Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2771▼ 1 respecto a la semana anterior
Críticas / altas1280▼ 248 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)244▲ 211 respecto a la semana anterior
14.294 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.5) | 0.33% | — | Pydantic AI | 29/7/2026 | 4/8/2026 | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.88.0 up to but not including 1.107.1 and 2.0.0b1 up to but not including 2.5.0, the UI adapters (AG-UI via Agent.to_ag_ui()/AGUIAdapter, and Vercel AI via VercelAIAdapter) use sanitize_messages to strip… | |
| Analizada | Media (6.8) | 0.32% | — | Pydantic AI | 29/7/2026 | 4/8/2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.65.0 through 1.105.0, and 2.0.0b1 through 2.0.0b5, a client that submits message history to a Pydantic AI UI adapter (such as the Vercel AI adapter) can reference arbitrary files in the application's model-provider or… | |
| Analizada | Media (5.9) | 0.38% | — | Pydantic AI | 29/7/2026 | 4/8/2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.56.0 through 1.98.0, when an application opts a URL into force_download='allow-local' (disabling the default block on private/internal IPs), the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an… | |
| Aplazada | Alta (7.1) | 0.55% | — | Courier ImapAICourier Mail ServerAI | 29/7/2026 | 30/7/2026 | Courier IMAP before 6.0.1 and Courier Mail Server before 2.0.2 allow authenticated IMAP users to crash the imapd process via deeply nested parenthesized SEARCH queries. The SEARCH command parser (alloc_search_key in searchinfo.C) recursively descends on nested parenthesized groups through a mutual recursion chain with… | |
| Aplazada | Crítica (9.9) | 0.78% | — | Banzai Cloud Logging OperatorAI | 29/7/2026 | 10/9/2026 | Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior to 6.6.0, the Fluentd configuration renderer FluentRender in pkg/sdk/logging/model/render/fluent.go writes CRD strings such as Flow record_transformer.records values directly into fluent.conf without escaping, allowing a… | |
| Analizada | Crítica (9.3) | 0.83% | — | Nasa AIT DSN | 29/7/2026 | 18/8/2026 | AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains a missing authentication vulnerability in the Space Link Extension (SLE) interface manager that allows unauthenticated network attackers to access seven unprotected API routes by sending direct HTTP requests with no credentials.… | |
| Analizada | Crítica (9.3) | 0.79% | — | Nasa AIT GUI | 29/7/2026 | 18/8/2026 | AMMOS Instrument Toolkit (AIT) GUI before 2.5.1 contains a missing authentication vulnerability that allows any unauthenticated network attacker to obtain a valid session and issue arbitrary spacecraft commands by calling Sessions.create() without any credential check. Attackers can exploit the unauthenticated session… | |
| Analizada | Crítica (10) | 0.81% | 💥 PoC | Aimy-extensions Aimy Captcha-less Form Guard | 29/7/2026 | 5/8/2026 | Joomla Extension - aimy-extensions.com - RCE via PHP object injection in Aimy Captcha-Less Form Guard 18.0 - 20.0 - A forged clfgd field allows PHP objection injection and thereby remote code execution. | |
| Aplazada | Crítica (9.1) | 0.52% | — | Metabox Meta BOX AIOAI | 29/7/2026 | 30/7/2026 | The Meta Box AIO plugin for WordPress is vulnerable to Missing Authorization via the template_redirect dispatcher in the MB Frontend Submission extension in versions up to, and including, 3.8.0. This is due to the handle_request() function routing the mbfs_delete action without any capability or ownership check, and… | |
| Analizada | Crítica (9.8) | 0.64% | 💥 PoC | Apache-airflow-providers-fab | 29/7/2026 | 16/9/2026 | The FAB auth manager's Azure AD OAuth login defaulted `verify_signature=False` when decoding the ID token, so an attacker able to present a forged or unsigned (`alg:none`) ID token to the OAuth callback could bypass authentication and log in as an arbitrary user, including one holding the Admin role (CWE-347).… | |
| Aplazada | Media (6.4) | 0.26% | — | Strangerstudios Paid Memberships PROAI | 28/7/2026 | 28/7/2026 | The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Readonly User Field via [pmpro_member_profile_edit] Shortcode in all versions up to, and including, 3.8.1 due to insufficient input sanitization and output… | |
