Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2761▲ 61 respecto a la semana anterior
Críticas / altas1285▼ 211 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 215 respecto a la semana anterior
9658 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 0.27% | — | Roastslav Quickdrop | 7/4/2026 | 17/6/2026 | QuickDrop is an easy-to-use file sharing application. Prior to 1.5.3, a stored XSS vulnerability exists in the file preview endpoint. The application allows SVG files to be uploaded via the /api/file/upload-chunk endpoint. An attacker can upload a specially crafted SVG file containing a JavaScript payload. When any… | |
| Analizada | Media (5.3) | 0.39% | — | Oobabooga Text Generation WEB UI | 7/4/2026 | 17/6/2026 | text-generation-webui is an open-source web interface for running Large Language Models. Prior to 4.3, an unauthenticated path traversal vulnerability in load_prompt() allows reading any .txt file on the server filesystem. The file content is returned verbatim in the API response. This vulnerability is fixed in 4.3. | |
| Analizada | Alta (7.5) | 0.44% | — | Oobabooga Text Generation WEB UI | 7/4/2026 | 17/6/2026 | text-generation-webui is an open-source web interface for running Large Language Models. Prior to 4.3, he superbooga and superboogav2 RAG extensions fetch user-supplied URLs via requests.get() with zero validation — no scheme check, no IP filtering, no hostname allowlist. An attacker can access cloud metadata… | |
| Analizada | Media (6.5) | 0.29% | — | Guaven SQL Chart Builder | 7/4/2026 | 17/6/2026 | The SQL Chart Builder WordPress plugin before 2.3.8 does not properly escape user input as it is concatened to SQL queries, making it possible for attackers to conduct SQL Injection attacks against the dynamic filter functionality. | |
| Modificada | Media (5.3) | 0.27% | — | Redhat Build OF Keycloak | 6/4/2026 | 26/6/2026 | A flaw was found in Keycloak. A remote attacker can exploit a Cross-Origin Resource Sharing (CORS) header injection vulnerability in Keycloak's User-Managed Access (UMA) token endpoint. This flaw occurs because the `azp` claim from a client-supplied JSON Web Token (JWT) is used to set the `Access-Control-Allow-Origin`… | |
| Analizada | Alta (7.1) | 0.34% | — | Salesagility Suitecrm | 5/4/2026 | 6/10/2026 | SuiteCRM 7.10.7 contiene una vulnerabilidad de inyección SQL basada en tiempo en el parámetro record de la acción DetailView del módulo Users que permite a atacantes autenticados manipular consultas de base de datos. Los atacantes pueden añadir código SQL al parámetro record en solicitudes GET al endpoint index.php… | |
| Analizada | Alta (7.1) | 0.34% | — | Salesagility Suitecrm | 5/4/2026 | 6/10/2026 | SuiteCRM 7.10.7 contiene una vulnerabilidad de inyección SQL que permite a atacantes autenticados manipular consultas de base de datos inyectando código SQL a través del parámetro parentTab. Los atacantes pueden enviar solicitudes GET al módulo de correo electrónico con valores parentTab maliciosos utilizando técnicas… | |
| Analizada | Media (5.5) | 3.4% | 💥 Exploit | Provectus UI | 5/4/2026 | 24/7/2026 | Se identificó una vulnerabilidad en provectus kafka-ui hasta la versión 0.7.2. Esto afecta la función validateAccess del archivo /api/smartfilters/testexecutions del componente Endpoint. La manipulación conduce a la inyección de código. El ataque puede iniciarse de forma remota. El exploit está disponible públicamente… | |
| Analizada | Media (6.1) | 0.25% | 💥 PoC | Interzen Zenshare Suite | 2/4/2026 | 24/7/2026 | Una vulnerabilidad de cross-site scripting (XSS) reflejado en el endpoint login_newpwd.php de Interzen Consulting S.r.l ZenShare Suite v17.0 permite a los atacantes ejecutar Javascript arbitrario en el contexto del navegador del usuario a través de una URL manipulada inyectada en el parámetro codice_azienda. | |
| Aplazada | Media (5.5) | 0.47% | — | Huimeicloud HM EditorAI | 2/4/2026 | 24/7/2026 | Se determinó una vulnerabilidad en huimeicloud hm_editor hasta la versión 2.2.3. Se ve afectada la función client.get del archivo src/mcp-server.js del componente image-to-base64 Endpoint. La ejecución de una manipulación del argumento url puede conducir a una falsificación de petición del lado del servidor. Es… | |
| Aplazada | Baja (2.1) | 0.33% | — | Shsuishang ModulithshopAI | 2/4/2026 | 17/6/2026 | A weakness has been identified in shsuishang modulithshop up to 829bac71f507e84684c782b9b062b8bf3b5585d6. The impacted element is the function listItem of the file src/main/java/com/suisung/shopsuite/pt/service/impl/ProductIndexServiceImpl.java of the component ProductItemDao Interface. Executing a manipulation of the… | |
| Modificada | Alta (8.1) | 0.48% | — | Redhat Build OF Keycloak | 2/4/2026 | 15/7/2026 | A flaw was found in Keycloak. An authenticated user with the uma_protection role can bypass User-Managed Access (UMA) policy validation. This allows the attacker to include resource identifiers owned by other users in a policy creation request, even if the URL path specifies an attacker-owned resource. Consequently,… | |
