Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
–

21.613 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.4)0.21%—Snipeitapp Snipe-it24/9/202629/9/2026
Snipe-IT is an IT asset/license management system. Prior to 8.7.0, the uploaded-files API endpoint GET /api/v1/{object_type}/{id}/files/{file_id} allows an authenticated user with file-management access to upload XML and XSLT attachments and request them with the inline=true parameter. The…
AnalizadaAlta (8.6)0.27%—Snipeitapp Snipe-it24/9/202629/9/2026
Snipe-IT is an IT asset/license management system. Prior to 8.7.0, a password-authenticated session for an account with self.api permission can reach the personal-access-token API flow before completing the account's second-factor challenge because CheckForTwoFactor is enforced in the web middleware group but not the…
AnalizadaAlta (8.4)0.35%—Snipeitapp Snipe-it24/9/202629/9/2026
Snipe-IT is an IT asset/license management system. Prior to 8.7.0, a user with the customfields.create permission can store markup in CustomField.name, and app/Presenters/AssetPresenter.php assigns that value as an unescaped bootstrap-table header title. When another user opens an asset-list page associated with the…
AplazadaMedia (5.3)0.29%—LibconfiniAI24/9/202625/9/2026
libconfini 1.16.4 contains a heap out-of-bounds write condition involving the bundled load_ini_buffer.h utility and strip_ini_cache(). The bundled utility allocates exactly ini_length bytes, while strip_ini_cache() unconditionally writes a NUL terminator at ini_source[ini_length], requiring an additional writable…
AplazadaCrítica (9.8)0.36%—Minimp3AI24/9/202629/9/2026
minimp3 commit ea99364f contains an integer overflow vulnerability in mp3dec_skip_id3v1() when parsing the APEv2 tag-size field.
AplazadaCrítica (9.3)0.30%—Dashbit Nimble ZTAAI24/9/202624/9/2026
Improper Verification of Cryptographic Signature vulnerability in dashbit nimble_zta allows an unauthenticated remote attacker to authenticate as an arbitrary Cloudflare service token. Applications using the Cloudflare Zero Trust authentication strategy are affected. verify_token/2 in lib/nimble_zta/cloudflare.ex…
AplazadaAlta (7.1)0.27%—Paessler Prtg Network MonitorAI24/9/202624/9/2026
PRTG Network Monitor before version 26.2.120.1449 ships a demo EXE/Script sensor that multiplies two integer parameters using cscript.exe. If a non-numeric value is passed instead, cscript.exe raises a 'Type mismatch' runtime error that includes the offending parameter value in plaintext. PRTG provides a documented…
AplazadaMedia (5.1)0.55%—Paessler Prtg Network MonitorAI24/9/202624/9/2026
Paessler PRTG Network Monitor before version 26.2.120.1449 is affected by a reflected Cross-Site Scripting (XSS) vulnerability. When a request is made for a non-existent resource ending in \".htm\", the web interface returns an HTTP 403 \"Forbidden Path\" error page that echoes the requested URL path into the HTML…
Pendiente de análisisAlta (7.8)0.14%—GimpAIGimpressionistAI24/9/20265/10/2026
A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to load a malicious…
AplazadaMedia (5.5)0.25%—Java110 MicrocommunityAI24/9/202624/9/2026
A vulnerability was identified in java110 MicroCommunity up to 2.0. Affected is the function QueryServiceSMOImpl.fallBack of the file BusinessApi.java of the component fallBack API Endpoint. Such manipulation of the argument fallBackSql leads to sql injection. The attack may be launched remotely. The exploit is…
AplazadaMedia (6.9)0.29%—Spon Communications IP Network Audio Device Xc-9603AI23/9/202624/9/2026
A vulnerability was found in SPON Communications IP Network Audio Device XC-9603 1.2.3_20181106 Build 107. This affects the function loadCfg of the file /ini/sys_cfg.txt of the component Configuration File Download. The manipulation results in information disclosure. The attack can be launched remotely. The vendor was…
AplazadaAlta (7.1)0.18%—Ninjaforms Ninja FormsAI23/9/202623/9/2026
Unauthenticated Cross Site Scripting (XSS) in Ninja Forms <= 3.15.3 versions.
