Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3082▲ 502 respecto a la semana anterior
Críticas / altas1460▲ 59 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
21.656 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.5) | 0.43% | — | Shapedsmart Smart Post Show PROAIReal Testimonials PROAIProduct Slider FOR Woocommerce PROAI | 24/6/2026 | 25/6/2026 | Multiple Shapedsmart-post-show-pro WordPress plugin before 4.0.2, Real Testimonials Pro WordPress plugin before 3.2.5, Product Slider for WooCommerce Pro WordPress plugin before 3.5.3 Pro smart-post-show-pro WordPress plugin before 4.0.2, Real Testimonials Pro WordPress plugin before 3.2.5, Product Slider for… | |
| Analizada | Media (5.5) | 0.31% | — | Snipeitapp Snipe-it | 23/6/2026 | 26/6/2026 | Snipe-IT is an IT asset/license management system. In versions prior to 8.6.0, a user with only users.edit can send a PATCH to /api/v1/users/{their_own_id} and grant themselves any permission except admin and superuser — for example `assets.view`, `assets.create`, `reports.view`, import, etc. The issue is patched in… | |
| Analizada | Media (4.4) | 0.14% | — | Fortra File Integrity Monitoring | 23/6/2026 | 29/6/2026 | Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or elevated effective permissions to users created by the tetool import command while FIM is running, particularly when the import also creates or changes roles or role-permission relationships. | |
| Analizada | Media (4.8) | 0.24% | — | Fortra File Integrity Monitoring | 23/6/2026 | 28/6/2026 | Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-site scripting (XSS) vulnerability in the Asset View UI component. An authenticated user with sufficient privileges to create or modify affected node or database configuration fields could store… | |
| Analizada | Alta (7.1) | 0.17% | — | Home-assistant Home Assistant Companion | 23/6/2026 | 26/6/2026 | Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.5.3, the LocationSensorManager BroadcastReceiver is exported with no permission. Any installed app, with zero runtime permissions, can broadcast a forged Google Play Services LocationResult directly to it;… | |
| Pendiente de análisis | Crítica (9) | 0.14% | — | Canonical AdsysAISambaAI | 22/6/2026 | 22/6/2026 | An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Directory Certificate Services (AD CS) certificate auto-enrollment via the vendored Samba client script (internal/policies/certificate/python/vendor_samba/gp/gp_cert_auto_enroll_ext.py), ADSys utilizes a plaintext HTTP… | |
| Analizada | Media (6.3) | 0.33% | — | Apache Nifi | 22/6/2026 | 23/6/2026 | Apache NiFi 0.0.1 through 2.9.0 support building qualified URLs from one of several HTTP request headers that provide an alternative to the standard Host header without validating the values provided. Apache NiFi 1.6.0 introduced a configurable application property to restrict values provided in the HTTP Host header,… | |
| Analizada | Alta (7.5) | 0.66% | — | Apache Nifi | 22/6/2026 | 24/6/2026 | Apache NiFi 1.12.0 through 2.9.0 are missing authorization when replacing Process Groups that include extension components with specific Required Permissions based on the Restricted annotation. The Restricted annotation indicates additional privileges required, but framework authorization did not check restricted… | |
| Analizada | Media (5.2) | 0.65% | — | Apache Nifi | 22/6/2026 | 23/6/2026 | Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache NiFi 1.2.0 through 2.9.0 allows for injecting SQL commands using crafted naming. Manual quoted boundaries added in Apache NiFi 1.8.0 narrowed the scope of potential injection options, but did not cover additional… | |
| Analizada | Baja (2.3) | 0.52% | — | Apache Nifi | 22/6/2026 | 23/6/2026 | Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 through 2.9.0 allows clients with read access to submit proposed configuration properties. The proposed properties override current configuration, enabling users with read access to invoke predefined verification methods… | |
| Aplazada | Alta (8.1) | 0.43% | — | GonicAI | 19/6/2026 | 23/6/2026 | gonic is a music streaming server / free-software subsonic server API implementation. Prior to version 0.21.0, a logic error in `ServeCreateOrUpdatePlaylist` allows any authenticated Subsonic user (including non-admin) to write playlist M3U content to an attacker-controlled absolute filesystem path on the gonic host,… | |
| Aplazada | Alta (7.1) | 0.39% | — | GonicAI | 19/6/2026 | 23/6/2026 | gonic is a music streaming server / free-software subsonic server API implementation. The maintainer's fix in commit `6dd71e6a3c966867ef8c900d359a7df75789f410` added an ownership check based on `playlist.UserID`. However, `playlist.UserID` is derived from the first path segment of the attacker-controlled playlist ID,… | |
