Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2839▼ 348 respecto a la semana anterior
Críticas / altas1378▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
–

3834 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.2)0.29%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to…
AnalizadaAlta (8.3)0.39%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business…
AnalizadaAlta (7.3)0.15%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Presentation Services). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Business Intelligence…
AnalizadaAlta (7.5)0.41%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle…
AnalizadaAlta (7.7)0.35%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Search). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle…
AnalizadaAlta (8.8)0.43%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Platform Security). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence…
AnalizadaAlta (7.5)0.33%—Oracle Operations Intelligence18/8/202628/8/2026
Vulnerability in the Oracle Operations Intelligence product of Oracle E-Business Suite (component: Daily Business Intelligence). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Operations…
AnalizadaAlta (8.2)0.44%—Oracle Business Intelligence18/8/202624/8/2026
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Pod Admin). Supported versions that are affected are 8.2.0.0.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business…
AnalizadaAlta (8.5)0.30%—Oracle Siebel Artificial Intelligence18/8/20264/9/2026
Vulnerability in the Siebel Artificial Intelligence product of Oracle Siebel CRM (component: AI). Supported versions that are affected are 25.12-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Artificial Intelligence. While the vulnerability is in…
Pendiente de análisisAlta (7.3)0.17%—Dell AppsyncAIDell Metro NodeAIDell UCC EdgeAIDell VxrailAI+518/8/202620/8/2026
Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, Dell Unity Version 5.4, Dell PowerFlex Manager Version 4.5.4, Dell PowerFlex Intelligent Catalog Versions 46.377.00 and 46.382.00 and Dell PowerFlex Rack version 4.5.4…
AnalizadaMedia (5.5)0.15%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 xXE was possible in the Eclipse settings importers
AnalizadaMedia (6.2)0.17%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.1.5 git credentials were written in plaintext to the IDE log
AnalizadaAlta (7.8)0.19%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible
AnalizadaMedia (5.5)0.15%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 hadoop ResourceManager could read local files via XXE
AnalizadaMedia (6.3)0.15%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrusted projects
AnalizadaMedia (5.4)0.24%—Jetbrains Intellij Idea17/8/202611/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the DevKit debug listener endpoint
AnalizadaMedia (4.4)0.18%—Jetbrains Intellij Idea17/8/20261/9/2026
In JetBrains IntelliJ IDEA before 2026.2.1 command execution via crafted Markdown preview content was possible in trusted projects
AplazadaAlta (8.7)0.51%—Naturalintelligence Fast-xml-parserAI13/8/202618/9/2026
fast-xml-parser allows users to process XML from JS object without C/C++ based libraries or callbacks. From 5.9.3 until 5.10.1, src/xmlparser/OrderedObjParser.js processes multiple DOCTYPE declarations within a single XML document and passes each declaration's entities through addInputEntities(). addInputEntities()…
Pendiente de análisisMedia (6.1)0.15%—Intel ALH Digital Audio Interface DriverAIZephyrproject ZephyrAI12/8/202626/8/2026
The Intel ALH digital-audio-interface driver function dai_alh_get_properties() in drivers/dai/intel/alh/alh.c used a caller-supplied int stream_id with no range validation. The value indexes the fixed-size static const uint8_t alh_handshake_map[64] array and scales a FIFO register address, so an out-of-range stream_id…
Pendiente de análisisMedia (4)0.11%—Intel ProcessorsAI11/8/202612/8/2026
Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Processors within Ring 0: Hypervisor and Kernel may allow information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This…
AnalizadaMedia (4)0.10%—Intel Xeon Bronze 3408u FirmwareIntel Xeon Gold 5403n FirmwareIntel Xeon Gold 5411n FirmwareIntel Xeon Gold 5412u Firmware+13711/8/202628/8/2026
Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are…
Pendiente de análisisMedia (4)0.12%—Intel Uefi FirmwareAI11/8/202612/8/2026
Incomplete cleanup in some UEFI firmware for some Intel(R) reference platforms within UEFI may allow an information disclosure. System software adversary with a privileged user combined with a low complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements…
Pendiente de análisisBaja (2.4)0.15%—Intel Slim BootloaderAI11/8/202612/8/2026
Integer overflow in the UEFI firmware for the Intel(R) Slim Bootloader may allow an information disclosure. System software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not…
Pendiente de análisisBaja (1.8)0.16%—Intel Slim BootloaderAI11/8/202612/8/2026
Out-of-bounds write in the firmware for the Intel(R) Slim Bootloader may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are present without…
AnalizadaAlta (8.3)0.36%—Intel Proset/wireless Wifi11/8/20261/9/2026
Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via adjacent…