Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
3259 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 1.9% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 18/3/2022 | 17/6/2026 | A null pointer dereference was addressed with improved validation. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An attacker in a privileged position may be able to perform a denial of service attack. | |
| Modificada | Alta (7.8) | 0.32% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to gain elevated privileges. | |
| Modificada | Alta (7.1) | 1.0% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory. | |
| Modificada | Alta (7.1) | 1.1% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory. | |
| Modificada | Alta (7.1) | 1.1% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory. | |
| Modificada | Alta (7.8) | 0.31% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to gain elevated privileges. | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 18/3/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 18/3/2022 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (7.8) | 1.2% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 18/3/2022 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (7.8) | 1.3% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. Processing a maliciously crafted file may lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.5% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 18/3/2022 | 17/6/2026 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Security Update 2022-001 Catalina, macOS Monterey 12.2, macOS Big Sur 11.6.3. A malicious application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Media (6.1) | 2.0% | — | Apple SafariApple IpadosApple Iphone OSApple MAC OS X+3 | 18/3/2022 | 17/6/2026 | A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing a maliciously crafted mail message may lead to running arbitrary javascript. | |
| Modificada | Media (5.5) | 1.7% | — | Apple MAC OS XApple Macos | 18/3/2022 | 17/6/2026 | A permissions issue was addressed with improved validation. This issue is fixed in Security Update 2022-001 Catalina, macOS Monterey 12.2, macOS Big Sur 11.6.3. An application may be able to access restricted files. | |
| Modificada | Alta (7.8) | 1.8% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+1 | 18/3/2022 | 17/6/2026 | An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 15.3 and iPadOS 15.3, tvOS 15.3, Security Update 2022-001 Catalina, macOS Monterey 12.2, macOS Big Sur 11.6.3. Processing a maliciously crafted STL file may lead to unexpected application termination or arbitrary… | |
| Modificada | Crítica (9.1) | 42% | — | Apache Http ServerFedoraproject FedoraDebian LinuxOracle Enterprise Manager OPS Center+4 | 14/3/2022 | 17/6/2026 | If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apache HTTP Server 2.4.52 and earlier. | |
| Modificada | Crítica (9.8) | 28% | 💥 PoC | Apache Http ServerFedoraproject FedoraDebian LinuxOracle Enterprise Manager OPS Center+4 | 14/3/2022 | 17/6/2026 | Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling | |
| Modificada | Alta (7.5) | 69% | — | Apache Http ServerDebian LinuxFedoraproject FedoraOracle Http Server+3 | 14/3/2022 | 17/6/2026 | A carefully crafted request body can cause a read to a random memory area which could cause the process to crash. This issue affects Apache HTTP Server 2.4.52 and earlier. | |
| Modificada | Alta (7.5) | 5.1% | — | Xmlsoft Libxml2Fedoraproject FedoraDebian LinuxApple Ipados+31 | 26/2/2022 | 17/6/2026 | valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes. | |
| Modificada | Alta (7.8) | 2.0% | — | ZSHFedoraproject FedoraDebian LinuxApple MAC OS X+1 | 14/2/2022 | 17/6/2026 | In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion. | |
| Modificada | Media (5.5) | 2.1% | — | Unzip Project UnzipRedhat Enterprise LinuxFedoraproject FedoraApple MAC OS X+2 | 9/2/2022 | 17/6/2026 | A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution. | |
| Modificada | Alta (7.8) | 1.7% | — | VIMDebian LinuxApple MAC OS XApple Macos | 18/1/2022 | 17/6/2026 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. | |
| Modificada | Alta (7.8) | 1.7% | — | VIMApple MAC OS XApple Macos | 6/1/2022 | 17/6/2026 | vim is vulnerable to Out-of-bounds Read | |
| Modificada | Media (5.5) | 1.8% | — | VIMFedoraproject FedoraDebian LinuxApple MAC OS X+1 | 31/12/2021 | 17/6/2026 | vim is vulnerable to Out-of-bounds Read | |
| Modificada | Alta (7.8) | 1.7% | — | VIMFedoraproject FedoraDebian LinuxApple MAC OS X+1 | 31/12/2021 | 17/6/2026 | vim is vulnerable to Use After Free | |
| Modificada | Alta (7.8) | 1.6% | — | VIMFedoraproject FedoraApple MAC OS XApple Macos | 29/12/2021 | 17/6/2026 | vim is vulnerable to Use After Free |