Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
142 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.7% | — | Sparkdevnetwork Rock RMS | 7/1/2021 | 17/6/2026 | Rock RMS version before 8.6 is vulnerable to account takeover by tampering with the user ID parameter in the profile update feature. The lack of validation and use of sequential user IDs allows any user to change account details of any other user. This vulnerability could be used to change the email address of another… | |
| Modificada | Media (4.8) | 8.3% | — | Eclipse JettyNetapp Oncommand System ManagerNetapp Snap Creator FrameworkOracle Blockchain Platform+13 | 28/11/2020 | 17/6/2026 | In Eclipse Jetty version 9.4.0.RC0 to 9.4.34.v20201102, 10.0.0.alpha0 to 10.0.0.beta2, and 11.0.0.alpha0 to 11.0.0.beta2, if GZIP request body inflation is enabled and requests from different clients are multiplexed onto a single connection, and if an attacker can send a request with a body that is received entirely… | |
| Modificada | Crítica (9.1) | 1.1% | — | Sparksolutions Spree | 20/10/2020 | 17/6/2026 | In Spree before versions 3.7.11, 4.0.4, or 4.1.11, expired user tokens could be used to access Storefront API v2 endpoints. The issue is patched in versions 3.7.11, 4.0.4 and 4.1.11. A workaround without upgrading is described in the linked advisory. | |
| Modificada | Crítica (9.8) | 29% | 💥 Exploit | Apache SparkOracle Business Intelligence | 23/6/2020 | 17/6/2026 | In Apache Spark 2.4.5 and earlier, a standalone resource manager's master may be configured to require authentication (spark.authenticate) via a shared secret. When enabled, however, a specially-crafted RPC to the master can succeed in starting an application's resources on the Spark cluster, even without the shared… | |
| Modificada | Alta (8.8) | 1.7% | — | Igniterealtime Spark | 12/5/2020 | 17/6/2026 | An issue was discovered in Ignite Realtime Spark 2.8.3 (and the ROAR plugin for it) on Windows. A chat message can include an IMG element with a SRC attribute referencing an external host's IP address. Upon access to this external host, the (NT)LM hashes of the user are sent with the HTTP request. This allows an… | |
| Modificada | Crítica (9.8) | 3.4% | — | Sparkdevnetwork Rock RMS | 20/3/2020 | 17/6/2026 | Rock RMS before 1.8.6 mishandles vCard access control within the People/GetVCard/REST controller. | |
| Modificada | Media (6.1) | 1.1% | — | Readdle Spark | 18/3/2020 | 17/6/2026 | The Spark application through 2.0.2 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if the application has the READ_EXTERNAL_STORAGE permission. | |
| Modificada | Crítica (9.1) | 13% | — | NettyDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+3 | 29/1/2020 | 17/6/2026 | HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header. | |
| Modificada | Alta (7.8) | 0.40% | — | Sparklabs Viscosity | 14/1/2020 | 17/6/2026 | Viscosity 1.8.2 on Windows and macOS allows an unprivileged user to set a subset of OpenVPN parameters, which can be used to load a malicious library into the memory of the OpenVPN process, leading to limited local privilege escalation. (When a VPN connection is initiated using a TLS/SSL client profile, the privileges… | |
| Modificada | Crítica (9.8) | 70% | 💥 Exploit | Sparklabs Viscosity | 10/1/2020 | 16/6/2026 | A Privilege Escalation vulnerability exists in Viscosity 1.4.1 on Mac OS X due to a path name validation issue in the setuid-set ViscosityHelper binary, which could let a remote malicious user execute arbitrary code | |
| Modificada | Crítica (9.8) | 5.8% | — | Divisait Dv2eemvcDivisait Proxia PHRDivisait Proxia SuiteDivisait Sparkspace | 17/12/2019 | 17/6/2026 | Divisa Proxia Suite 9 < 9.12.16, 9.11.19, 9.10.26, 9.9.8, 9.8.43 and 9.7.10, 10.0 < 10.0.32, and 10.1 < 10.1.5, SparkSpace 1.0 < 1.0.30, 1.1 < 1.1.2, and 1.2 < 1.2.4, and Proxia PHR 1.0 < 1.0.30 and 1.1 < 1.1.2 allows remote code execution via untrusted Java deserialization. The proxia-error cookie is insecurely… | |
| Modificada | Alta (7.5) | 17% | 💥 PoC | Fasterxml Jackson-mapper-aslRedhat Jboss Enterprise Application PlatformRedhat Jboss FuseDebian Linux+1 | 18/11/2019 | 17/6/2026 | A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes. | |
| Modificada | Alta (7.8) | 0.33% | — | Tecno Spark PRO Firmware | 14/11/2019 | 17/6/2026 | The Tecno Spark Pro Android device with a build fingerprint of TECNO/H3722/TECNO-K8:7.0/NRD90M/K8-H3722ABCDE-N-171229V96:user/release-keys contains a pre-installed app with a package name of com.lovelyfont.defcontainer app (versionCode=7, versionName=7.0.5) that allows unauthorized dynamic code loading via a confused… | |
