Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
687 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.1) | 0.45% | — | User Registration MembershipAI | 13/7/2026 | 13/7/2026 | The User Registration & Membership WordPress plugin before 5.2.2 does not verify the authenticity of incoming payment-provider webhook notifications before acting on them, allowing unauthenticated attackers to forge a payment-approved event and activate a paid membership subscription without completing a real payment. | |
| Aplazada | Alta (8.1) | 0.35% | — | User Registration Membership User Registration AND MembershipAI | 13/7/2026 | 13/7/2026 | The User Registration & Membership WordPress plugin before 5.2.2 does not perform an authorization check on a membership-upgrade action and derives the user to modify from a caller-supplied identifier instead of the current user, allowing any authenticated user such as a subscriber to change another user's WordPress… | |
| Aplazada | Crítica (9.8) | 0.89% | — | Miniorange Social Login AND RegisterAI | 10/7/2026 | 13/7/2026 | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin for WordPress is vulnerable to authentication bypass leading to account takeover in versions up to and including 7.7.0. This is due to the Profile Completion flow accepting an arbitrary email address via the 'email_field' POST… | |
| Aplazada | Media (5.1) | 0.36% | — | Webkul BagistoAI | 9/7/2026 | 14/7/2026 | Bagisto before 2.4.4 contains a stored cross-site scripting vulnerability via client-side template injection that allows unauthenticated attackers to execute arbitrary JavaScript in administrator browsers by registering a customer account with malicious payload in the first or last name field. The create.blade.php… | |
| Aplazada | Media (6.3) | 0.37% | — | Themehunk Login RegistrationAI | 8/7/2026 | 8/7/2026 | The Themehunk Login Registration plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.0.2. This is due to the handle_frontend_register() function in the unauthenticated /thlogin/v1/register REST endpoint accepting a user-controlled 'role' parameter and validating it only… | |
| Pendiente de análisis | Alta (8.6) | 0.58% | — | Amazon Mcp-gateway-registryAI | 6/7/2026 | 7/7/2026 | Improper Neutralization of Special Elements in the metrics-service retention policy management component in Amazon mcp-gateway-registry before 1.0.13 might allow an authenticated remote user to execute arbitrary SQL queries via a crafted table_name value that is interpolated into SQL statements in identifier position.… | |
| Aplazada | Media (6.5) | 0.27% | — | User Registration MembershipAI | 2/7/2026 | 2/7/2026 | The User Registration & Membership WordPress plugin before 5.2.0 does not enforce payment completion before activating a paid membership subscription, allowing unauthenticated users (after self-registering an account through the open registration flow) to obtain an active subscription on any paid plan without paying… | |
| Aplazada | Alta (8.8) | 0.32% | — | Metagauss RegistrationmagicAI | 1/7/2026 | 1/7/2026 | The RegistrationMagic – User Registration Forms Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.0.9.1. This is due to missing or incorrect nonce validation on the process_request function. This makes it possible for unauthenticated attackers to escalate… | |
| Aplazada | Media (5.3) | 0.34% | — | Metagauss RegistrationmagicAI | 27/6/2026 | 29/6/2026 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Authentication Bypass via Insufficient Verification of Data Authenticity in all versions up to and including 6.0.8.6. This is due to the PayPal IPN `callback` handler being registered as… | |
| Aplazada | Media (6.5) | 0.30% | — | User Registration AND MembershipAI | 26/6/2026 | 26/6/2026 | The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder plugin for WordPress is vulnerable to unauthorized modification of data due to missing validation checks in the confirm_payment() function in all versions up to, and… | |
| Modificada | Media (6.5) | 0.52% | — | Redhat Build OF Apicurio Registry | 26/6/2026 | 25/8/2026 | A flaw was found in Apicurio Registry. The DocumentBuilderAccessor correctly blocks external DTD and schema access but does not disable DOCTYPE declarations or enable FEATURE_SECURE_PROCESSING. An attacker with artifact-write permission can upload XML documents with internal entity-expansion payloads (billion-laughs… | |
