Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 321 respecto a la semana anterior
Críticas / altas1271▼ 203 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 108 respecto a la semana anterior
23.384 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.8) | 0.33% | — | Open Ises ProjectAI | 29/5/2026 | 21/7/2026 | El Proyecto Open ISES 3.30A contiene una vulnerabilidad de inyección SQL que permite a atacantes no autenticados ejecutar consultas SQL arbitrarias inyectando código malicioso a través del parámetro 'id'. Los atacantes pueden enviar solicitudes GET al endpoint ajax/form_post.php con cargas útiles SQL manipuladas para… | |
| Aplazada | Alta (8.8) | 0.33% | — | Open Ises ProjectAI | 29/5/2026 | 21/7/2026 | El Proyecto Open ISES 3.30A contiene una vulnerabilidad de inyección SQL que permite a atacantes no autenticados ejecutar consultas SQL arbitrarias inyectando código malicioso a través de los parámetros tick_lat y tick_lng. Los atacantes pueden enviar solicitudes GET a nearby.php con cargas útiles SQL manipuladas para… | |
| Aplazada | Alta (8.8) | 0.33% | — | Open Ises Project Open IsesAI | 29/5/2026 | 21/7/2026 | El Proyecto Open ISES 3.30A contiene una vulnerabilidad de inyección SQL que permite a atacantes no autenticados ejecutar consultas SQL arbitrarias inyectando código malicioso a través del parámetro frm_passwd. Los atacantes pueden enviar solicitudes POST a main.php con cargas útiles SQL elaboradas para extraer… | |
| Modificada | Media (5.3) | 0.55% | — | Mermaid Project Mermaid | 29/5/2026 | 21/7/2026 | Mermaid es una herramienta de JavaScript que utiliza texto inspirado en Markdown para crear y modificar diagramas y gráficos. Antes de las versiones 10.9.6 y 11.15.0, la configuración predeterminada de Mermaid permite inyectar CSS que se aplica fuera del diagrama de Mermaid a través de las opciones de configuración… | |
| Analizada | Media (5.3) | 0.53% | — | Mermaid Project Mermaid | 29/5/2026 | 21/7/2026 | Mermaid es una herramienta de JavaScript que utiliza texto inspirado en Markdown para crear y modificar diagramas y gráficos. Antes de las versiones 10.9.6 y 11.15.0, existe un ataque de denegación de servicio al renderizar diagramas de Gantt, si estos utilizan el atributo excludes para excluir todas las fechas.… | |
| Analizada | Baja (1) | 0.15% | — | Opensc Project Opensc | 29/5/2026 | 21/7/2026 | OpenSC antes de 0.27.0, corregido en el commit 0358817, contiene una vulnerabilidad de desbordamiento de búfer de pila y de montón en la función do_key_value() en src/pkcs15init/profile.c que permite a los atacantes corromper la memoria al proporcionar un archivo de configuración de perfil manipulado. Durante la… | |
| Analizada | Baja (1) | 0.25% | — | Opensc Project Opensc | 29/5/2026 | 21/7/2026 | OpenSC antes de 0.27.0-rc1, corregido en el commit 3f24f0b, contiene una vulnerabilidad de desbordamiento de búfer de pila en piv_process_history() en src/libopensc/card-piv.c que permite a atacantes físicamente presentes desencadenar corrupción de memoria al presentar una tarjeta inteligente PIV o dispositivo USB… | |
| Pendiente de análisis | Media (4.1) | 0.19% | — | Project Quay Config ToolAI | 29/5/2026 | 21/7/2026 | Se encontró una vulnerabilidad en las funciones de validación LDAP y SMTP de la herramienta de configuración de Quay. Un atacante con acceso de editor de configuración puede explotar estas funciones, que realizan conexiones salientes a puntos finales proporcionados por el usuario sin un filtrado adecuado de IP o de… | |
| Analizada | Media (5.1) | 0.39% | — | TFA Basic Plugins Project TFA Basic Plugins | 28/5/2026 | 21/7/2026 | Una vulnerabilidad de omisión de acceso en los plugins básicos de TFA de Drupal permite a los usuarios con el permiso 'administrar usuarios' ver o generar códigos de recuperación para otros usuarios. Este problema afecta a los plugins básicos de TFA: desde 7.x-1.0 hasta 7.x-1.2. | |
| Aplazada | Alta (8.8) | 1.00% | — | Vllm-project VllmAI | 28/5/2026 | 17/6/2026 | vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This bypasses the user's explicit `--trust-remote-code=False` setting,… | |
| Analizada | Media (6) | 0.15% | — | Electerm Project Electerm | 28/5/2026 | 17/6/2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.9.5, deterministic AES-192-CBC with a fixed zero IV, constant KDF salt, and no MAC leads to confidentiality and integrity failures for synced bookmark/profile data. Attackers can crack common passwords across installs… | |
| Analizada | Crítica (9.3) | 0.17% | — | Electerm Project Electerm | 28/5/2026 | 17/6/2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6 to 3.8.8, This vulnerability is fixed in 3.9.0. | |
