Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
–

128 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.2)2.0%💥 PoCNode-pdf-generator Project Node-pdf-generator6/10/202017/6/2026
This affects all versions of package node-pdf-generator. Due to lack of user input validation and sanitization done to the content given to node-pdf-generator, it is possible for an attacker to craft a url that will be passed to an external server allowing an SSRF attack.
ModificadaAlta (8.8)1.3%—Istio-operator Project Istio-operator16/9/202017/6/2026
An incorrect access control flaw was found in the operator, openshift-service-mesh/istio-rhel8-operator all versions through 1.1.3. This flaw allows an attacker with a basic level of access to the cluster to deploy a custom gateway/pod to any namespace, potentially gaining access to privileged service account tokens.…
ModificadaCrítica (9.8)2.5%—Json Pattern Validator Project Json Pattern Validator10/8/202017/6/2026
jpv (aka Json Pattern Validator) before 2.2.2 does not properly validate input, as demonstrated by a corrupted array.
ModificadaCrítica (9.8)2.2%—HT Editor Project HT Editor23/1/202016/6/2026
HT Editor 2.0.20 has a Remote Stack Buffer Overflow Vulnerability
ModificadaCrítica (9.8)1.4%—Schema-inspector Project Schema-inspector22/1/202017/6/2026
In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate()` function used within schema-inspector.
ModificadaAlta (7)0.25%—Squid Analysis Report Generator Project Squid Analysis Report GeneratorOpensuse Backports SLEOpensuse Leap21/1/202017/6/2026
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a fixed temporary directory /tmp/sarg. As the root user, sarg creates this directory or reuses an existing one in an insecure manner. An attacker can pre-create the directory, and place symlinks in it…
ModificadaMedia (5.3)0.97%—Json Pattern Validator Project Json Pattern Validator2/12/201917/6/2026
In jpv (aka Json Pattern Validator) before 2.1.1, compareCommon() can be bypassed because certain internal attributes can be overwritten via a conflicting name, as demonstrated by 'constructor': {'name':'Array'}. This affects validate(). Hence, a crafted payload can overwrite this builtin attribute to manipulate the…
ModificadaCrítica (9.8)57%💥 ExploitExhibitor Project Exhibitor13/11/201917/6/2026
An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7.1. Arbitrary shell commands surrounded by backticks or $() can be inserted into the editor and will be executed by the Exhibitor process when it launches ZooKeeper. An attacker can execute any…
ModificadaCrítica (9.8)2.0%—Typestack Class-validator Project Typestack Class-validator24/10/201917/6/2026
In TypeStack class-validator 0.10.2, validate() input validation can be bypassed because certain internal attributes can be overwritten via a conflicting name. Even though there is an optional forbidUnknownValues parameter that can be used to reduce the risk of this bypass, this option is not documented and thus most…
ModificadaMedia (6.1)0.93%—WP Editor Project WP Editor12/8/201917/6/2026
The wp-editor plugin before 1.2.6.3 for WordPress has multiple XSS issues.
ModificadaAlta (7.5)1.5%—Metadataextractor Project Metadataextractor25/7/201917/6/2026
MetadataExtractor 2.1.0 allows stack consumption.
ModificadaMedia (6.1)1.2%—Hexoeditor Project Hexoeditor15/7/201917/6/2026
HexoEditor v1.1.8-beta is affected by: XSS to code execution.
ModificadaAlta (7.5)2.8%—Http-live-simulator Project Http-live-simulator3/4/201917/6/2026
Path traversal vulnerability in http-live-simulator npm package version 1.0.5 allows arbitrary path to be accessed on the file system by a remote attacker.
ModificadaMedia (5.5)0.96%—Boolector Project Boolector7/2/201917/6/2026
In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete.
ModificadaAlta (7.5)1.7%—Http-live-simulator Project Http-live-simulator1/2/201917/6/2026
Path traversal vulnerability in http-live-simulator <1.0.7 causes unauthorized access to arbitrary files on disk by appending extra slashes after the URL.
ModificadaMedia (5)0.43%—Sos-collector Project Sos-collectorRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+227/9/201817/6/2026
It was discovered that sos-collector does not properly set the default permissions of newly created files, making all files created by the tool readable by any local user. A local attacker may use this flaw by waiting for a legit user to run sos-collector and steal the collected data in the /var/tmp directory.
ModificadaAlta (8.8)77%💥 ExploitPlainview Activity Monitor Project Plainview Activity Monitor26/8/201817/6/2026
The Plainview Activity Monitor plugin before 20180826 for WordPress is vulnerable to OS command injection via shell metacharacters in the ip parameter of a wp-admin/admin.php?page=plainview_activity_monitor&tab=activity_tools request.
ModificadaMedia (6.1)0.94%—Angular Redactor Project Angular Redactor5/7/201817/6/2026
Imperavi Redactor 3 in Angular Redactor 1.1.6, when HTML content mode is used, allows stored XSS, as demonstrated by an onerror attribute of an IMG element, a related issue to CVE-2018-7035.
ModificadaMedia (6.1)1.1%—Html-janitor Project Html-janitor4/6/201817/6/2026
html-janitor node module suffers from a Cross-Site Scripting (XSS) vulnerability via clean() accepting user-controlled values.
ModificadaAlta (7.5)1.4%—Negotiator Project Negotiator31/5/201817/6/2026
negotiator is an HTTP content negotiator for Node.js and is used by many modules and frameworks including Express and Koa. The header for "Accept-Language", when parsed by negotiator 0.6.0 and earlier is vulnerable to Regular Expression Denial of Service via a specially crafted string.
ModificadaAlta (8.1)1.7%—Product-monitor Project Product-monitor29/5/201817/6/2026
product-monitor is a HTML/JavaScript template for monitoring a product by encouraging product developers to gather all the information about the status of a product, including live monitoring, statistics, endpoints, and test results into one place. product-monitor versions below 2.2.5 download JavaScript resources…
ModificadaMedia (4.8)1.8%💥 ExploitTagregator Project Tagregator5/5/201817/6/2026
The Tagregator plugin 0.6 for WordPress has stored XSS via the title field in an Add New action.
ModificadaAlta (7.5)1.2%—Photo,video Locker-calculator Project Photo,video Locker-calculator20/2/201817/6/2026
smart/calculator/gallerylock/CalculatorActivity.java in the "Photo,Video Locker-Calculator" application through 18 for Android allows attackers to access files via the backdoor 17621762 PIN.
ModificadaAlta (7.5)0.64%—Photo,video Locker-calculator Project Photo,video Locker-calculator20/2/201817/6/2026
The "Photo,Video Locker-Calculator" application 12.0 for Android has android:allowBackup="true" in AndroidManifest.xml, which allows attackers to obtain sensitive cleartext information via an "adb backup '-f smart.calculator.gallerylock'" command.
ModificadaMedia (5.4)1.0%—Simple Download Monitor Project Simple Download Monitor4/1/201817/6/2026
The Simple Download Monitor plugin before 3.5.4 for WordPress has XSS via the sdm_upload (aka Downloadable File) parameter in an edit action to wp-admin/post.php.
Orbitaley — Vulnerabilidades