Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

1101 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaCrítica (9.8)0.58%—User Session SynchronizerAI15/8/202620/8/2026
The User Session Synchronizer plugin for WordPress is vulnerable to Authentication Bypass leading to Account Takeover in all versions up to, and including, 1.4.0. The `synchronize_session()` function, hooked on `init` and therefore executed on every request, performs no nonce, capability, or shared-secret validation…
AplazadaMedia (5.3)0.32%—User Access ManagerAI12/8/202626/8/2026
The User Access Manager WordPress plugin before 2.3.15 does not apply its access restrictions to REST API requests, allowing unauthenticated attackers to read the content of posts, pages and custom post types that have been restricted to specific user groups.
AplazadaMedia (5.4)0.28%—Block User AccountAI10/8/202626/8/2026
The Block User Account WordPress plugin before 2.0.1 does not enforce its account block on every authentication path, allowing a blocked user who holds an application password created before the block to retain their full role-level read and write access through the REST API.
Pendiente de análisisAlta (7.5)0.61%—Facelessuser Pymdown-extensionsAI6/8/202610/9/2026
pymdown-extensions is a collection of extensions for the Python Markdown library. In versions up to and including 11.0, four inline processors (caret, tilde, betterem, and magiclink) use regular expressions whose content groups can partition a run of delimiter characters in exponentially many ways, causing…
Pendiente de análisisMedia (5.3)0.40%—Facelessuser Pymdown ExtensionsAI6/8/202610/9/2026
PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. In versions up to and including 10.21.3, the b64 extension is vulnerable to a path traversal that discloses arbitrary files: it inlines images referenced by <img src="..."> by joining the src onto the configured base_path with…
AplazadaMedia (6.4)0.26%—Ayecode UserswpAI6/8/202612/8/2026
The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Badge Widget Variable Substitution in all versions up to, and including, 1.2.69 due to insufficient input sanitization and output escaping. This…
AplazadaMedia (6.5)0.45%—User Access ManagerAI5/8/202612/8/2026
The User Access Manager plugin for WordPress is vulnerable to Second-Order SQL Injection via the 'id' parameter of the wp_ajax_save-attachment-compat AJAX action in versions up to, and including, 2.3.12. This is due to insufficient validation on the objectId value stored in the saveAjaxAttachmentData() function and…
AplazadaAlta (7.5)0.41%—User Registration MembershipAI5/8/202626/8/2026
The User Registration & Membership WordPress plugin before 5.2.6 does not enforce the site's registration-disabled setting when processing registration-form submissions, allowing unauthenticated users to create new accounts even when the administrator has turned off open registration.
AplazadaCrítica (9.1)0.40%—Codection Import AND Export Users AND CustomersAI3/8/202626/8/2026
The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and per-user edit permissions during CSV import, allowing a user holding only the user-creation capability to create an administrator account and to overwrite an existing administrator's password or…
AplazadaMedia (4.9)0.47%—Codection Import AND Export Users AND CustomersAI3/8/202629/9/2026
The Import and export users and customers WordPress plugin before 2.4.3 does not restrict the path of a file it reads and displays during a CSV import, allowing high-privileged users to read arbitrary files on the server.
AplazadaCrítica (9.8)0.50%—Pouco Import UsersAI2/8/202626/8/2026
The POUCO Import Users WordPress plugin through 1.0.0 does not perform any capability or nonce checks on AJAX actions available to unauthenticated users that create and update WordPress accounts, and it trusts an attacker-supplied role value, allowing unauthenticated attackers to create a new administrator account and…
AplazadaAlta (7.5)1.0%—User Access ManagerAI2/8/202612/8/2026
The User Access Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.3.15 via the 'uamgetfile' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.…
AplazadaAlta (8.1)0.38%—Codesmiths User Profile BuilderAI1/8/202626/8/2026
The User Profile Builder WordPress plugin before 3.16.4 does not correctly bind the automatic login performed after user registration to the newly created account, allowing unauthenticated attackers to obtain an authenticated session for an arbitrary existing user, including administrators, on sites using a supported…
AplazadaAlta (7.4)0.41%—Ayecode UserswpAI29/7/202630/7/2026
The UsersWP WordPress plugin before 1.2.67 does not validate the selected authentication provider in its two-factor login handler, allowing an attacker who already knows a user's credentials to bypass the second authentication factor and log in as that user.
