Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2744▼ 111 respecto a la semana anterior
Críticas / altas1254▼ 280 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)244▲ 208 respecto a la semana anterior
–

9657 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.5)0.41%—Redhat Build OF Keycloak19/5/202617/6/2026
A flaw was found in Keycloak. This access control vulnerability in Keycloak's OpenID Connect (OIDC) token introspection endpoint allows a confidential client to bypass audience restrictions. An attacker-controlled client with valid credentials can retrieve sensitive token claims intended for other resource servers,…
AnalizadaMedia (4.9)0.46%—Redhat Build OF Keycloak19/5/202617/6/2026
A flaw was found in Keycloak. A low-privilege administrator with the 'view-clients' role can exploit this by invoking the 'evaluate-scopes' Admin API endpoints with an arbitrary user ID (userId) parameter. This vulnerability allows for cross-role personally identifiable information (PII) leakage, enabling unauthorized…
ModificadaAlta (7.5)1.1%—Redhat Build OF Keycloak19/5/20266/10/2026
A session fixation vulnerability was found in Keycloak's login-actions endpoints. An unauthenticated attacker could exploit this flaw by pre-creating an authentication session and tricking a victim into visiting a maliciously crafted link. By leveraging the /login-actions/restart endpoint—which processes session…
ModificadaAlta (7.5)1.0%—Redhat Build OF Keycloak19/5/20266/10/2026
A flaw was found in Keycloak. A remote, unauthenticated attacker can send a specially crafted XML input to the Security Assertion Markup Language (SAML) endpoint. This malicious input can cause high CPU usage and worker thread starvation, leading to a Denial of Service (DoS) where the server becomes unavailable.
ModificadaMedia (5.4)0.32%—Redhat Build OF Keycloak19/5/202623/7/2026
Se encontró una vulnerabilidad en Keycloak. Cuando se configuran políticas de revocación 'notBefore' tanto a nivel de 'realm' como a nivel de 'cliente', la función de introspección de OpenID Connect (OIDC) de Keycloak no respeta correctamente la política a nivel de 'realm'. Esto permite que los tokens que deberían…
ModificadaMedia (4.3)0.44%—Redhat Build OF Keycloak19/5/202623/7/2026
Se encontró un fallo en Keycloak. Un usuario autenticado puede eludir las políticas WebAuthn configuradas durante el registro de credenciales manipulando JavaScript del lado del cliente. Esto ocurre porque el processAction() del lado del servidor no valida que los parámetros de la credencial recién creada, como los…
Pendiente de análisisAlta (8.8)0.44%—Thermo Fisher Scientific Torrent Suite DXAI18/5/202617/6/2026
Thermo Fisher Scientific Torrent Suite Dx through 5.14.2 has a privilege escalation vulnerability that may allow an authenticated user with limited access privileges to gain unauthorized administrator-level privileges through exploitation of specific system interfaces.
AplazadaMedia (5.1)0.18%—Opensolution Quick.cmsAI16/5/202617/6/2026
Quick.CMS 6.7 contains a cross-site scripting vulnerability in the sliders form that allows authenticated attackers to inject malicious scripts by submitting XSS payloads through the sDescription parameter. Attackers can craft CSRF forms targeting the admin.php?p=sliders-form endpoint to execute arbitrary JavaScript…
AnalizadaMedia (6.5)0.43%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.0, GET /api/v1/memories/ef is accessible without authentication and executes request.app.state.EMBEDDING_FUNCTION(...). This allows any unauthenticated caller to trigger embedding generation which can lead…
AnalizadaMedia (6.5)0.39%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the API /api/v1/notes/{note_id} endpoint lacks proper authorization checks, allowing authenticated users to retrieve notes belonging to other users by guessing or enumerating UUIDs. This results in…
AnalizadaAlta (8.1)0.38%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.0, a Stored Cross-Site Scripting (XSS) vulnerability exists in the Banner component due to an improper sanitization order (specifically, DOMPurify is executed before the marked library). This vulnerability…
ModificadaMedia (5.4)0.27%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, an internal-only bypass_filter parameter is exposed on the /openai/chat/completions and /ollama/api/chat HTTP endpoints via FastAPI query string binding, allowing any authenticated user to append…
ModificadaMedia (6.5)0.39%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.9, when a regular user [non-admin] logs into the application, a http://IP:8080/api/models? web request is initiated by the application and in response, it reveals the system prompt of available models set by…
AnalizadaAlta (7.1)0.37%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.6, there is a vulnerability in chat completion API, which allows attackers to bypass tool restrictions, potentially enabling unauthorized actions or access. In the chat_completion API, the parameters…
AnalizadaMedia (5.4)0.25%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.5.11, there is a blind server side request forgery (SSRF) via the PDF generate function. In the PDF export, user inputs are interpreted as HTML and embedded into the PDF. According to tests, scripts and some…
AnalizadaMedia (5.1)0.24%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.31, there is a Cross-Site Scripting vulnerability in Open WebUI SVG renderer implementation. This vulnerability is fixed in 0.6.31.
AnalizadaMedia (6.5)0.34%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.5.7, a user can modify another user's model even if its visibility is set to Private. By changing the access permissions during editing, unauthorized access can be gained. This vulnerability is fixed in 0.5.7.
AnalizadaAlta (7.7)0.38%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, a Server-Side Request Forgery (SSRF) vulnerability exists in _process_picture_url() in backend/open_webui/utils/oauth.py (line ~1338). The function fetches arbitrary URLs from OAuth picture claims without…
AnalizadaMedia (5.4)0.24%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, his advisory tracks a regression of the original Excel-preview XSS (CVE-2026-44549). The same root cause — XLSX.utils.sheet_to_html() output rendered via {@html excelHtml} without DOMPurify — was…
AnalizadaMedia (4.6)0.15%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, an application-wide Cross-Site Request Forgery (CSRF) vulnerability was found Open-WebUl's image uploading functionality. An attacker can set an image URL to a malicious endpoint, allowing them to perform…
AnalizadaBaja (3.5)0.26%💥 PoCOpenwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, the POST /api/v1/notes/{id}/pin endpoint performs a write operation (toggling the is_pinned field) but only checks for read permission. Users with read-only access to a shared note can pin/unpin it, which…
ModificadaAlta (8.7)0.19%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, the audio transcription upload endpoint takes the file extension from the user-supplied filename and saves the file under CACHE_DIR/audio/transcriptions/.. The /cache/{path} route serves these files via…
ModificadaAlta (7.4)0.24%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, the channel webhook create/update flow accepts arbitrary profile_image_url values, including data:image/svg+xml;base64,... payloads. The profile image endpoint then decodes and serves this SVG as…
ModificadaAlta (7.7)0.30%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.5, through the HTML rendering view, scripts can be injected and executed. The frontend provides a function to visualize the HTML content of a current chat. The content is embedded in an iFrame with the…
ModificadaAlta (8.1)0.39%—Openwebui Open Webui15/5/202617/6/2026
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.3.16, a missing permission check in all files related API endpoints allows any authenticated user to list, access and delete every file uploaded by every user to the platform. This vulnerability is fixed in…