Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2782▼ 316 respecto a la semana anterior
Críticas / altas1289▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 107 respecto a la semana anterior
–

23.898 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaBaja (1)0.15%—Opensc Project Opensc29/5/202621/7/2026
OpenSC antes de 0.27.0, corregido en el commit 0358817, contiene una vulnerabilidad de desbordamiento de búfer de pila y de montón en la función do_key_value() en src/pkcs15init/profile.c que permite a los atacantes corromper la memoria al proporcionar un archivo de configuración de perfil manipulado. Durante la…
AnalizadaBaja (1)0.25%—Opensc Project Opensc29/5/202621/7/2026
OpenSC antes de 0.27.0-rc1, corregido en el commit 3f24f0b, contiene una vulnerabilidad de desbordamiento de búfer de pila en piv_process_history() en src/libopensc/card-piv.c que permite a atacantes físicamente presentes desencadenar corrupción de memoria al presentar una tarjeta inteligente PIV o dispositivo USB…
Pendiente de análisisMedia (4.1)0.19%—Project Quay Config ToolAI29/5/202621/7/2026
Se encontró una vulnerabilidad en las funciones de validación LDAP y SMTP de la herramienta de configuración de Quay. Un atacante con acceso de editor de configuración puede explotar estas funciones, que realizan conexiones salientes a puntos finales proporcionados por el usuario sin un filtrado adecuado de IP o de…
AnalizadaMedia (5.1)0.39%—TFA Basic Plugins Project TFA Basic Plugins28/5/202621/7/2026
Una vulnerabilidad de omisión de acceso en los plugins básicos de TFA de Drupal permite a los usuarios con el permiso 'administrar usuarios' ver o generar códigos de recuperación para otros usuarios. Este problema afecta a los plugins básicos de TFA: desde 7.x-1.0 hasta 7.x-1.2.
AplazadaAlta (8.8)1.00%—Vllm-project VllmAI28/5/202617/6/2026
vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This bypasses the user's explicit `--trust-remote-code=False` setting,…
AnalizadaMedia (6)0.15%—Electerm Project Electerm28/5/202617/6/2026
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.9.5, deterministic AES-192-CBC with a fixed zero IV, constant KDF salt, and no MAC leads to confidentiality and integrity failures for synced bookmark/profile data. Attackers can crack common passwords across installs…
AnalizadaCrítica (9.3)0.17%—Electerm Project Electerm28/5/202617/6/2026
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6 to 3.8.8, This vulnerability is fixed in 3.9.0.
AplazadaAlta (7.2)0.30%—Projectcalico CalicoctlAI28/5/202617/6/2026
When calicoctl is invoked with --log-level=info or --log-level=debug, the client prints the full contents of its loaded connection-configuration struct to stderr in a single log line. The struct embeds every credential calicoctl uses to talk to the cluster — inline kubeconfig (with bearer token), Kubernetes API bearer…
AnalizadaMedia (6.9)0.18%—Pypdf Project Pypdf28/5/202617/6/2026
pypdf is a free and open-source pure-python PDF library. Prior to 6.12.1, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing large XMP metadata, possibly with lots of unnecessary elements. This vulnerability is fixed in 6.12.1.
ModificadaAlta (7.4)0.43%—Pyjwt Project Pyjwt28/5/202610/9/2026
PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, when the verifier is decoding JSON Web Tokens, while supporting both asymmetric and HMAC algorithms, the library does not validate use of JSON Web Keys in HMAC algorithm, allowing attacker to use the issuer public key as the secret key for HMAC…
AnalizadaMedia (5.3)0.41%—Pyjwt Project Pyjwt28/5/202617/6/2026
PyJWT is a JSON Web Token implementation in Python. From 2.8.0 to 2.12.1, when verifying detached JWS tokens using the unencoded-payload option ("b64": false, RFC 7797), PyJWT performs Base64URL decoding of the compact-serialization payload segment before enforcing the detached-payload rules. For b64=false, PyJWT…
AnalizadaBaja (3.7)0.32%—Pyjwt Project Pyjwt28/5/202617/6/2026
PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient.get_signing_key() forces a fresh HTTP request to the JWKS endpoint for every JWT with an unknown kid value, with no rate limiting. Since kid comes from the unverified token header, an attacker can trigger unlimited outbound requests. The…
AnalizadaMedia (5.4)0.17%—Pyjwt Project Pyjwt28/5/202616/9/2026
PyJWT is a JSON Web Token implementation in Python. From 2.9.0 to 2.12.1, there is a verifier-side algorithm allow-list bypass when jwt.decode() or jwt.decode_complete() are called with a PyJWK key. The token header alg is checked against the caller-supplied algorithms allow-list, but signature verification is…
ModificadaMedia (4.2)0.22%—Pyjwt Project Pyjwt28/5/202617/6/2026
PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient passes its uri argument directly to urllib.request.urlopen() which uses Python stdlib's default OpenerDirector registering HTTPHandler, HTTPSHandler, FTPHandler, FileHandler, and DataHandler. There is currently no documented option to…
AnalizadaMedia (5.1)0.17%—Pypdf Project Pypdf28/5/202617/6/2026
pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires cross-reference streams with /W [0 0 0] values and large /Size values. This vulnerability is fixed in 6.12.0.
AnalizadaMedia (4.8)0.18%—Pypdf Project Pypdf28/5/202617/6/2026
pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires extracting text in layout mode with large character offsets. This vulnerability is fixed in 6.12.0.
AnalizadaAlta (8.7)0.64%—Ultrajson Project Ultrajson27/5/202617/6/2026
UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Prior to 5.12.1, when ujson.dump() writes to a file-like object and the write operation raises an exception, the serialized JSON string object is not decremented, leaking memory. Each failed write operation leaks the full…
AnalizadaMedia (6.9)0.46%—Botan Project Botan27/5/202617/6/2026
Botan is a C++ cryptography library. Prior to 3.12.0, certain patterns of indefinite length encodings in BER data could cause quadratic behavior in the parser, resulting in a denial of service. Such BER encodings were accepted even in structures which are required to be encoded as DER, which prohibits indefinite…
AnalizadaMedia (5.4)0.33%—Go-git Project Go-git27/5/202617/6/2026
go-git is an extensible git implementation library written in pure Go. Prior to 5.19.1 and 6.0.0-alpha.4, a path validation issue in go-git could allow crafted repository data to affect files outside the intended checkout target, including the repository's .git directory. These validations were introduced in upstream…
AnalizadaBaja (2.3)0.43%—Go-git Project Go-git27/5/202617/6/2026
go-git is an extensible git implementation library written in pure Go. Prior to 5.19.1 and 6.0.0-alpha.4, go-git's SSH transport constructs the remote exec command by wrapping the repository path in single quotes without escaping single quotes embedded inside the path. A repository path containing a single quote can…
AnalizadaAlta (7)0.16%—Go-git Project Go-git27/5/202617/6/2026
go-git is an extensible git implementation library written in pure Go. Prior to 5.19.0 and 6.0.0-alpha.3, go-git may parse malformed Git objects in a way that differs from upstream Git. When commit or tag objects contain ambiguous or malformed headers, go-git’s decoded representation may expose values differently from…
AnalizadaAlta (7.6)0.47%—Gradio Project Gradio27/5/20268/10/2026
Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any HF Space can return a parent-domain cookie that the…
AplazadaMedia (5.3)0.40%—Mojolicious Plugin StatsdAIPerl NET Statsd TinyAI26/5/202624/7/2026
Las versiones de Mojolicious::Plugin::Statsd hasta la 0.04 para Perl permitían inyecciones de métricas. Los nombres de las métricas y los valores establecidos no se verificaban en busca de saltos de línea, dos puntos o barras verticales. Las métricas generadas a partir de fuentes no confiables podrían inyectar…
AplazadaMedia (5.5)0.41%—Code-projects Project Management SystemAI26/5/202624/7/2026
Una vulnerabilidad de seguridad ha sido detectada en code-projects Project Management System 1.0. Afecta a una función desconocida del archivo chk.PHP del componente Login. La manipulación conduce a inyección SQL. Es posible iniciar el ataque remotamente. El exploit ha sido divulgado públicamente y puede ser utilizado.
AnalizadaMedia (6.1)0.27%—Mistune Project Mistune26/5/202624/7/2026
Mistune es un analizador de Markdown de Python con renderizadores y plugins. Antes de la versión 3.2.1, el plugin de la directiva Image valida las opciones :width: y :height: con una expresión regular compilada como _num_re = re.compile(r"^\d+(?:\.\d)?"). Cuando el valor validado no es un número entero simple,…