Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2839▼ 348 respecto a la semana anterior
Críticas / altas1378▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
233 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::StatsReplyFlow::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::StatsReplyTable::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::StatsReplyPort::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::StatsReplyQueue::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::QueueGetConfigReply::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::EchoCommon::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.55% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::QueuePropertyList::unpack13. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.49% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of13::HelloElemVersionBitmap::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.55% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of13::SetFieldAction::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.55% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::ActionList::unpack13. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.55% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::ActionSet::unpack. This issue affects libfluid: 0.1.0. | |
| Analizada | Alta (7.5) | 0.55% | — | Opennetworking Libfluid MSG | 18/9/2024 | 17/6/2026 | Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::of13::InstructionSet::unpack. This issue affects libfluid: 0.1.0. | |
| Aplazada | Alta (7.2) | 0.75% | — | HPE Aruba Networking Edgeconnect Sd-wanAI | 24/7/2024 | 17/6/2026 | A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result in the ability to execute arbitrary commands as root on the… | |
| Aplazada | Alta (7.2) | 0.68% | — | HPE Aruba Networking EdgeconnectAI | 24/7/2024 | 17/6/2026 | A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result in the ability to execute arbitrary commands as root on the… | |
| Aplazada | Alta (7.2) | 0.75% | — | HPE Aruba Networking EdgeconnectAI | 24/7/2024 | 17/6/2026 | A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result in the ability to execute arbitrary commands as root on the… | |
| Aplazada | Alta (7.2) | 0.70% | — | HPE Aruba Networking EdgeconnectAI | 24/7/2024 | 17/6/2026 | A vulnerability in the web-based management interface of HPE Aruba Networking EdgeConnect SD-WAN gateway could allow an authenticated remote attacker to conduct a server-side prototype pollution attack. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands on the… | |
| Modificada | Alta (8.8) | 0.44% | — | Dell Networking Os10 | 12/6/2024 | 17/6/2026 | Dell OS10 Networking Switches, versions10.5.6.x, 10.5.5.x, 10.5.4.x and 10.5.3.x ,contain an improper authorization vulnerability. A remote authenticated attacker could potentially exploit this vulnerability leading to escalation of privileges. | |
| Analizada | Alta (7.8) | 0.73% | — | Linuxfoundation Software FOR Open Networking IN THE Cloud | 12/3/2024 | 17/6/2026 | Software for Open Networking in the Cloud (SONiC) Elevation of Privilege Vulnerability | |
| Modificada | Media (5.4) | 0.45% | — | Code-projects Social Networking Site | 19/1/2024 | 17/6/2026 | A vulnerability was found in code-projects Social Networking Site 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file message.php of the component Message Page. The manipulation of the argument Story leads to cross site scripting. The attack may be launched remotely. The… | |
| Modificada | Alta (7.5) | 0.70% | — | Dell Networking Os10 | 5/12/2023 | 17/6/2026 | Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Service) vulnerability, when switches are configured with VLT and VRRP. A remote unauthenticated user can cause the network to be flooded leading to Denial of Service for actual network users. This is a… | |
| Analizada | Alta (7.5) | 100% | ⚠ Explotación activa💥 Exploit | Siemens Simatic S7-1500 CPU 1518f-4 Pn/dp MFP FirmwareSiemens Sinec INSSiemens Sinec NMSSiemens ST7 Scadaconnect+161 | 10/10/2023 | 11/8/2026 | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. | |
| Modificada | Media (6.1) | 0.85% | — | Golang Networking | 2/8/2023 | 17/6/2026 | Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack. | |
| Modificada | Media (5.3) | 0.76% | — | Opennetworking Onos | 20/4/2023 | 17/6/2026 | An issue was discovered in ONOS 2.5.1. There is an incorrect comparison of paths installed by intents. An existing intents does not redirect to a new path, even if a new intent that shares the path with higher priority is installed. | |
| Modificada | Media (5.3) | 0.57% | — | Opennetworking Onos | 20/4/2023 | 17/6/2026 | An issue was discovered in ONOS 2.5.1. An intent with the same source and destination shows the INSTALLING state, indicating that its flow rules are installing. Improper handling of such an intent is misleading to a network operator. | |
| Modificada | Alta (7.5) | 0.88% | — | Opennetworking Onos | 20/4/2023 | 17/6/2026 | An issue was discovered in ONOS 2.5.1. An intent with a port that is an intermediate point of its path installs an invalid flow rule, causing a network loop. |