Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 119 respecto a la semana anterior
Críticas / altas1267▼ 261 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 186 respecto a la semana anterior
7726 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.1) | 0.23% | — | Adobe Pass Authentication | 11/11/2025 | 17/6/2026 | Adobe Pass versions 3.7.3 and earlier are affected by an Incorrect Authorization vulnerability. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read and write access. Exploitation of this issue requires user interaction in that a victim must install a malicious SDK. | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Illustrator ON Ipad | 11/11/2025 | 17/6/2026 | Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.23% | — | Adobe Illustrator | 11/11/2025 | 17/6/2026 | Illustrator versions 28.7.10, 29.8.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.28% | — | Adobe Illustrator ON Ipad | 11/11/2025 | 17/6/2026 | Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.21% | — | Adobe Illustrator ON Ipad | 11/11/2025 | 17/6/2026 | Illustrator on iPad versions 3.0.9 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.28% | — | Adobe Illustrator ON Ipad | 11/11/2025 | 17/6/2026 | Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Illustrator ON Ipad | 11/11/2025 | 17/6/2026 | Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.31% | — | Adobe Illustrator | 11/11/2025 | 17/6/2026 | Illustrator versions 28.7.10, 29.8.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.33% | — | Adobe Photoshop | 11/11/2025 | 17/6/2026 | Photoshop Desktop versions 26.8.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.31% | — | Adobe Indesign | 11/11/2025 | 17/6/2026 | InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.31% | — | Adobe Indesign | 11/11/2025 | 17/6/2026 | InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.23% | — | Adobe Incopy | 11/11/2025 | 17/6/2026 | InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.23% | — | Adobe Incopy | 11/11/2025 | 17/6/2026 | InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.26% | — | Adobe Incopy | 11/11/2025 | 17/6/2026 | InCopy versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.27% | — | Adobe Indesign | 11/11/2025 | 17/6/2026 | InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.27% | — | Adobe Indesign | 11/11/2025 | 17/6/2026 | InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.6) | 0.14% | — | Adobe Creative Cloud | 15/10/2025 | 8/10/2026 | Las versiones 6.7.0.278 y anteriores de Creative Cloud Desktop están afectadas por una vulnerabilidad de condición de carrera (TOCTOU) de tiempo de verificación y tiempo de uso que podría conducir a una escritura arbitraria en el sistema de archivos. Un atacante con pocos privilegios podría explotar el momento entre… | |
| Analizada | Media (5.5) | 0.24% | — | Adobe Bridge | 15/10/2025 | 8/10/2026 | Las versiones de Bridge 14.1.8, 15.1.1 y anteriores están afectadas por una vulnerabilidad de desbordamiento de búfer basado en montículo que podría conducir a la exposición de memoria. Un atacante podría aprovechar esta vulnerabilidad para divulgar información sensible almacenada en memoria. La explotación de este… | |
| Analizada | Alta (7.8) | 0.27% | — | Adobe Bridge | 15/10/2025 | 8/10/2026 | Las versiones 14.1.8, 15.1.1 y anteriores de Bridge están afectadas por una vulnerabilidad de desbordamiento de búfer basado en montículo que podría resultar en ejecución de código arbitrario en el contexto del usuario actual. La explotación de este problema requiere interacción del usuario, ya que una víctima debe… | |
| Analizada | Alta (7.8) | 0.27% | — | Adobe Animate | 14/10/2025 | 8/10/2026 | Las versiones de Animate 23.0.13, 24.0.10 y anteriores están afectadas por una vulnerabilidad de desbordamiento de búfer basado en montículo que podría resultar en ejecución de código arbitrario en el contexto del usuario actual. La explotación de este problema requiere interacción del usuario en la que una víctima… | |
| Analizada | Alta (7.8) | 0.25% | — | Adobe Animate | 14/10/2025 | 8/10/2026 | Las versiones 23.0.13, 24.0.10 y anteriores de Animate están afectadas por una vulnerabilidad de Use After Free que podría resultar en ejecución de código arbitrario en el contexto del usuario actual. La explotación de este problema requiere interacción del usuario, en el sentido de que la víctima debe abrir un… | |
| Analizada | Media (5.5) | 0.22% | — | Adobe Animate | 14/10/2025 | 8/10/2026 | Las versiones de Animate 23.0.13, 24.0.10 y anteriores están afectadas por una vulnerabilidad de desreferencia de puntero nulo que podría conducir a la exposición de memoria. Un atacante podría aprovechar esta vulnerabilidad para divulgar información sensible de la memoria. La explotación de este problema requiere… | |
| Analizada | Media (5.5) | 0.22% | — | Adobe Animate | 14/10/2025 | 8/10/2026 | Las versiones 23.0.13, 24.0.10 y anteriores de Animate están afectadas por una vulnerabilidad de lectura fuera de límites que podría conducir a la exposición de memoria. Un atacante podría aprovechar esta vulnerabilidad para divulgar información sensible almacenada en memoria. La explotación de este problema requiere… | |
| Analizada | Media (5.4) | 0.24% | — | Adobe Experience Manager | 14/10/2025 | 8/10/2026 | Las versiones 11.6 y anteriores de Adobe Experience Manager están afectadas por una vulnerabilidad de cross-site scripting (XSS) almacenado que podría ser abusada por un atacante con bajos privilegios para inyectar scripts maliciosos en campos de formulario vulnerables. JavaScript malicioso puede ser ejecutado en el… | |
| Analizada | Media (5.4) | 0.24% | — | Adobe Experience Manager | 14/10/2025 | 8/10/2026 | Las versiones 11.6 y anteriores de Adobe Experience Manager están afectadas por una vulnerabilidad de cross-site scripting (XSS) almacenado que podría ser abusada por un atacante con pocos privilegios para inyectar scripts maliciosos en campos de formulario vulnerables. JavaScript malicioso podría ejecutarse en el… |