | 0.17% | — | Samsung Health | 10/8/2026 | 19/8/2026 | Relative path traversal in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. | |
| Pendiente de análisis | Media (5.1) | 0.13% | — | Samsung Pass AutofillAI | 10/8/2026 | 18/8/2026 | Improper export of android application components in SamsungPassAutofill prior to version 5.2.10.x allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability. | |
| Analizada | Media (6.9) | 0.17% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. | |
| Analizada | Alta (7) | 0.10% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Missing encryption of sensitive data in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to intercept transmitted data. | |
| Analizada | Media (4.7) | 0.16% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Insufficient verification of data authenticity in Smart Switch trouble scanning mode prior to version 3.7.72.6 allows adjacent attackers to spoof device identity. | |
| Analizada | Media (6.9) | 0.13% | — | Samsung Health | 10/8/2026 | 19/8/2026 | Incorrect authorization in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. | |
| Analizada | Media (6.9) | 0.13% | — | Samsung Health | 10/8/2026 | 19/8/2026 | Incorrect authorization in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. | |
| Pendiente de análisis | Alta (7.2) | 0.14% | — | Samsung BixbyAI | 10/8/2026 | 18/8/2026 | Incorrect default permissions in Bixby prior to version 4.0.86.0 allows local attackers to execute arbitrary commands with Bixby privilege. | |
| Analizada | Media (5.2) | 0.21% | — | Samsung Android | 10/8/2026 | 19/8/2026 | Improper input validation in Galaxy Themes prior to SMR Aug-2026 Release 1 allows physical attackers to launch arbitrary activity. |