| Modificada | Alta (7.5) | 1.3% | — | Apache Spark | 7/8/2019 | 17/6/2026 | Prior to Spark 2.3.3, in certain situations Spark would write user data to local disk unencrypted, even if spark.io.encryption.enabled=true. This includes cached blocks that are fetched to disk (controlled by spark.maxRemoteBlockSizeFetchToMem); in SparkR, using parallelize; in Pyspark, using broadcast and… | |
| Modificada | Alta (8.8) | 1.8% | — | Jenkins Netsparker Cloud Scan | 4/4/2019 | 17/6/2026 | Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with access to the master file system. | |
| Modificada | Media (6.5) | 1.5% | — | Jenkins Netsparker Cloud Scan | 4/4/2019 | 17/6/2026 | A missing permission check in Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older in the NCScanBuilder.DescriptorImpl#doValidateAPI form validation method allowed attackers with Overall/Read permission to initiate a connection to an attacker-specified server. | |
| Modificada | Media (6.5) | 1.3% | — | Jenkins Netsparker Cloud Scan | 4/4/2019 | 17/6/2026 | A cross-site request forgery vulnerability in Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older in the NCScanBuilder.DescriptorImpl#doValidateAPI form validation method allowed attackers to initiate a connection to an attacker-specified server. | |
| Modificada | Media (5.5) | 0.60% | — | Apache Spark | 4/2/2019 | 17/6/2026 | When using PySpark , it's possible for a different local user to connect to the Spark application and impersonate the user running the Spark application. This affects versions 1.x, 2.0.x, 2.1.x, 2.2.0 to 2.2.2, and 2.3.0 to 2.3.1. | |
| Modificada | Media (4.7) | 0.41% | — | Zteusa ZTE Blade Vantage FirmwareZteusa ZTE Blade Spark FirmwareZteusa ZTE Zmax PRO FirmwareZteusa ZTE Zmax Champ Firmware | 28/12/2018 | 17/6/2026 | The ZTE Blade Vantage Android device with a build fingerprint of ZTE/Z839/sweet:7.1.1/NMF26V/20180120.095344:user/release-keys, the ZTE Blade Spark Android device with a build fingerprint of ZTE/Z971/peony:7.1.1/NMF26V/20171129.143111:user/release-keys, the ZTE ZMAX Pro Android device with a build fingerprint of… | |
| Modificada | Crítica (9.8) | 8.8% | — | Apache Spark | 19/11/2018 | 17/6/2026 | In all versions of Apache Spark, its standalone resource manager accepts code to execute on a 'master' host, that then runs that code on 'worker' hosts. The master itself does not, by design, execute user code. A specially-crafted request to the master can, however, cause the master to execute code too. Note that this… | |
| Modificada | Alta (7.8) | 0.94% | — | Baidu Spark Browser | 15/11/2018 | 17/6/2026 | Untrusted search path vulnerability in Baidu Browser Version 43.23.1000.500 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | |
| Modificada | Media (6.1) | 0.79% | — | Sparksuite Simplemde | 7/11/2018 | 17/6/2026 | SimpleMDE 1.11.2 has XSS via an onerror attribute of a crafted IMG element, or via certain input with [ and ( characters, which is mishandled during construction of an A element. | |
| Modificada | Alta (7.5) | 5.7% | — | Apache Spark | 24/10/2018 | 17/6/2026 | Spark's Apache Maven-based build includes a convenience script, 'build/mvn', that downloads and runs a zinc server to speed up compilation. It has been included in release branches since 1.3.x, up to and including master. This server will accept connections from external hosts by default. A specially-crafted request… | |
| Modificada | Media (4.2) | 66% | 💥 Exploit | Apache Spark | 13/8/2018 | 17/6/2026 | From version 1.3.0 onward, Apache Spark's standalone master exposes a REST API for job submission, in addition to the submission mechanism used by spark-submit. In standalone, the config property 'spark.authenticate.secret' establishes a shared secret for authenticating requests to submit jobs via spark-submit.… | |
| Modificada | Media (5.4) | 5.3% | 💥 Exploit | Apache SparkMozilla Firefox | 12/7/2018 | 17/6/2026 | In Apache Spark 2.1.0 to 2.1.2, 2.2.0 to 2.2.1, and 2.3.0, it's possible for a malicious user to construct a URL pointing to a Spark cluster's UI's job and stage info pages, and if a user can be tricked into accessing the URL, can be used to cause script to execute and expose information from the user's view of the… |