| Aplazada | Media (5.3) | 0.47% | — | Wpbot AI Chatbot FOR Live Support Lead Generation AI ServicesAI | 28/7/2026 | 28/7/2026 | The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 8.5.9 via the wpbot_send_email_transcript_free. This makes it possible for unauthenticated attackers to exfiltrate full chat transcripts and… | |
| Analizada | Crítica (9.8) | 90% | ⚠ Explotación activa💥 Exploit | Jetbrains Teamcity | 27/7/2026 | 6/8/2026 | In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol | |
| Aplazada | Baja (1.3) | 0.33% | — | Unitedbyai DroidclawAI | 27/7/2026 | 28/7/2026 | A weakness has been identified in unitedbyai droidclaw up to 0.5.3. Affected by this issue is some unknown functionality of the file server/src/routes/goals.ts of the component Unsigned Scheduled Callback. This manipulation causes authorization bypass. Remote exploitation of the attack is possible. The attack is… | |
| Aplazada | Alta (7.5) | 0.35% | — | Paid Member SubscriptionsAI | 27/7/2026 | 27/7/2026 | Subscriber Insecure Direct Object References (IDOR) in Paid Member Subscriptions <= 3.0.7 versions. | |
| Pendiente de análisis | Media (5.5) | 0.16% | — | Moonshot AI Kimi-codeAI | 27/7/2026 | 27/7/2026 | Kimi Code (@moonshot-ai/kimi-code) before 0.27.0 implements FetchURL SSRF hardening as a static hostname and IP-literal denylist in assertSafeFetchTarget, without resolving DNS or re-validating hosts after HTTP redirects. An attacker who can influence a FetchURL call (for example via prompt injection) can supply a… | |
| Pendiente de análisis | Alta (7.7) | 0.57% | — | Kubevirt Containerized Data ImporterAI | 27/7/2026 | 21/9/2026 | In containerized-data-importer (CDI), the aggregated cdi.kubevirt.io:view ClusterRole, intended to provide read-only access to CDI resources, includes a rule granting create on the datavolumes/source subresource. CDI's DataVolume clone authorization accepts this permission as sufficient to authorize cloning the… | |
| Aplazada | Alta (8.1) | 0.47% | — | Mainwp ChildAI | 27/7/2026 | 27/7/2026 | The MainWP Child WordPress plugin before 6.1.2 does not verify the requester's identity in its site-registration request handler when password authentication has been disabled for the targeted account, allowing an unauthenticated attacker to obtain a valid authentication session as that account, including an… | |
| Aplazada | Crítica (9.3) | 0.65% | — | Sunnet Corporate Training Management SystemAI | 24/7/2026 | 28/7/2026 | An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted ZIP archive containing a… | |
| Aplazada | Alta (7.5) | 0.39% | — | Paidmembershipspro Paid Memberships PROAI | 24/7/2026 | 24/7/2026 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role restriction configured on its front-end registration role-selection field. The set of roles offered to the visitor and the set of roles the… | |
| Analizada | Alta (8.8) | 0.55% | — | Microsoft Azure AI Search | 24/7/2026 | 29/7/2026 | Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network. | |
| Aplazada | Crítica (9.9) | 0.52% | — | Quenary TugtainerAI | 23/7/2026 | 23/7/2026 | Tugtainer is a self-hosted app for automating updates of Docker containers. Versions prior to 1.30.2 are vulnerable to Server-Side Template Injection (SSTI) in the notification template feature. The `title_template` and `body_template` fields are rendered using an unsandboxed `jinja2.Environment`, allowing any… | |
| Analizada | Media (5.8) | 0.59% | — | Katacontainers Kata Containers | 23/7/2026 | 6/8/2026 | Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. Versions prior to 3.31.0 ship with a default configuration that allows pod creators to inject arbitrary command-line arguments into the virtiofsd process through the… | |
| Analizada | Alta (8.6) | 0.18% | — | Jetbrains Pycharm | 23/7/2026 | 3/8/2026 | In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrusted project open | |
| En análisis | Crítica (9.1) | 0.66% | — | Jetbrains TeamcityAI | 23/7/2026 | 24/7/2026 | In JetBrains TeamCity before 2026.1.2, 2025.11.6 code execution in Git VCS roots was possible |