Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2759▼ 357 respecto a la semana anterior
Críticas / altas1278▼ 254 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)223▼ 98 respecto a la semana anterior
–

14.266 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.1)0.38%—Jetbrains Youtrack17/8/202615/9/2026
In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missing authorisation allowed an authenticated user to delete arbitrary entities via the mailbox endpoint
Pendiente de análisisMedia (5.9)0.37%—Jetbrains KtorAI17/8/202628/8/2026
In JetBrains Ktor before 3.4.1 potential DoS attack via WebSocket decompression was possible
AplazadaAlta (7.4)0.83%—UptrainAI17/8/202629/9/2026
UpTrain es una plataforma de código abierto para evaluar y mejorar aplicaciones de IA generativa. En la versión 0.7.1 y anteriores, el endpoint '/new_run' es vulnerable a ejecución remota de código a través de los parámetros 'checks' y 'metadata'. Cualquier usuario que tenga acceso a UpTrain y un método de…
AplazadaAlta (7.4)0.83%—UptrainAI17/8/202629/9/2026
UpTrain es una plataforma de código abierto para evaluar y mejorar aplicaciones de IA generativa. En la versión 0.7.1 y anteriores, el endpoint '/add_prompts' es vulnerable a ejecución remota de código a través de los parámetros 'checks' y 'metadata'. Cualquier usuario que tenga acceso a UpTrain y un método de…
AplazadaAlta (7.4)0.83%—UptrainAI17/8/202629/9/2026
UpTrain es una plataforma de código abierto para evaluar y mejorar aplicaciones de IA generativa. En la versión 0.7.1 y anteriores, el endpoint '/create_project' es vulnerable a ejecución remota de código a través de los parámetros 'checks' y 'metadata'. Cualquier usuario que tenga acceso a UpTrain y un método de…
AplazadaAlta (7.7)0.46%—UptrainAI17/8/202629/9/2026
UpTrain es una plataforma de código abierto para evaluar y mejorar aplicaciones de IA generativa. En la versión 0.7.1 y anteriores, el backend de UpTrain crea un nuevo usuario predeterminado con un nombre de usuario estático, donde el nombre de usuario también se utiliza como clave API predeterminada. El backend de…
AnalizadaMedia (4.3)0.39%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the modoboa driver of the password plugin could leak a Modoboa API authentication token to a user-controlled host via crafted session data. This issue only affects Roundcube instances using the password plugin with its modoboa driver.
AnalizadaAlta (8.8)0.50%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search filter was subject to injection via unescaped %u/%fu/%d substitution, which may lead to information disclosure or privilege escalation.
AnalizadaMedia (5.8)0.42%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to SSRF or Information Disclosure, e.g., if stylesheet links point to local network hosts. This issue exists because of insufficient fixes for CVE-2026-35540,…
AnalizadaMedia (4.3)0.37%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name quoting could lead to managesieve_disabled_actions setting bypass via a crafted rule name in a Sieve script. This issue only affects Roundcube instances using the managesieve plugin.
AnalizadaCrítica (9.8)0.58%—Roundcube Webmail17/8/202610/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, an unclosed url() in a FuncIRI attribute of an SVG image could evade the remote image blocking, which may lead to information disclosure or privilege escalation.
AnalizadaAlta (7.1)2.3%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.
AnalizadaMedia (5.8)0.47%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper HTML/CSS sanitization of the SVG animate "by" attribute may lead to remote image blocking bypass, which in turn may lead to information disclosure or privilege escalation.
AnalizadaMedia (5.4)0.30%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.
AnalizadaAlta (7.2)0.44%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, responses from the CSS (Cascading Style Sheets) proxy were not validated, which may result in information disclosure or XSS (cross-site scripting) via MIME sniffing.
AnalizadaAlta (8.8)1.1%—Roundcube Webmail17/8/20268/9/2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the cmd_learn driver of the markasjunk plugin is subject to remote code execution via crafted placeholder replacement values. This issue only affects Roundcube instances using the markasjunk plugin with its cmd_learn driver.
Pendiente de análisisAlta (7.9)0.70%—Redhat Openshift AIAIRedhat OpenshiftAI17/8/20265/10/2026
A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenShift AI. These ServiceAccounts are granted cluster-wide permissions that exceed their operational requirements. An attacker who compromises the identity of these ServiceAccounts, either through a remote code execution…
AplazadaMedia (5.3)0.37%—Gomarble-ai Facebook-ads-mcp-serverAI16/8/202620/8/2026
A vulnerability has been found in gomarble-ai facebook-ads-mcp-server 0.1.0. The impacted element is the function fetch_pagination_url of the file server.py. Such manipulation leads to server-side request forgery. The attack can be launched remotely. The name of the patch is 4e53875aa22e8991c2fa4a7660d86e1caba66659.…
AplazadaBaja (2)0.41%—TraildbAI16/8/202620/8/2026
A vulnerability was detected in TrailDB 0.6. Impacted is the function tdb_open of the file /src/tdb.c of the component TOC Validation. The manipulation results in out-of-bounds read. It is possible to launch the attack remotely. The exploit is now public and may be used. The project was informed of the problem early…
AplazadaMedia (4.3)0.39%—Kubio AI Page BuilderAI16/8/202620/8/2026
The Kubio AI Page Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.8.5. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with contributor-level access and above,…
Pendiente de análisisAlta (7)0.16%—Johnsoncontrols AirwallAI14/8/20263/9/2026
Use of hard-coded cryptographic key vulnerability in Johnson Controls Airwall allows : Cryptanalytic Attack. This issue affects Airwall: before 4.1.
Pendiente de análisisAlta (7)0.43%—Johnsoncontrols AirwallAI14/8/20263/9/2026
External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipulation. This issue affects Airwall: before 4.1.
AplazadaCrítica (10)2.9%—Haiwell IOT Cloud HMI GatewayAI14/8/20268/9/2026
A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gateway product. The vulnerability exists in the Net Check feature accessible via the /setting endpoint. The cmdPing Socket.io event fails to properly sanitize user-supplied input before passing it to the underlying…
AnalizadaMedia (4.4)0.15%—Redhat Openshift Container PlatformRedhat Enterprise Linux14/8/202631/8/2026
A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.
ModificadaMedia (5.5)0.16%—Redhat Hardened ImagesRedhat Openshift Container PlatformRedhat Enterprise Linux14/8/20262/10/2026
A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration file parser, exhausting the stack and causing any LVM command reading the metadata to crash. This…