Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2774▲ 13 respecto a la semana anterior
Críticas / altas1289▼ 241 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 215 respecto a la semana anterior
9658 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.22% | — | Nginxui Nginx UI | 20/4/2026 | 17/6/2026 | Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.5, all WebSocket endpoints in nginx-ui use a gorilla/websocket Upgrader with CheckOrigin unconditionally returning true, allowing Cross-Site WebSocket Hijacking (CSWSH). Combined with the fact that authentication tokens are stored in… | |
| Analizada | Alta (8.6) | 0.39% | — | Nginxui Nginx UI | 20/4/2026 | 17/6/2026 | Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, a user who was disabled by an administrator can use previously issued API tokens for up to the token lifetime. In practice, disabling a compromised account does not actually terminate that user’s access, so an attacker who already stole… | |
| Pendiente de análisis | Media (5.3) | 0.14% | 💥 PoC | Arduino Core Stm32AI | 20/4/2026 | 17/6/2026 | A stack-use-after-return issue exists in the Arduino_Core_STM32 library prior to version 1.7.0. The pwm_start() function allocates a TIM_HandleTypeDef structure on the stack and passes its address to HAL initialization routines, where it is stored in a global timer handle registry. After the function returns,… | |
| Aplazada | Baja (2) | 0.33% | — | ComfyuiAI | 20/4/2026 | 17/6/2026 | A vulnerability was found in ComfyUI up to 0.13.0. Affected by this issue is some unknown functionality of the file server.py of the component View Endpoint. Performing a manipulation results in cross site scripting. The attack is possible to be carried out remotely. The exploit has been made public and could be used.… | |
| Aplazada | Baja (2) | 0.40% | — | ComfyuiAI | 20/4/2026 | 17/6/2026 | A vulnerability has been found in ComfyUI up to 0.13.0. Affected by this vulnerability is the function getuserdata of the file app/user_manager.py of the component userdata Endpoint. Such manipulation leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed to the public and… | |
| Aplazada | Baja (2.1) | 0.52% | — | ComfyuiAI | 20/4/2026 | 17/6/2026 | A flaw has been found in ComfyUI up to 0.13.0. Affected is the function folder_paths.get_annotated_filepath of the file folder_paths.py of the component LoadImage Node. This manipulation of the argument Name causes path traversal. Remote exploitation of the attack is possible. The exploit has been published and may be… | |
| Aplazada | Baja (2.1) | 0.52% | — | ComfyuiAI | 20/4/2026 | 17/6/2026 | A vulnerability was detected in ComfyUI up to 0.13.0. This impacts the function get_model_preview of the file app/model_manager.py of the component Model Preview Endpoint. The manipulation results in path traversal. The attack may be launched remotely. The exploit is now public and may be used. The vendor was… | |
| Aplazada | Baja (2.1) | 0.22% | — | ComfyuiAI | 20/4/2026 | 17/6/2026 | A security vulnerability has been detected in ComfyUI up to 0.13.0. This affects the function create_origin_only_middleware of the file server.py. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was… | |
| Aplazada | Baja (2.1) | 0.52% | — | Qihui Jtbc5 CMSAI | 17/4/2026 | 17/6/2026 | A flaw has been found in Qihui jtbc5 CMS 5.0.3.6. Affected is an unknown function of the file /dev/code/common/diplomat/manage.php of the component Code Endpoint. This manipulation of the argument path causes path traversal. The attack is possible to be carried out remotely. The exploit has been published and may be… | |
| Aplazada | Media (5.3) | 0.67% | — | Quizandsurveymaster Quiz AND Survey MasterAI | 17/4/2026 | 17/6/2026 | The Quiz And Survey Master plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in versions up to and including 11.1.0. This is due to insufficient input sanitization and the execution of do_shortcode() on user-submitted quiz answer text. User-submitted answers pass through sanitize_text_field() and… | |
| Aplazada | Media (6.5) | 0.40% | — | Ability Accessibility SuiteAI | 16/4/2026 | 17/6/2026 | The Accessibility Suite by Ability, Inc plugin for WordPress is vulnerable to SQL Injection via the 'scan_id' parameter in all versions up to, and including, 4.20. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible… | |
| Aplazada | Alta (8.5) | 0.36% | — | Fastlinemedia Beaver BuilderAI | 15/4/2026 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Beaver Builder Beaver Builder beaver-builder-lite-version allows Blind SQL Injection.This issue affects Beaver Builder: from n/a through <= 2.10.1.2. | |
| Aplazada | Alta (7.2) | 0.39% | — | Quick Interest SliderAI | 15/4/2026 | 17/6/2026 | The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'loan-amount' and 'loan-period' parameters in all versions up to, and including, 3.1.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary… | |
