Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
891 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+37 | 24/9/2025 | 17/6/2026 | Memory corruption while encoding the image data. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm Apq8017 FirmwareQualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+199 | 24/9/2025 | 17/6/2026 | Transient DOS while parsing the EPTM test control message to get the test pattern. | |
| Analizada | Crítica (9.8) | 0.40% | — | Qualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qca6174a FirmwareQualcomm Qca6391 Firmware+109 | 24/9/2025 | 17/6/2026 | Memory corruption while selecting the PLMN from SOR failed list. | |
| Analizada | Alta (7.8) | 0.08% | — | Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+188 | 24/9/2025 | 17/6/2026 | memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency. | |
| Analizada | Crítica (9.8) | 0.40% | — | Qualcomm Apq8017 FirmwareQualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 Firmware+223 | 24/9/2025 | 17/6/2026 | Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs. | |
| Analizada | Alta (7.8) | 0.07% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+245 | 24/9/2025 | 17/6/2026 | Memory corruption while performing private key encryption in trusted application. | |
| Analizada | Media (6.1) | 0.08% | — | Qualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qcm5430 Firmware+17 | 24/9/2025 | 25/9/2026 | Information disclosure when Video engine escape input data is less than expected minimum size. | |
| Analizada | Media (6.1) | 0.08% | — | Qualcomm C-v2x 9150 FirmwareQualcomm Qam8295p FirmwareQualcomm Qca6574au FirmwareQualcomm Qca6584au Firmware+37 | 24/9/2025 | 25/9/2026 | information disclosure while invoking calibration data from user space to update firmware size. | |
| Analizada | Alta (8.2) | 0.27% | — | Qualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+104 | 24/9/2025 | 25/9/2026 | Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set. | |
| Analizada | Alta (8.2) | 0.26% | — | Qualcomm Apq8017 FirmwareQualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 Firmware+223 | 24/9/2025 | 25/9/2026 | Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length. | |
| Analizada | Alta (8.2) | 0.26% | — | Qualcomm Sm8750 FirmwareQualcomm Sm8750p FirmwareQualcomm Sm8850 FirmwareQualcomm Sm8850p Firmware+169 | 24/9/2025 | 25/9/2026 | Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet. | |
| Analizada | Alta (7.1) | 0.08% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm 9207 LTE Modem Firmware+283 | 24/9/2025 | 25/9/2026 | Cryptographic issue while performing RSA PKCS padding decoding. | |
| Aplazada | Media (6.3) | 0.18% | — | Zimbra CollaborationAI | 17/9/2025 | 17/6/2026 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the ResetPasswordRequest operation of Zimbra Collaboration (ZCS) when the zimbraFeatureResetPasswordStatus attribute is enabled. An attacker can exploit this by tricking an authenticated user into visiting a malicious webpage that silently sends a crafted… | |
| Aplazada | Crítica (9.1) | 0.62% | — | Zimbra CollaborationAI | 16/9/2025 | 17/6/2026 | A vulnerability in the EnableTwoFactorAuthRequest SOAP endpoint of Zimbra Collaboration (ZCS) allows an attacker with valid user credentials to bypass Two-Factor Authentication (2FA) protection. The attacker can configure an additional 2FA method (either a third-party authenticator app or email-based 2FA) without… | |
| Analizada | Alta (7) | 0.07% | — | Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+41 | 6/8/2025 | 17/6/2026 | Memory corruption while processing simultaneous requests via escape path. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+32 | 6/8/2025 | 17/6/2026 | Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+368 | 6/8/2025 | 17/6/2026 | Transient DOS while processing an ANQP message. | |
| Analizada | Alta (7.8) | 0.08% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8064au FirmwareQualcomm Ar8035 FirmwareQualcomm C-v2x 9150 Firmware+149 | 6/8/2025 | 17/6/2026 | Memory corruption while handling client exceptions, allowing unauthorized channel access. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+85 | 6/8/2025 | 17/6/2026 | Transient DOS while processing CCCH data when NW sends data with invalid length. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Qam8295p Firmware+41 | 6/8/2025 | 17/6/2026 | Memory corruption while processing commands from A2dp sink command queue. | |
| Analizada | Media (6.5) | 0.09% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+345 | 6/8/2025 | 17/6/2026 | Information disclosure while processing the hash segment in an MBN file. | |
| Analizada | Media (6.5) | 0.09% | — | Qualcomm Qcm4490 FirmwareQualcomm Qcm5430 FirmwareQualcomm Qcm6125 FirmwareQualcomm Qcm6490 Firmware+338 | 6/8/2025 | 17/6/2026 | Information disclosure while reading data from an image using specified offset and size parameters. | |
| Analizada | Alta (7.8) | 0.09% | — | Qualcomm Ar8035 FirmwareQualcomm C-v2x 9150 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+60 | 6/8/2025 | 17/6/2026 | Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+76 | 6/8/2025 | 17/6/2026 | Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network. | |
| Analizada | Media (6.1) | 0.30% | — | Zimbra Collaboration | 30/7/2025 | 17/6/2026 | An issue was discovered in Zimbra Collaboration (ZCS) through 10.1. A Cross-Site Scripting (XSS) vulnerability exists in Zimbra webmail due to insufficient validation of the content type metadata when importing files into the briefcase. Attackers can exploit this issue by crafting a file with manipulated metadata,… |