| Analizada | Media (5.3) | 0.41% | — | Redhat Build OF Keycloak | 2/4/2026 | 17/6/2026 | A flaw was found in Keycloak. The SingleUseObjectProvider, a global key-value store, lacks proper type and namespace isolation. This vulnerability allows an attacker to delete arbitrary single-use entries, which can enable the replay of consumed action tokens, such as password reset links. This could lead to… | |
| Modificada | Alta (7.4) | 0.52% | 💥 PoC | Redhat Build OF Keycloak | 2/4/2026 | 15/7/2026 | A flaw was found in Keycloak. The SingleUseObjectProvider, a global key-value store, lacks proper type and namespace isolation. This vulnerability allows an unauthenticated attacker to forge authorization codes. Successful exploitation can lead to the creation of admin-capable access tokens, resulting in privilege… | |
| Modificada | Alta (7.3) | 0.59% | — | Redhat Build OF Keycloak | 2/4/2026 | 15/7/2026 | A flaw was found in Keycloak. This issue allows an attacker, who controls another path on the same web server, to bypass the allowed path in redirect Uniform Resource Identifiers (URIs) that use a wildcard. A successful attack may lead to the theft of an access token, resulting in information disclosure. | |
| Modificada | Alta (7.5) | 0.86% | — | Redhat Build OF Keycloak | 2/4/2026 | 6/10/2026 | A flaw was found in Keycloak. An unauthenticated attacker can exploit this vulnerability by sending a specially crafted POST request with an excessively long scope parameter to the OpenID Connect (OIDC) token endpoint. This leads to high resource consumption and prolonged processing times, ultimately resulting in a… | |
| Analizada | Media (4.3) | 0.19% | — | IBM Maximo Application Suite | 1/4/2026 | 17/6/2026 | IBM Maximo Application Suite 9.1, 9.0, 8.11, and 8.10 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and… | |
| Analizada | Alta (7.7) | 0.46% | — | Openwebui Open Webui | 1/4/2026 | 17/6/2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.11, there is a broken access control vulnerability in tool values. This issue has been patched in version 0.8.11. | |
| Aplazada | Media (6.5) | 0.22% | — | Brainstormforce Ultimate Addons FOR Wpbakery Page BuilderAI | 1/4/2026 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Ultimate Addons for WPBakery Page Builder allows DOM-Based XSS.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a before 3.21.4. | |
| Aplazada | Media (4.3) | 0.26% | — | Cozmoslabs User Profile BuilderAI | 31/3/2026 | 25/7/2026 | El plugin User Profile Builder - Beautiful User Registration Forms, User Profiles & User Role Editor para WordPress es vulnerable a Referencia Directa a Objeto Insegura en versiones hasta e incluyendo la 3.15.5 a través de la función wppb_save_avatar_value() debido a la falta de validación en una clave controlada por… | |
| Aplazada | Media (6.5) | 0.22% | — | Extendthemes Kubio AI Page BuilderAI | 31/3/2026 | 17/6/2026 | Neutralización Incorrecta de la Entrada Durante la Generación de Páginas Web ('cross-site scripting') vulnerabilidad en Extend Themes Kubio AI Page Builder permite XSS Almacenado. Este problema afecta a Kubio AI Page Builder: desde n/d hasta 2.7.0. | |
| Analizada | Crítica (9.8) | 0.98% | — | Presidio HAI Build | 30/3/2026 | 17/6/2026 | En su diseño para la ejecución automática de comandos de terminal, HAI Build Code Generator ofrece dos opciones: Ejecutar comandos seguros y Ejecutar todos los comandos. La descripción de la primera opción establece que los comandos determinados por el modelo como seguros se ejecutarán automáticamente, mientras que si… | |
| Analizada | Crítica (9.4) | 0.21% | — | Nginxui Nginx UI | 30/3/2026 | 17/6/2026 | Nginx UI es una interfaz de usuario web para el servidor web Nginx. Antes de la versión 2.3.4, el mecanismo de restauración de copias de seguridad de nginx-ui permite a los atacantes manipular archivos de copia de seguridad cifrados e inyectar configuración maliciosa durante la restauración. Este problema ha sido… | |
| Modificada | Crítica (9.8) | 2.5% | 💥 Exploit | Nginxui Nginx UI | 30/3/2026 | 17/6/2026 | Nginx UI es una interfaz de usuario web para el servidor web Nginx. En las versiones 2.3.5 y anteriores, la integración MCP (Model Context Protocol) de nginx-ui expone dos puntos finales HTTP: /mcp y /mcp_message. Mientras que /mcp requiere tanto la lista blanca de IP como la autenticación (middleware AuthRequired()),… | |
| Analizada | Crítica (9.9) | 0.38% | — | Nginxui Nginx UI | 30/3/2026 | 17/6/2026 | Nginx UI es una interfaz de usuario web para el servidor web Nginx. En las versiones 2.3.3 y anteriores, Nginx-UI contiene una vulnerabilidad de Referencia Directa Insegura a Objeto (IDOR) que permite a cualquier usuario autenticado acceder, modificar y eliminar recursos pertenecientes a otros usuarios. La estructura… |