AplazadaMedia (6.5)0.22%—100plugins Open User MAPAI27/7/202627/7/2026
Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions.
AplazadaMedia (6.5)0.34%—Wedevs User FrontendAI27/7/202627/7/2026
The User Frontend: AI Powered Frontend Post Submission, User Directory, User Profile, Membership & User Registration WordPress plugin before 4.3.8 does not correctly verify ownership before deleting an attachment, allowing unauthenticated attackers to permanently delete author-less attachments such as guest uploads…
AplazadaAlta (7.3)0.34%—Eventeon Action UserAI24/7/202624/7/2026
The EventON Action User plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.5.14. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to grant EventON management capabilities…
AplazadaMedia (6.4)0.42%—100plugins Open User MAPAI24/7/202624/7/2026
The Open User Map – Interactive Leaflet Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Attributes in all versions up to, and including, 1.4.45 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level…
AplazadaMedia (5.3)0.40%—Huggingface DiffusersAI23/7/202623/7/2026
Diffusers through 0.39.0, fixed in commit cee298c, contains a path traversal vulnerability in the _get_checkpoint_shard_files function that allows attackers to read arbitrary files by supplying malicious weight_map values in model index JSON. Attackers can use ../ sequences or absolute paths in weight_map entries to…
AplazadaAlta (7.5)0.42%—Regularlabs Articles AnywhereAIRegularlabs Users AnywhereAI23/7/202628/7/2026
Joomla Extension - regularlabs.com - Date-sensitive query-cache leakage in Articles Anywhere and Users Anywhere extension - Date-sensitive query cache keys did not retain a bounded time component. Cached results could remain active across future publication or expiry boundaries, potentially exposing content after it…
AplazadaAlta (7.5)0.43%—Regularlabs Articles AnywhereAIRegularlabs Users AnywhereAI23/7/202627/7/2026
Joomla Extension - regularlabs.com - SSRF via remote image downloads in Articles Anywhere and Users Anywhere extensions - Content-controlled image URLs could request private or reserved network services, follow unsafe redirects and save responses without validating that they were images. This could result in SSRF,…
AplazadaMedia (6.5)0.42%—Regularlabs Users AnywhereAIRegularlabs Articles AnywhereAI22/7/202627/7/2026
Joomla Extension - regularlabs.com - restricted user-data exposure in Users Anywhere and Articles Anywhere extensions - User tags, filters and conditions allowed access to insufficiently restricted user fields. Crafted content could expose authentication-related data, raw user parameters or restricted contact details.
Pendiente de análisisMedia (5.6)0.13%—Canonical SnapdAISystemd-userdbdAI21/7/202622/7/2026
An access control bypass and information disclosure vulnerability exists in the base AppArmor security profile configuration of Canonical snapd. The abstraction rules located in /etc/apparmor.d/abstractions/nss-systemd (inherited via ) inadvertently permit strictly confined snap applications, which lack the privileged…
AplazadaMedia (5.3)0.30%—User Registration MembershipAI17/7/202617/7/2026
The User Registration & Membership WordPress plugin before 5.2.3 does not perform a capability check for unauthenticated callers on one of its membership payment actions and acts on a caller-supplied user identifier, allowing unauthenticated attackers to delete recently-registered, payment-pending user accounts.
AplazadaAlta (8.1)0.38%💥 PoCUser Registration AND MembershipAI17/7/202617/7/2026
The User Registration & Membership WordPress plugin before 5.2.3 does not validate that the membership tier submitted during public registration is one of the tiers allowed by the registration form before assigning that tier's associated user role, allowing unauthenticated users to register into an arbitrary published…