AplazadaMedia (5.4)0.23%—Wpmanageninja Fluent SupportAI23/9/202623/9/2026
Subscriber Broken Access Control in Fluent Support <= 2.3.2 versions.
AplazadaAlta (7.4)0.39%—Limesurvey Community EditionAI23/9/202623/9/2026
LimeSurvey Community Edition 7.0.14 contains a reflected cross-site scripting vulnerability on the administrative survey-participant CSV import result page.
AplazadaMedia (6.3)0.16%—Pollen Robotics Reachy MiniAIBluezAI23/9/202623/9/2026
The Reachy Mini Bluetooth service asks a connecting device for a PIN before it will accept commands. The check protects the session but not the caller, so an attacker in Bluetooth range can ride along on someone else's successful authentication. The authenticated state is kept in a single shared flag on the service…
AplazadaAlta (8.8)0.17%—Pollen Robotics Reachy MiniAIHuggingface SpacesAI23/9/202623/9/2026
The Reachy Mini daemon exposes an HTTP API for managing the robot. Its app installation endpoint, POST /apps/install in src/reachy_mini/daemon/app/routers/apps.py, has no authentication. The handler's only dependency is Depends(get_app_manager), which just hands back the manager object from application state, so…
AplazadaMedia (5.6)0.17%—Wpmanageninja Ninja TablesAI23/9/202623/9/2026
The Ninja Tables WordPress plugin before 5.2.17 does not restrict shortcode expansion to administrator-authored table rows which, in a non-default configuration, allows unauthenticated users to have arbitrary shortcodes executed on a public page, and to permanently break that page, by submitting an ordinary form entry.
AplazadaMedia (4.1)0.12%—Nt-ware Uniflow OnlineAI23/9/202623/9/2026
A session management vulnerability exists in the Legacy UI Reduced Function Login feature of NT-ware uniFLOW Online. Under specific timing conditions during Service Offline Emergency Mode, a previously authenticated session may be retained after logout, which could allow a subsequent user to be authenticated as the…
AplazadaMedia (6.1)0.13%—Acer NitrosenseAI23/9/202625/9/2026
An unauthenticated local attacker can connect to the Electron DevTools endpoint exposed by Acer NitroSense software (versions up to and including 5.2.63) on localhost TCP port 9993. Because Chromium remote debugging is enabled in the production application, the attacker can execute JavaScript in the privileged…
AplazadaMedia (6.1)0.35%—Acer NitrosenseAI23/9/202625/9/2026
An unauthenticated local attacker can connect to the MQTT broker over its localhost WebSocket endpoint in Acer NitroSense software (versions up to and including 5.2.62). This allows the attacker to invoke exposed ddsc RPC functions, including child_process.execSync(), resulting in arbitrary command execution in the…
AplazadaBaja (2.1)0.35%—Anirbandutta9 College-notes-galleryAI22/9/202623/9/2026
A vulnerability was found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6. Affected by this issue is some unknown functionality of the file /dashboard/userprofile.php?section=admin1. Performing a manipulation of the argument image results in unrestricted upload. It is possible to…
AplazadaMedia (5.5)0.41%—Anirbandutta9 College-notes-galleryAI22/9/202623/9/2026
A vulnerability has been found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6. Affected by this vulnerability is an unknown functionality of the file login.php. Such manipulation of the argument user/pass leads to sql injection. The attack may be performed from remote. The…
Pendiente de análisisAlta (8.6)0.43%—Dani-garcia VaultwardenAI22/9/202624/9/2026
Vaultwarden through 1.37.3 omits organization membership status validation from three cipher access-restriction queries, allowing revoked and not-yet-confirmed members to retain read, write, delete, and attachment access to organization ciphers. Attackers with revoked or pending membership can exploit missing status…
AplazadaAlta (7.5)0.46%—UI Unifi GatewayAI22/9/202622/9/2026
A malicious actor with access to the network could exploit an Out-of-bounds Write vulnerability found in certain UniFi gateway devices to execute a Denial of Service (DoS) attack on the device.
AplazadaAlta (7.5)0.46%—UI Unifi GatewayAI22/9/202622/9/2026
A malicious actor with access to the network could exploit an Uncontrolled Recursion vulnerability found in certain UniFi gateway devices to execute a Denial of Service (DoS) attack on the device.