Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2833▲ 192 respecto a la semana anterior
Críticas / altas1314▼ 122 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)250▲ 236 respecto a la semana anterior
–

14.298 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.4)0.35%—Linuxfoundation Containerd1/7/20262/7/2026
containerd is an open-source container runtime. In Versions prior to 2.3.2, 2.2.5 and 2.1.9, the CRI implementation improperly trusts Container Device Interface (CDI) annotations found within untrusted checkpoint image metadata during container restoration. When restoring a container from a checkpoint, containerd…
AnalizadaAlta (8.2)0.17%—Linuxfoundation Containerd1/7/20262/7/2026
containerd is an open-source container runtime. Versions prior to 2.3.2, 2.2.5 and 2.1.9 contain a bug where the CRI plugin restores container.log from a checkpoint image without validating a symlinked path. This could result in reading an arbitrary file on the host via kubectl logs. This issue has been fixed in…
AnalizadaMedia (5.6)0.30%—Linuxfoundation Containerd1/7/20262/7/2026
containerd is an open-source container runtime. Versions prior to 2.3.2, 2.2.5 and 2.1.9 contain a vulnerability in the CRI checkpoint import process where it fails to validate the image references specified within a checkpoint image's configuration. An attacker with permissions to create pods can use a crafted…
AnalizadaMedia (5.3)0.27%—Linuxfoundation Containerd1/7/20262/7/2026
containerd is an open-source container runtime. Versions prior to 1.7.33, 2.0.10, 2.1.9, 2.2.5 and 2.3.2, contain a vulnerability that allows a maliciously crafted image to cause a Denial of Service (DoS) condition. When creating a container from this image, memory exhaustion occurs, leading to an Out Of Memory (OOM)…
AnalizadaAlta (7.3)0.16%💥 PoCLinuxfoundation Containerd1/7/20263/7/2026
containerd is an open-source container runtime. In versions prior to 1.7.32, 2.0.9, 2.2.4 and 2.3.1, containers launched with a numeric User directive that cannot be parsed as a 32-bit integer are incorrectly treated as a username, leading to runAsNonRoot evasion. If a crafted image provides an /etc/passwd file…
AplazadaAlta (7.7)0.83%—Jaiotlink C492a-w6AI1/7/20262/7/2026
JAIOTlink C492A-W6 Wi-Fi IP cameras running firmware 4.8.30.57701411 contain a remote code execution vulnerability that allows authenticated attackers to execute arbitrary shell scripts by writing to the writable persistent JFFS2 storage path and triggering execution through the authenticated HTTP endpoint. Attackers…
AplazadaCrítica (9.3)1.9%—Jaiotilink C492a-w6AI1/7/20262/7/2026
JAIOTlink C492A-W6 Wi-Fi IP cameras running firmware 4.8.30.57701411 contain a hard-coded credentials vulnerability that allows network-adjacent attackers to gain unauthorized access by using the default admin username with an empty password accepted by the anyka_ipc HTTP service on port 80. Attackers can authenticate…
AplazadaAlta (8.7)2.7%—Jaiotlink C492a-w6AI1/7/20262/7/2026
JAIOTlink C492A-W6 Wi-Fi IP cameras running firmware 4.8.30.57701411 contain an OS command injection vulnerability that allows authenticated attackers to achieve remote code execution by supplying a malicious Wireless parameter to the HTTP PUT NetSDK/Factory SetMAC endpoint. Attackers can craft a string beginning with…
Pendiente de análisisCrítica (9.8)0.81%—Nvidia AistoreAI1/7/20261/7/2026
NVIDIA AIStore framework contains a vulnerability where an attacker could bypass authentication. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, and data tampering.
Pendiente de análisisAlta (8.5)0.46%—Nvidia Container ToolkitAI1/7/20262/7/2026
NVIDIA Container Toolkit for Linux contains a vulnerability where an attacker could cause a time-of-check time-of-use race condition. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, and data tampering.
AnalizadaCrítica (9.4)0.18%—Linuxfoundation Containerd1/7/20263/7/2026
containerd is an open-source container runtime. In versions prior to 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10 the CRI plugin propagates labels from an image config (LABEL instruction in Dockerfile) to a container without validation. This may result in executing an arbitrary command on the host, via a plugin that…
AnalizadaCrítica (9.3)0.53%—Flowiseai Flowise30/6/20266/7/2026
Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses a weak hardcoded default secret ('flowise') for the express-session middleware when the EXPRESS_SESSION_SECRET environment variable is not set (packages/server/src/enterprise/middleware/passport/index.ts). Because this default secret is publicly visible…
AnalizadaMedia (6.9)0.18%—Flowiseai Flowise30/6/20266/7/2026
Flowise before 3.1.2 sets Access-Control-Allow-Origin to a hardcoded wildcard (*) on its text-to-speech (TTS) generation endpoint (packages/server/src/controllers/text-to-speech/index.ts), independent of the server's configured CORS policy. This bypasses the server's otherwise restrictive default CORS configuration…
AnalizadaCrítica (9.2)0.49%—Kidocode Crawl4ai30/6/20266/7/2026
Crawl4AI before 0.8.7 contains an arbitrary JavaScript execution vulnerability in the Docker API server's /execute_js endpoint, which accepts and executes arbitrary user-supplied JavaScript in the server's browser context with --disable-web-security enabled. An attacker can execute arbitrary JavaScript and, combined…
AplazadaCrítica (9.3)1.4%—TxtaiAI30/6/202614/7/2026
txtai through 9.10.0, fixed in commit 11b32da, exposes an API /reindex endpoint whose function body parameter is resolved through txtai.util.Resolver, which performs __import__ and getattr on the caller-supplied dotted path with no allowlist. When the API is exposed with no TOKEN configured (authentication is opt-in,…
AplazadaAlta (7.6)0.72%—Mmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a la versión 0.0.29 no detecta la función integrada de Python profile.Profile.run cuando se utiliza en métodos reduce de pickle, lo que permite a los atacantes ejecutar código arbitrario. Atacantes remotos pueden crear archivos pickle maliciosos que eluden la detección de picklescan y logran la…
AplazadaAlta (7.6)0.57%—Mmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a 0.0.29 falla en detectar archivos pickle maliciosos que utilizan code.InteractiveInterpreter.runcode en métodos reduce. Los atacantes pueden crear cargas útiles pickle que eluden la detección de picklescan y ejecutan código arbitrario cuando se cargan a través de pickle.load().
AplazadaAlta (7.6)0.84%—Mmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a la versión 0.0.30 no detecta la función doctest.debug_script al analizar archivos pickle, permitiendo a los atacantes ejecutar código arbitrario. Atacantes remotos pueden crear archivos pickle maliciosos que incrustan llamadas a doctest.debug_script que eluden la detección de picklescan y…
AplazadaAlta (7.6)0.67%—Mmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a la 0.0.30 no detecta las llamadas a la función cProfile.run en los métodos 'reduce' de pickle, permitiendo a los atacantes ejecutar código arbitrario. Atacantes remotos pueden elaborar archivos pickle maliciosos con cargas útiles de cProfile.run que eluden la detección de picklescan y logran la…
AplazadaAlta (7.6)0.63%—NumpyAIMmaitre314 PicklescanAI30/6/20265/10/2026
Picklescan anterior a la versión 0.0.25 no logra detectar funciones globales inseguras en la biblioteca Numpy, lo que permite a los atacantes eludir el análisis estático y ejecutar código arbitrario durante la deserialización. Los atacantes pueden crear archivos pickle maliciosos utilizando…
AplazadaAlta (7.6)0.72%—PythonAIMmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a 0.0.29 no logra detectar la función integrada de Python trace.Trace.runctx cuando se utiliza en métodos reduce de archivos pickle, lo que permite a los atacantes ejecutar código arbitrario. Atacantes remotos pueden crear archivos pickle maliciosos con cargas útiles de trace.Trace.runctx que…
AplazadaAlta (7.6)0.45%—Pytorch TorchAIMmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a 0.0.28 no logra detectar archivos pickle maliciosos utilizando la función torch.utils.collect_env.run en métodos reduce. Los atacantes pueden incrustar código no detectado en archivos pickle que ejecuta comandos remotos cuando son cargados por las víctimas.
AplazadaAlta (7.6)0.61%—Mmaitre314 PicklescanAI30/6/20265/10/2026
picklescan anterior a la versión 0.0.29 no detecta la función integrada trace.Trace.run al analizar archivos pickle, lo que permite a los atacantes incrustar código malicioso no detectado. Atacantes remotos pueden crear archivos pickle maliciosos utilizando trace.Trace.run en el método reduce para lograr ejecución de…
AnalizadaCrítica (10)1.2%—Adobe Campaign30/6/202628/8/2026
Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.
AplazadaAlta (7.7)2.3%—Luci-app-tailscale-communityAI29/6/202614/7/2026
luci-app-tailscale-community contains a command injection vulnerability in the tailscale.do_login RPC method that allows authenticated users to execute arbitrary commands as root. The vulnerability exists because user-controlled loginserver and loginserver_authkey parameters are improperly quoted within a…