Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2753▼ 36 respecto a la semana anterior
Críticas / altas1269▼ 264 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)241▲ 206 respecto a la semana anterior
5138 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.5) | 0.44% | — | Nvidia Triton Inference Server | 11/11/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where an attacker could cause a stack overflow by sending extra-large payloads. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Alta (8.8) | 0.37% | — | Nvidia AistoreAI | 11/11/2025 | 17/6/2026 | NVIDIA AIStore contains a vulnerability in AuthN. A successful exploit of this vulnerability might lead to escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Media (5.3) | 0.86% | — | Nvidia AistoreAI | 11/11/2025 | 17/6/2026 | NVIDIA AIStore contains a vulnerability in AuthN where an unauthenticated user may cause information disclosure. A successful exploit of this vulnerability may lead to information disclosure. | |
| Analizada | Alta (7.8) | 0.28% | — | Nvidia Nemo | 11/11/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the bert services component where malicious data created by an attacker may cause a code injection. A successful exploit of this vulnerability may lead to Code execution, Escalation of privileges, Information disclosure, and Data tampering. | |
| Analizada | Alta (7.8) | 0.26% | — | Nvidia Nemo | 11/11/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in a script, where malicious input created by an attacker may cause improper control of code generation. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Alta (7.8) | 0.43% | — | Nvidia Megatron-lmAI | 11/11/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in a script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, data tampering. | |
| Aplazada | Crítica (9.3) | 0.29% | — | Dial CentrosnetAI | 7/11/2025 | 17/6/2026 | SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create, update, and delete databases by sending POST and GET requests with the 'ultralogin' parameter in '/centrosnet/ultralogin.php'. | |
| Analizada | Alta (7.5) | 0.32% | — | Diaowen Dwsurvey | 5/11/2025 | 17/6/2026 | DWSurvey 6.14.0 is vulnerable to Incorrect Access Control. When deleting a questionnaire, replacing the questionnaire ID with the ID of another questionnaire can enable the deletion of other questionnaires. | |
| Aplazada | Media (6.2) | 0.16% | — | Nvidia RunaiAI | 4/11/2025 | 17/6/2026 | NVIDIA RunAI for all platforms contains a vulnerability where a user could cause an improper restriction of communications channels on an adjacent network. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, and information disclosure. | |
| Aplazada | Alta (8.2) | 0.24% | — | Nvidia NvappAI | 4/11/2025 | 17/6/2026 | NVIDIA NVApp for Windows contains a vulnerability in the installer, where a local attacker can cause a search path element issue. A successful exploit of this vulnerability might lead to code execution and escalation of privileges. | |
| Modificada | Media (6.7) | 0.18% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00432679; Issue ID: MSV-3950. | |
| Analizada | Alta (8) | 0.30% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00432680; Issue ID: MSV-3949. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00434422; Issue ID: MSV-3958. | |
| Analizada | Media (4.7) | 0.10% | — | Mediatek Software Development KIT | 4/11/2025 | 17/6/2026 | In wlan STA driver, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435337; Issue ID: MSV-4036. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435340; Issue ID: MSV-4038. | |
| Analizada | Media (6.7) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435342; Issue ID: MSV-4039. | |
| Analizada | Alta (7.8) | 0.16% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435343; Issue ID: MSV-4040. | |
| Analizada | Media (6.7) | 0.15% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00435347; Issue ID: MSV-4049. | |
| Analizada | Alta (7.8) | 0.15% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00435349; Issue ID: MSV-4051. | |
| Modificada | Media (5.3) | 0.12% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441507; Issue ID: MSV-4112. | |
| Analizada | Alta (7.8) | 0.15% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00441509; Issue ID: MSV-4138. | |
| Modificada | Media (5.3) | 0.12% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege (when OceReducedNeighborReport is disabled). User interaction is not needed for exploitation. Patch ID:… | |
| Modificada | Media (5.3) | 0.12% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege (when OceReducedNeighborReport is disabled). User interaction is not needed for exploitation. Patch ID:… | |
| Analizada | Media (4.2) | 0.13% | — | Mediatek Software Development KITOpenwrt | 4/11/2025 | 17/6/2026 | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00441512; Issue ID: MSV-4153. | |
| Analizada | Alta (7.8) | 0.15% | — | Mediatek Software Development KIT | 4/11/2025 | 17/6/2026 | In wlan STA driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00447115; Issue ID: MSV-4276. |