| Aplazada | Alta (7.2) | 0.30% | — | Projectcalico CalicoctlAI | 28/5/2026 | 17/6/2026 | When calicoctl is invoked with --log-level=info or --log-level=debug, the client prints the full contents of its loaded connection-configuration struct to stderr in a single log line. The struct embeds every credential calicoctl uses to talk to the cluster — inline kubeconfig (with bearer token), Kubernetes API bearer… | |
| Analizada | Media (6.9) | 0.18% | — | Pypdf Project Pypdf | 28/5/2026 | 17/6/2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.12.1, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing large XMP metadata, possibly with lots of unnecessary elements. This vulnerability is fixed in 6.12.1. | |
| Modificada | Alta (7.4) | 0.43% | — | Pyjwt Project Pyjwt | 28/5/2026 | 10/9/2026 | PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, when the verifier is decoding JSON Web Tokens, while supporting both asymmetric and HMAC algorithms, the library does not validate use of JSON Web Keys in HMAC algorithm, allowing attacker to use the issuer public key as the secret key for HMAC… | |
| Analizada | Media (5.3) | 0.41% | — | Pyjwt Project Pyjwt | 28/5/2026 | 17/6/2026 | PyJWT is a JSON Web Token implementation in Python. From 2.8.0 to 2.12.1, when verifying detached JWS tokens using the unencoded-payload option ("b64": false, RFC 7797), PyJWT performs Base64URL decoding of the compact-serialization payload segment before enforcing the detached-payload rules. For b64=false, PyJWT… | |
| Analizada | Baja (3.7) | 0.32% | — | Pyjwt Project Pyjwt | 28/5/2026 | 17/6/2026 | PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient.get_signing_key() forces a fresh HTTP request to the JWKS endpoint for every JWT with an unknown kid value, with no rate limiting. Since kid comes from the unverified token header, an attacker can trigger unlimited outbound requests. The… | |
| Analizada | Media (5.4) | 0.17% | — | Pyjwt Project Pyjwt | 28/5/2026 | 16/9/2026 | PyJWT is a JSON Web Token implementation in Python. From 2.9.0 to 2.12.1, there is a verifier-side algorithm allow-list bypass when jwt.decode() or jwt.decode_complete() are called with a PyJWK key. The token header alg is checked against the caller-supplied algorithms allow-list, but signature verification is… | |
| Modificada | Media (4.2) | 0.22% | — | Pyjwt Project Pyjwt | 28/5/2026 | 17/6/2026 | PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient passes its uri argument directly to urllib.request.urlopen() which uses Python stdlib's default OpenerDirector registering HTTPHandler, HTTPSHandler, FTPHandler, FileHandler, and DataHandler. There is currently no documented option to… | |
| Analizada | Media (5.1) | 0.17% | — | Pypdf Project Pypdf | 28/5/2026 | 17/6/2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires cross-reference streams with /W [0 0 0] values and large /Size values. This vulnerability is fixed in 6.12.0. | |
| Analizada | Media (4.8) | 0.18% | — | Pypdf Project Pypdf | 28/5/2026 | 17/6/2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires extracting text in layout mode with large character offsets. This vulnerability is fixed in 6.12.0. | |
| Analizada | Alta (8.7) | 0.64% | — | Ultrajson Project Ultrajson | 27/5/2026 | 17/6/2026 | UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Prior to 5.12.1, when ujson.dump() writes to a file-like object and the write operation raises an exception, the serialized JSON string object is not decremented, leaking memory. Each failed write operation leaks the full… | |
| Analizada | Media (6.9) | 0.46% | — | Botan Project Botan | 27/5/2026 | 17/6/2026 | Botan is a C++ cryptography library. Prior to 3.12.0, certain patterns of indefinite length encodings in BER data could cause quadratic behavior in the parser, resulting in a denial of service. Such BER encodings were accepted even in structures which are required to be encoded as DER, which prohibits indefinite… | |
| Analizada | Media (5.4) | 0.33% | — | Go-git Project Go-git | 27/5/2026 | 17/6/2026 | go-git is an extensible git implementation library written in pure Go. Prior to 5.19.1 and 6.0.0-alpha.4, a path validation issue in go-git could allow crafted repository data to affect files outside the intended checkout target, including the repository's .git directory. These validations were introduced in upstream… | |
| Analizada | Baja (2.3) | 0.43% | — | Go-git Project Go-git | 27/5/2026 | 17/6/2026 | go-git is an extensible git implementation library written in pure Go. Prior to 5.19.1 and 6.0.0-alpha.4, go-git's SSH transport constructs the remote exec command by wrapping the repository path in single quotes without escaping single quotes embedded inside the path. A repository path containing a single quote can… |