Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2758▼ 17 respecto a la semana anterior
Críticas / altas1269▼ 209 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 185 respecto a la semana anterior
7726 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.4) | 9.5% | — | Adobe Coldfusion | 9/12/2025 | 25/9/2026 | Las versiones de ColdFusion 2025.4, 2023.16, 2021.22 y anteriores se ven afectadas por una vulnerabilidad de Deserialización de Datos No Confiables que podría resultar en ejecución de código arbitrario en el contexto del usuario actual. Un atacante con altos privilegios podría explotar esta vulnerabilidad al… | |
| Analizada | Crítica (9.1) | 0.66% | — | Adobe Coldfusion | 9/12/2025 | 25/9/2026 | Las versiones de ColdFusion 2025.4, 2023.16, 2021.22 y anteriores se ven afectadas por una vulnerabilidad de validación de entrada incorrecta que podría resultar en una omisión de característica de seguridad. Un atacante podría aprovechar esta vulnerabilidad para eludir las medidas de seguridad y obtener acceso de… | |
| Analizada | Crítica (9.1) | 11% | — | Adobe Coldfusion | 9/12/2025 | 25/9/2026 | Las versiones de ColdFusion 2025.4, 2023.16, 2021.22 y anteriores se ven afectadas por una vulnerabilidad de carga sin restricciones de archivos de tipo peligroso que podría conducir a la ejecución de código arbitrario por parte de un atacante con altos privilegios. La explotación de este problema no requiere… | |
| Analizada | Alta (7.8) | 0.50% | — | Adobe AcrobatAdobe Acrobat DCAdobe Acrobat ReaderAdobe Acrobat Reader DC | 9/12/2025 | 25/9/2026 | Las versiones de Acrobat Reader 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 y anteriores están afectadas por una vulnerabilidad de lectura fuera de límites al analizar un archivo manipulado, lo que podría resultar en una lectura más allá del final de una estructura de memoria asignada. Un… | |
| Analizada | Media (5.5) | 0.18% | — | Adobe Creative Cloud | 9/12/2025 | 25/9/2026 | Las versiones 6.4.0.361 y anteriores de Creative Cloud Desktop se ven afectadas por una vulnerabilidad de creación de archivo temporal en directorio con permisos incorrectos que podría conducir a una denegación de servicio de la aplicación. Un atacante podría explotar esta vulnerabilidad para interrumpir la… | |
| Analizada | Baja (3.3) | 0.45% | — | Adobe AcrobatAdobe Acrobat DCAdobe Acrobat ReaderAdobe Acrobat Reader DC | 9/12/2025 | 25/9/2026 | Las versiones de Acrobat Reader 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 y anteriores se ven afectadas por una vulnerabilidad de Verificación Incorrecta de Firma Criptográfica que podría resultar en una omisión de característica de seguridad. Un atacante podría aprovechar esta… | |
| Analizada | Baja (3.3) | 0.43% | — | Adobe AcrobatAdobe Acrobat DCAdobe Acrobat ReaderAdobe Acrobat Reader DC | 9/12/2025 | 25/9/2026 | Las versiones de Acrobat Reader 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 y anteriores están afectadas por una vulnerabilidad de Verificación Incorrecta de Firma Criptográfica que podría resultar en una omisión de característica de seguridad. Un atacante podría aprovechar esta vulnerabilidad… | |
| Analizada | Alta (7.8) | 0.48% | — | Adobe AcrobatAdobe Acrobat DCAdobe Acrobat ReaderAdobe Acrobat Reader DC | 9/12/2025 | 25/9/2026 | Las versiones de Acrobat Reader 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 y anteriores se ven afectadas por una vulnerabilidad de ruta de búsqueda no confiable que podría permitir a los atacantes ejecutar código arbitrario en el contexto del usuario actual. Si la aplicación utiliza una ruta… | |
| Analizada | Media (5.5) | 0.17% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this issue to cause the application to crash or become unresponsive. Exploitation of this issue requires user interaction in that a victim must… | |
| Analizada | Alta (7.1) | 0.18% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure or application denial of service. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a… | |
| Analizada | Alta (7.1) | 0.20% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure or application denial of service. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a… | |
| Analizada | Alta (7.8) | 0.21% | — | Adobe DNG Software Development KIT | 9/12/2025 | 17/6/2026 | DNG SDK versions 1.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.20% | — | Adobe Substance 3D Stager | 11/11/2025 | 17/6/2026 | Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.22% | — | Adobe Substance 3D Stager | 11/11/2025 | 17/6/2026 | Substance3D - Stager versions 3.1.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.23% | — | Adobe Substance 3D Stager | 11/11/2025 | 17/6/2026 | Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.22% | — | Adobe Substance 3D Stager | 11/11/2025 | 17/6/2026 | Substance3D - Stager versions 3.1.5 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of… | |
| Analizada | Media (5.5) | 0.20% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious… | |
| Analizada | Media (5.5) | 0.20% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious… | |
| Analizada | Media (5.5) | 0.20% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious… | |
| Analizada | Media (5.5) | 0.20% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by a Use After Free vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.5) | 0.19% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive memory information. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.5) | 0.20% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious… | |
| Analizada | Alta (7.8) | 0.25% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this… | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.29% | — | Adobe Format Plugins | 11/11/2025 | 17/6/2026 | Format Plugins versions 1.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |