Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
1833 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.6) | 0.36% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Tools.… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Alta (8.8) | 0.43% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Business Logic Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle JD Edwards Enterpriseone Tools | 17/6/2026 | 18/6/2026 | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via JDENET to compromise JD Edwards… | |
| Analizada | Alta (8.1) | 0.39% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). Supported versions that are affected are 8.61 and 8.62. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise PeopleSoft Enterprise PT… | |
| Analizada | Alta (8.2) | 0.18% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PT PeopleTools… | |
| Analizada | Alta (8.1) | 0.39% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Performance Monitor). Supported versions that are affected are 8.61 and 8.62. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PT… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Performance Monitor). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PT… | |
| Analizada | Alta (8.1) | 0.39% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Application Server). Supported versions that are affected are 8.61 and 8.62. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PT… | |
| Analizada | Alta (8.2) | 0.35% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PT… | |
| Analizada | Alta (8.4) | 0.19% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where PeopleSoft Enterprise PT PeopleTools… | |
| Analizada | Alta (8.7) | 0.34% | — | Oracle Peoplesoft Enterprise PT Peopletools | 17/6/2026 | 24/6/2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Weblogic). Supported versions that are affected are 8.61 and 8.62. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PT PeopleTools. While… | |
| Aplazada | Alta (8.8) | 1.1% | — | Premmerce DEV ToolsAI | 16/6/2026 | 17/6/2026 | The Premmerce Dev Tools plugin for WordPress is vulnerable to Remote Code Execution via missing authorization in versions up to and including 2.0. This is due to the 'generatePluginHandler' function lacking any authorization check before processing user-supplied POST data, combined with the 'createFromStub' function… | |
| Pendiente de análisis | Alta (7.7) | 0.51% | — | AMD Optional ToolsAI | 12/6/2026 | 17/6/2026 | The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle attack, potentially leading to arbitrary code execution. | |
| Analizada | Crítica (9.8) | 9.4% | ⚠ Explotación activa💥 Exploit | Oracle Peoplesoft Enterprise Peopletools | 11/6/2026 | 23/7/2026 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise… | |
| Pendiente de análisis | Media (6) | 0.13% | — | Dell Idrac ToolsAI | 9/6/2026 | 23/7/2026 | Dell iDRAC Tools, versions prior to 11.4.1.0, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information tampering. | |
| Pendiente de análisis | Alta (7.8) | 0.18% | — | PC Tools Internet SecurityAIPC Tools Pctcore64AI | 1/6/2026 | 22/7/2026 | Improper access control in the PCTCore64.sys Windows kernel driver from PC Tools Internet Security allows user-mode processes to access the PCTCoreDriver WDM device interface and invoke privileged IOCTL handlers. A local attacker with the ability to access or load the affected driver can exploit this vulnerability to… | |
| Aplazada | Baja (1.8) | 0.20% | — | Npitre Cramfs-toolsAI | 18/5/2026 | 17/6/2026 | A vulnerability was detected in npitre cramfs-tools up to 2.2. Affected is the function change_file_status of the file cramfsck.c. Performing a manipulation results in symlink following. The attack requires a local approach. The exploit is now public and may be used. The patch is named… | |
| Aplazada | Alta (8.2) | 0.67% | — | Xiph Vorbis-toolsAI | 15/5/2026 | 15/7/2026 | A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in function remotethread in remote.c. This vulnerability occurs in the remote control functionality when processing malformed input, leading to a stack buffer underflow that can cause application crashes and… |