| Aplazada | Alta (7.1) | 0.29% | — | GonicAI | 19/6/2026 | 23/6/2026 | gonic is a music streaming server / free-software subsonic server API implementation. Prior to version 0.21.0, the Subsonic API endpoints `/rest/deletePlaylist.view` and `/rest/getPlaylist.view` perform no per-resource authorization. Once authenticated as any user (admin or not), an attacker can delete any playlist… | |
| Analizada | Alta (8.8) | 0.43% | — | King-products Learning Management System King | 19/6/2026 | 19/8/2026 | Joomla LMS King Professional 3.2.4.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the cp_id parameter. Attackers can send GET requests to index.php with the option=com_lmsking, view=lmsking, layout=learningpath, and… | |
| Analizada | Media (6.3) | 0.30% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is an incorrect conversion between numeric types vulnerability in NI grpc-device due to missing range checks in CodeGen. This may silently discard high bits if a size value exceeded the target type's range. This affects NI grpc-device 2.17.0 and prior versions. | |
| Analizada | Crítica (9.3) | 0.43% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is an insecure default credentials vulnerability in NI grpc-device when TLS configuration is not present and the server is bound beyond loopback. This may allow an unauthenticated user access to the server on the local network. This affects NI grpc-device 2.17.0 and prior versions. | |
| Analizada | Media (6) | 0.42% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is a memory leak in NI grpc-device BeginSidebandStream that may result in denial of service due to memory exhaustion. This affects NI grpc-device 2.17.0 and prior versions. | |
| Analizada | Alta (7.1) | 0.45% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is an unchecked enum cast vulnerability in NI grpc-device BeginSidebandStream that may allow an attacker to trigger invalid enum states and undefined behavior, potentially resulting in a denial of service. Successful exploitation requires an attacker to supply a specially crafted message containing an… | |
| Analizada | Alta (8.7) | 0.49% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is a NULL pointer dereference vulnerability in NI grpc-device in the data moniker service that may allow an attacker to cause a denial of service by triggering a crash. Successful exploitation requires an attacker to provide an unknown value to the data moniker service. This affects NI grpc-device 2.17.0 and… | |
| Analizada | Alta (8.7) | 0.49% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is an out-of-bounds read vulnerability in the NI grpc-device streaming API due to a missing bounds check that may result in a denial of service. Successful exploitation requires an attacker to supply a specially crafted write request. This affects NI grpc-device 2.17.0 and prior versions. | |
| Analizada | Crítica (9.3) | 0.80% | — | NI InstrumentstudioNI Grpc Device Server | 19/6/2026 | 25/6/2026 | There is an untrusted pointer dereference vulnerability in the NI grpc-device sideband streaming API that may allow an attacker to cause an arbitrary memory dereference, potentially resulting in remote code execution. Successful exploitation requires an attacker to supply a specially crafted Moniker protobuf message.… | |
| Aplazada | Alta (8.5) | 0.18% | — | Personify ChromacamAI | 19/6/2026 | 26/9/2026 | Chromacam 4.0.3.0 contiene una vulnerabilidad de ruta de servicio sin comillas en el PsyFrameGrabberService que permite a atacantes locales ejecutar código arbitrario al colocar ejecutables maliciosos en directorios de ruta sin comillas. Atacantes con acceso de escritura a C:\ o subdirectorios como C:\Program Files… | |
| Pendiente de análisis | Alta (8.5) | 0.17% | — | Realtek High Definition Audio DriverAI | 19/6/2026 | 29/9/2026 | El controlador de audio de alta definición Realtek 6.0.1.6730 contiene una vulnerabilidad de ruta de servicio sin comillas que permite a atacantes locales escalar privilegios al colocar un ejecutable malicioso en la ruta del servicio. Los atacantes pueden insertar un archivo ejecutable en la ruta sin comillas y… | |
| Aplazada | Media (4.4) | 0.34% | — | Creativethemes Blocksy CompanionAI | 19/6/2026 | 22/6/2026 | The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.1.45 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with editor-level permissions and above, to inject… | |
| Aplazada | Media (5.1) | 0.30% | — | Canonical MicrocephAI | 19/6/2026 | 22/6/2026 | Canonical MicroCeph versions from the squid and tentacle track are vulnerable to a path traversal issue in the remote-import API. Holders of a trusted cluster mTLS certificate (such as enrolled cluster members) or join token can manipulate files in an imported remote cluster within the /var/snap/microceph confinement.… |