Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 546 respecto a la semana anterior
Críticas / altas1325▼ 174 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 241 respecto a la semana anterior
–

3672 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.5)0.36%—Samsung Rlottie4/8/202623/9/2026
Improperly controlled sequential memory allocation vulnerability in Samsung Open Source rlottie allows Exponential Data Expansion.
AplazadaAlta (8.7)0.46%—SunaAI24/7/202630/7/2026
Suna before 0.9.102 contains a broken access control vulnerability in the message queue API that allows authenticated attackers to access and manipulate queue resources belonging to other users by exploiting missing ownership and account isolation checks. Attackers can read pending prompt queues of all users, read or…
AplazadaCrítica (9.3)0.65%—Sunnet Corporate Training Management SystemAI24/7/202628/7/2026
An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a…
AplazadaMedia (6.3)0.26%—Sunshine Systems Photo CartAI23/7/202623/7/2026
Subscriber Broken Access Control in Sunshine Photo Cart <= 3.6.10.1 versions.
AplazadaAlta (7.1)0.47%—Samsung CaptureAI15/7/202616/7/2026
PlaywrightCapture stored capture-specific configuration and runtime data as mutable class-level variables rather than instance-level variables. Consequently, multiple Capture objects running within the same Python process could share state, including HTTP headers, cookies, browser storage, HTTP credentials, proxy…
AnalizadaMedia (5.5)0.11%—Samsung Rlottie12/7/20262/10/2026
Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Overflow Buffers. This issue affects .
AplazadaMedia (5.3)0.47%—Samsung MembersAI11/7/202614/7/2026
The Members – Membership & User Role Editor Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.2.22 via the members_filter_protected_posts_for_rest. This makes it possible for unauthenticated attackers to extract determine the existence and exact count…
AplazadaMedia (6.8)0.15%—Samsung PassAI10/7/202610/7/2026
Improper input validation in Samsung Pass prior to version 5.2.10.3 allows local privileged attackers to write out-of-bounds memory.
AplazadaMedia (4.8)0.13%—Samsung HealthAI10/7/202610/7/2026
Improper authorization in Samsung Health prior to version 7.00.0.107 allows local attackers to access connected device information.
AplazadaAlta (8.5)0.17%💥 PoCSamsung BixbyAI10/7/202611/7/2026
Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute arbitrary commands with Bixby privilege.
AplazadaMedia (5.1)0.16%—Samsung EmailAI10/7/202610/7/2026
Improper input validation in Samsung Email prior to version 6.2.13.1 allows local attackers to create arbitrary files within the application sandbox.
AplazadaMedia (6.8)0.16%—Samsung SemclipboardserviceAI10/7/202614/7/2026
Path traversal in SemClipboardService prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files with system privilege.
AplazadaMedia (5.1)0.15%—Samsung SmartthingskitAI10/7/202610/7/2026
Improper access control in SmartThingsKit prior to SMR Jul-2026 Release 1 allows local attackers to access sensitive information.
AplazadaAlta (8.4)0.15%—Samsung LibpadmAI10/7/202611/7/2026
Out-of-bounds write in libpadm.so library prior to SMR Jul-2026 Release 1 allows local attackers to execute arbitrary code.
AplazadaMedia (5.8)0.14%—Samsung KnoxguardmanagerAI10/7/202610/7/2026
Improper authorization in KnoxGuardManager prior to SMR Jul-2026 Release 1 allows local attackers to bypass the persistence configuration of the application.
AplazadaMedia (6.7)0.17%—Samsung Wallpaper ServiceAI10/7/202611/7/2026
Path traversal in Wallpaper service prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files with system server privilege.
AplazadaAlta (8.7)0.44%—Samsung LibsavsacAI10/7/20269/9/2026
Out-of-bounds write in libsavsac.so prior to SMR Jul-2026 Release 1 allows remote attackers to execute arbitrary code.
AplazadaMedia (6.9)0.15%—Samsung SeagentserviceAI10/7/202610/7/2026
Improper access control in SamsungSEAgentService prior to SMR Jul-2026 Release 1 allows local attackers to access sensitive information.
AplazadaMedia (6.9)0.13%—Samsung IafdserviceAI10/7/202610/7/2026
Improper access control in IAFDService prior to SMR Jul-2026 Release 1 allows local privileged attackers to use the privileged APIs.
AplazadaMedia (6.9)0.15%—Samsung SettingsAI10/7/202610/7/2026
Improper access control in Settings prior to SMR Jul-2026 Release 1 allows local attackers to configure Theft protection settings.
AplazadaMedia (6.1)0.15%—Samsung EscargotAI9/7/20269/7/2026
Out-of-bounds read, Reachable assertion vulnerability in Samsung Open Source Escargot allows Overread Buffers, Input Data Manipulation. This issue affects Escargot: before 2dee22f5c7b8bf31cb7252d7731fae8c07f2842c.
AplazadaMedia (6.1)0.16%—Samsung EscargotAI9/7/20269/7/2026
Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before ef525f337fafddecde77a3c426212a84bb20cb98.
AplazadaMedia (6.1)0.15%—Samsung EscargotAI9/7/20269/7/2026
Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a.
AplazadaMedia (6.1)0.15%—Samsung EscargotAI9/7/20269/7/2026
Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a.
AplazadaMedia (6.1)0.16%—Samsung EscargotAI9/7/20269/7/2026
Stack-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before b30b63fc63b403907d8137da1c65aaa4521fe74e.