| Modificada | Alta (7.4) | 0.34% | — | Redhat Build OF Apicurio Registry | 25/6/2026 | 26/8/2026 | A flaw was found in Apicurio Registry. The WSDLReaderAccessor creates a wsdl4j WSDLReader without disabling the javax.wsdl.importDocuments feature. When the VALIDITY rule is set to FULL, an attacker with Developer-role access can upload a WSDL document containing attacker-controlled import locations, causing the… | |
| Modificada | Alta (8.5) | 0.44% | — | Redhat Build OF Apicurio Registry | 25/6/2026 | 26/8/2026 | A flaw was found in Apicurio Registry. The ContentTypeUtil.isParsableXml() method creates a SAXParserFactory without enabling secure processing features or disabling external entity resolution. An attacker with artifact-write permission (or unauthenticated when the registry runs with default configuration) can upload… | |
| Aplazada | Media (5.3) | 0.20% | — | Genetechsolutions PIE RegisterAI | 22/6/2026 | 22/6/2026 | The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account verification tokens, allowing unauthenticated attackers to predict a valid token and activate an account without access to the associated email inbox. | |
| Analizada | Alta (8.8) | 0.43% | — | Joomalshowroom Event Registration PRO Calendar | 19/6/2026 | 21/8/2026 | Joomla Event Registration Pro Calendar 4.1.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET requests to index.php with option=com_registrationpro&view=category&id parameter… | |
| Aplazada | Baja (3.1) | 0.17% | — | Docker RegistryAIBlacklanternsecurity BbotAI | 17/6/2026 | 22/6/2026 | The docker_pull module uses the realm parameter from a Docker registry's WWW-Authenticate response header as the authentication endpoint without validation. An attacker in a man-in-the-middle position between bbot and a Docker registry could modify this header to redirect the authentication request to an arbitrary… | |
| Aplazada | Crítica (9.8) | 0.48% | 💥 PoC | Registration Form FOR WoocommerceAI | 17/6/2026 | 17/6/2026 | Unauthenticated Privilege Escalation in Registration Form for WooCommerce <= 1.0.9 versions. | |
| Aplazada | Crítica (9.8) | 0.61% | — | Metagauss RegistrationmagicAI | 15/6/2026 | 17/6/2026 | Unauthenticated Broken Authentication in RegistrationMagic <= 6.0.8.6 versions. | |
| Aplazada | Alta (7.5) | 0.37% | — | Unauthenticated Broken Access Control IN User RegistrationAI | 15/6/2026 | 17/6/2026 | Unauthenticated Broken Access Control in User Registration <= 5.1.2 versions. | |
| Aplazada | Alta (8.7) | 1.8% | 💥 Exploit | Webkul BagistoAI | 8/6/2026 | 23/7/2026 | This vulnerability exists in Bagisto due to improper validation of user-supplied input in the ImageCacheController component. An unauthenticated remote attacker could exploit this vulnerability by sending crafted path traversal sequences through the filename parameter to access arbitrary files outside the intended… | |
| Aplazada | Alta (8.8) | 0.33% | — | E-registrasi Pencak SilatAI | 29/5/2026 | 21/7/2026 | E-Registrasi Pencak Silat 18.10 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id_partai parameter. Attackers can send GET requests to monitor_nilai.php with crafted SQL payloads in the id_partai parameter to… | |
| Aplazada | Media (5.3) | 0.39% | — | Wpeverest User RegistrationAI | 28/5/2026 | 17/6/2026 | The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.1.5. This is due to missing ownership validation on a… | |
| Analizada | Baja (2.1) | 0.27% | — | Lfprojects MCP Registry | 14/5/2026 | 17/6/2026 | The MCP Registry provides MCP clients with a list of MCP servers, like an app store for MCP servers. Prior to 1.7.6, the client-side and server-side GitHub OIDC flow is bound only to a global audience string, not to the specific registry instance being targeted. On the client side, the publisher always appends… | |
| Aplazada | Ninguna (0) | 0.44% | — | Lfprojects MCP RegistryAI | 14/5/2026 | 17/6/2026 | The MCP Registry provides MCP clients with a list of MCP servers, like an app store for MCP servers. From 1.1.0 to 1.7.4, the TrailingSlashMiddleware in internal/api/server.go is vulnerable to an open redirect attack. An attacker can craft a URL with a protocol-relative path (e.g., //evil.com/) that, after trailing… | |
| Aplazada | Baja (3.5) | 0.25% | — | Lfprojects MCP RegistryAI | 14/5/2026 | 17/6/2026 | The MCP Registry provides MCP clients with a list of MCP servers, like an app store for MCP servers. Prior to 1.7.9, OCI ownership validation skips label-match check when upstream OCI registry returns HTTP 429, letting any authenticated publisher bind their io.github.<user>/* namespace to OCI images they do not… |