Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2827▼ 257 respecto a la semana anterior
Críticas / altas1324▼ 180 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 107 respecto a la semana anterior
11.986 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.8) | 0.15% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Use of a Broken or Risky Cryptographic Algorithm vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure and Information tampering. | |
| Modificada | Media (6.5) | 0.37% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to denial of service. | |
| Modificada | Alta (8) | 0.25% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Access Control vulnerability. A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Elevation of privileges and Unauthorized access. | |
| Modificada | Alta (7.1) | 0.32% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to denial of service. | |
| Modificada | Alta (8.8) | 0.53% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Code execution, Denial of service, Information disclosure, Information… | |
| Modificada | Alta (8.1) | 0.35% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Modificada | Alta (7.5) | 0.21% | — | Dell Powerflex Manager | 17/6/2026 | 25/6/2026 | Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Inclusion of Functionality from Untrusted Control Sphere vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure. | |
| Aplazada | Media (6.4) | 0.33% | — | Permalink Manager LiteAI | 17/6/2026 | 17/6/2026 | The Permalink Manager Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post titles in the admin URI Editor interface in all versions up to, and including, 2.5.3.3 due to insufficient output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above,… | |
| Aplazada | Alta (8.5) | 0.35% | — | Effress Woocommerce Frontend Manager UltimateAI | 17/6/2026 | 17/6/2026 | Subscriber SQL Injection in WooCommerce Frontend Manager – Ultimate < 6.7.7 versions. | |
| Analizada | Media (6.5) | 0.12% | — | Dell Powerflex Manager | 17/6/2026 | 1/10/2026 | Dell PowerFlex Manager, versiones anteriores a la 4.5.1.1, contienen una vulnerabilidad de validación de certificado incorrecta. Un atacante remoto no autenticado podría potencialmente explotar esta vulnerabilidad, lo que llevaría a un ataque man-in-the-middle en conjunto con envenenamiento de caché DNS. | |
| Analizada | Alta (7.2) | 0.49% | — | Oracle Property Manager | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Property Manager product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Property Manager. Successful… | |
| Analizada | Crítica (9.9) | 0.43% | — | Oracle Applications Manager | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Manager. While… | |
| Modificada | Crítica (9.1) | 0.49% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Deployment Library). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTPS to compromise Oracle Enterprise… | |
| Modificada | Crítica (9) | 0.40% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 17/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Install). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTPS to compromise Oracle Enterprise Manager Base… | |
| Modificada | Alta (7.2) | 0.49% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Extensibility Framework). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTPS to compromise Oracle Enterprise… | |
| Modificada | Alta (7.2) | 0.49% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Extensibility Framework). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTPS to compromise Oracle Enterprise… | |
| Modificada | Alta (8.2) | 0.41% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 17/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Agent Next Gen). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Enterprise Manager… | |
| Modificada | Alta (8.2) | 0.18% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Extensibility Framework). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Enterprise… | |
| Analizada | Alta (8.8) | 0.43% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Agent Next Gen). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows low privileged attacker with network access via SSH to compromise Oracle Enterprise Manager Base… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Oracle Management Service). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise… | |
| Analizada | Crítica (9.6) | 0.47% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise Manager… | |
| Analizada | Crítica (9.9) | 0.43% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Enterprise Manager… | |
| Analizada | Crítica (9.9) | 0.43% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Target Management). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Enterprise Manager… | |
| Analizada | Crítica (9.6) | 0.47% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise Manager… | |
| Analizada | Crítica (9.9) | 0.43% | — | Oracle Enterprise Manager Base Platform | 17/6/2026 | 18/6/2026 | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Metadata Plugin). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Enterprise Manager… |