Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 321 respecto a la semana anterior
Críticas / altas1271▼ 203 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 108 respecto a la semana anterior
736 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 2.8% | 💥 Exploit | Opera Software Opera WEB Browser | 12/8/2002 | 16/6/2026 | Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL. | |
| Modificada | Media (5) | 2.4% | — | Galeon BrowserMozillaNetscape Navigator | 18/6/2002 | 16/6/2026 | Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect. | |
| Modificada | Alta (7.5) | 1.4% | — | Opera Software Opera WEB Browser | 29/5/2002 | 16/6/2026 | Vulnerabilidad de secuencias de comandos en sitios cruzados en Internet Opera 6 y anteriores permite que atacante remotos ejecuten código arbitrario por medio de un formulario HTML extendido, cuya salida del servidor remoto no se ha aclarado adecuadamente. | |
| Modificada | Media (4.3) | 4.7% | — | Opera Software Opera WEB Browser | 29/5/2002 | 16/6/2026 | Opera, when configured with the "Determine action by MIME type" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use… | |
| Modificada | Media (5) | 7.0% | 💥 Exploit | Opera Software Opera WEB Browser | 31/12/2001 | 16/6/2026 | Opera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images. | |
| Modificada | Media (5) | 3.1% | 💥 Exploit | Opera Software Opera WEB Browser | 15/11/2001 | 16/6/2026 | Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache. | |
| Modificada | Media (5) | 2.4% | — | Opera Software Opera WEB Browser | 9/7/2001 | 16/6/2026 | Opera 5.0 for Linux does not properly handle malformed HTTP headers, which allows remote attackers to cause a denial of service, possibly with a header whose value is the same as a MIME header name. | |
| Modificada | Media (5) | 2.8% | 💥 Exploit | SUN Hotjava Browser | 19/12/2000 | 23/9/2026 | HotJava Navegador 3.0 permite a atacantes remotos acceder al DOM de una página web abriendo una URL javascript: en una ventana con nombre. | |
| Modificada | Media (5) | 1.7% | — | Virtual Vision FTP Browser | 12/7/2000 | 16/6/2026 | ftp.pl CGI program for Virtual Visions FTP browser allows remote attackers to read directories outside of the document root via a .. (dot dot) attack. | |
| Modificada | Media (5) | 1.1% | — | IBM Navio NC Browser | 29/1/1999 | 16/6/2026 | netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable. | |
| Modificada | Media (5) | 1.3% | — | Opera Software Opera WEB Browser | 14/8/1998 | 16/6/2026 | Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra / in the http:// tag. |