Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

475 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (5.6)0.49%—AMD ProcessorsAI8/7/202517/6/2026
A transient execution vulnerability in some AMD processors may allow an attacker to infer data from previous stores, potentially resulting in the leakage of privileged information.
AplazadaBaja (3.8)0.18%—AMD ProcessorsAI8/7/202517/6/2026
A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a read is disabled, potentially resulting in information leakage.
AplazadaBaja (3.8)0.33%—AMD ProcessorsAI8/7/202517/6/2026
A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers speculatively even if UMIP feature is enabled, potentially resulting in information leakage.
AplazadaMedia (6.4)0.11%—AMD CPU ROM Microcode Patch LoaderAI27/6/202517/6/2026
Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious microcode, potentially resulting in loss of integrity of x86 instruction execution, loss of confidentiality and integrity of data in x86 CPU privileged context and compromise…
AplazadaAlta (7.9)0.18%—AMD ASPAIAMD Crypto Co-processorAI10/6/202517/6/2026
Improper register access control in ASP may allow a privileged attacker to perform unauthorized access to ASP’s Crypto Co-Processor (CCP) registers from x86 resulting in potential loss of control of cryptographic key pointer/index leading to loss of integrity or confidentiality.
AplazadaMedia (6.6)0.16%—AMD Versal Adaptive SOCAI10/6/202517/6/2026
In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or protected memory spaces, resulting in the loss of integrity and confidentiality.
AplazadaBaja (3.2)0.15%—AMD Versal Adaptive SOCAI10/6/202517/6/2026
In AMD Versal Adaptive SoC devices, the incorrect configuration of the SSS during runtime (post-boot) cryptographic operations could cause data to be incorrectly written to and read from invalid locations as well as returning incorrect cryptographic data.
AnalizadaAlta (7.8)0.16%—AMD Aim-t Manageability API13/5/202517/6/2026
Incorrect default permissions in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
AnalizadaAlta (7.8)0.16%—AMD Aim-t Manageability API13/5/202517/6/2026
A DLL hijacking vulnerability in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
AplazadaAlta (7.3)0.22%—AMD Cloud Manageability ServiceAI13/5/202517/6/2026
Unquoted search path within AMD Cloud Manageability Service can allow a local attacker to escalate privileges, potentially resulting in arbitrary code execution.
AplazadaAlta (7.3)0.18%—AMD Optimizing CPU LibrariesAI13/5/202517/6/2026
A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
AplazadaAlta (7.3)0.17%—AMD Optimizing CPU LibrariesAI13/5/202517/6/2026
Incorrect default permissions in the AMD Optimizing CPU Libraries (AOCL) installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
AnalizadaMedia (6.6)0.16%—AMD Uprof13/5/202517/6/2026
A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file deletion or disclosure.
AplazadaAlta (7.3)0.18%—AMD Ryzen AIAI2/4/202517/6/2026
Incorrect default permissions on the AMD Ryzen(TM) AI installation folder could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
AplazadaAlta (7.9)0.16%—AMD NPU DriverAI2/4/202517/6/2026
Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss of confidentiality, integrity or availability.
AplazadaAlta (7.9)0.16%—AMD NPU DriverAI2/4/202517/6/2026
Integer overflow within the AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to a loss of confidentiality, integrity, or availability.
AplazadaAlta (7.3)0.16%—AMD NPU DriverAI2/4/202517/6/2026
Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss of integrity or availability.
AplazadaMedia (5.5)0.13%—AMD Crash DefenderAI12/2/202517/6/2026
Improper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a kernel-mode driver, resulting in an operating system crash, potentially leading to denial of service.
AplazadaMedia (6)0.18%—AMD SEV FirmwareAI11/2/202517/6/2026
A bug in the SEV firmware may allow an attacker with privileges to read unencrypted memory, potentially resulting in loss of guest private data.
AplazadaMedia (5.3)0.17%—AMD IommuAIAMD Sev-snpAI11/2/202517/6/2026
Improper handling of invalid nested page table entries in the IOMMU may allow a privileged attacker to induce page table entry (PTE) faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest memory integrity.
AplazadaAlta (8.2)0.20%—Amdpspp2cmboxv2 DriverAI11/2/202517/6/2026
Improper input validation within the AmdPspP2CmboxV2 driver may allow a privileged attacker to overwrite SMRAM, leading to arbitrary code execution.
AplazadaAlta (8.2)0.21%—AmdplatformrassspsommAI11/2/202517/6/2026
SMM callout vulnerability within the AmdPlatformRasSspSmm driver could allow a ring 0 attacker to modify boot services handlers, potentially resulting in arbitrary code execution.
AplazadaAlta (8.2)0.20%—AmdcpmdisplayfeaturesmmAI11/2/202517/6/2026
SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally authenticated attackers to overwrite SMRAM, potentially resulting in arbitrary code execution.
AplazadaAlta (7.3)0.22%—AMD Ryzen MasterAI11/2/202517/6/2026
A DLL hijacking vulnerability in the AMD Ryzen™ Master Utility could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
AplazadaAlta (7.3)0.25%—AMD Integrated Management TechnologyAI11/2/202517/6/2026
A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.