| Aplazada | Media (5.3) | 0.39% | — | Eshot Form BuilderAI | 15/4/2026 | 17/6/2026 | The e-shot™ form builder plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.0.2. The eshot_form_builder_update_field_data() AJAX handler lacks any capability checks (current_user_can()) or nonce verification (check_ajax_referer()/wp_verify_nonce()). The function is… | |
| Aplazada | Media (4.3) | 0.23% | — | Inquiry Form TO Posts OR PagesAI | 15/4/2026 | 17/6/2026 | The Inquiry Form to Posts or Pages plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Stored Cross-Site Scripting in version 1.0. This is due to missing nonce validation on the plugin settings update handler, combined with insufficient input sanitization on all user-supplied fields and missing… | |
| Analizada | Media (5.1) | 0.34% | — | Yuin Goldmark | 15/4/2026 | 17/6/2026 | Versions of the package github.com/yuin/goldmark/renderer/html before 1.7.17 are vulnerable to Cross-site Scripting (XSS) due to improper ordering of URL validation and normalization. The renderer validates link destinations using a prefix-based check (IsDangerousURL) before resolving HTML entities. This allows an… | |
| Aplazada | Alta (8.3) | 0.22% | — | Xquic Project XquicAI | 15/4/2026 | 17/6/2026 | Improper input validation, Improper verification of cryptographic signature vulnerability in XQUIC Project XQUIC xquic on Linux (QUIC protocol implementation, packet processing module, STREAM frame handler modules) allows Protocol Manipulation.This issue affects XQUIC: through 1.8.3. | |
| Analizada | Alta (7) | 0.99% | — | Unisys Webperfect Image Suite | 14/4/2026 | 24/7/2026 | Las versiones 3.0.3960.22810 y 3.0.3960.22604 de Unisys WebPerfect Image Suite exponen un endpoint WCF SOAP no autenticado en el puerto TCP 1208 que acepta rutas de archivo no saneadas en el parámetro LFName de la acción ReadLicense, permitiendo a atacantes remotos activar conexiones SMB y filtrar hashes de cuentas de… | |
| Analizada | Alta (7) | 0.88% | — | Unisys Webperfect Image Suite | 14/4/2026 | 24/7/2026 | Las versiones 3.0.3960.22810 y 3.0.3960.22604 de Unisys WebPerfect Image Suite exponen un canal TCP de .NET Remoting obsoleto que permite a atacantes remotos no autenticados filtrar hashes de cuentas de máquina NTLMv2 al proporcionar una ruta UNC de Windows como argumento de archivo de destino mediante técnicas de… | |
| Analizada | Media (4.8) | 0.38% | — | Redhat Build OF Keycloak | 14/4/2026 | 17/6/2026 | A flaw was found in Keycloak, specifically in the organization selection login page. A remote attacker with `manage-realm` or `manage-organizations` administrative privileges can exploit a Stored Cross-Site Scripting (XSS) vulnerability. This flaw occurs because the `organization.alias` is placed into an inline… | |
| Analizada | Media (4.3) | 0.30% | — | Openwebui Open Webui | 14/4/2026 | 17/6/2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Versions 0.7.2 and below contain a Blind Server Side Request Forgery in the functionality that allows editing an image via a prompt. The affected function performs a GET request to a user-provided URL with no restriction… | |
| Aplazada | Alta (7.5) | 0.36% | — | UI Unifi Play PowerampAIUI Unifi Play Audio PortAI | 13/4/2026 | 17/6/2026 | An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to obtain UniFi Play WiFi credentials. Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier) UniFi Play Audio Port (Version 1.0.24 and earlier) Mitigation: Update UniFi Play PowerAmp to Version… | |
| Aplazada | Alta (7.5) | 0.43% | — | UI Unifi Play PowerampAIUI Unifi Play Audio PortAI | 13/4/2026 | 17/6/2026 | An Improper Input Validation vulnerability could allow a malicious actor with access to the UniFi Play network to cause the device to stop responding. Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier) UniFi Play Audio Port (Version 1.0.24 and earlier) Mitigation: Update UniFi Play PowerAmp to Version… | |
| Aplazada | Crítica (9.8) | 0.42% | — | UI Unifi Play PowerampAIUI Unifi Play Audio PortAI | 13/4/2026 | 17/6/2026 | An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to enable SSH to make unauthorized changes to the system. Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier) UniFi Play Audio Port (Version 1.0.24 and earlier) Mitigation: Update UniFi Play… | |
| Aplazada | Crítica (9.8) | 1.1% | — | UI Unifi Play PowerampAIUI Unifi Play Audio PortAI | 13/4/2026 | 17/6/2026 | A series of Improper Input Validation vulnerabilities could allow a Command Injection by a malicious actor with access to the UniFi Play network. Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier) UniFi Play Audio Port (Version 1.0.24 and earlier) Mitigation: Update UniFi Play PowerAmp to Version… |