Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2871▲ 236 respecto a la semana anterior
Críticas / altas1338▼ 92 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
–

14.300 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.6)0.48%—Mmaitre314 Picklescan21/6/20265/10/2026
picklescan anterior a 0.0.30 no detecta llamadas a la función cProfile.runctx en los métodos reduce de archivos pickle, permitiendo a los atacantes ejecutar código arbitrario. Archivos pickle maliciosos eluden la detección de picklescan y ejecutan código remoto cuando se cargan a través de pickle.load().
AnalizadaAlta (7.6)0.39%—Mmaitre314 Picklescan21/6/20265/10/2026
picklescan anterior a la versión 0.0.30 no logra detectar archivos pickle maliciosos utilizando idlelib.pyshell.ModifiedInterpreter.runcommand en los métodos reduce. Los atacantes pueden incrustar código indetectado en archivos pickle que ejecuta comandos remotos cuando son cargados por las víctimas.
AplazadaAlta (7.6)0.55%—Mmaitre314 PicklescanAI21/6/20265/10/2026
picklescan anterior a la versión 0.0.25 no detecta archivos pickle maliciosos que utilizan timeit.timeit() en el método __reduce__, lo que permite la ejecución remota de código. Los atacantes pueden crear archivos pickle que importan librerías peligrosas como os y ejecutan comandos de sistema arbitrarios, los cuales…
AnalizadaAlta (7.6)0.55%—Mmaitre314 Picklescan21/6/20265/10/2026
picklescan anterior a la versión 0.0.28 no detecta archivos pickle maliciosos que invocan la función torch.utils._config_module.load_config dentro de los métodos reduce. Los atacantes pueden crear archivos pickle que incrustan código arbitrario que evade la detección pero se ejecuta durante pickle.load, posibilitando…
AplazadaAlta (7.1)0.16%—Ezbsystems UltraisoAI21/6/202622/6/2026
A vulnerability has been found in Ezbsystems UltraISO Premium Edition up to 9.76. Affected by this issue is some unknown functionality in the library bootpt64.sys of the component Kernel Driver. The manipulation leads to improper access controls. Local access is required to approach this attack. The exploit has been…
ModificadaMedia (6.9)0.44%—Mmaitre314 Picklescan20/6/202624/6/2026
picklescan before 1.0.1 contains an unsafe pickle deserialization vulnerability allowing unauthenticated attackers to create arbitrary zero-byte files via logging.FileHandler class instantiation. Attackers can exploit this by crafting malicious pickle payloads to bypass RCE blocklists and create lock files or other…
AplazadaMedia (6)0.37%—Flowiseai FlowiseAI20/6/202622/6/2026
Flowise before 3.1.2 contains a mass assignment vulnerability in the PUT /api/v1/user endpoint that allows authenticated users to directly modify the credential field without validation. Attackers can bypass password change verification and session invalidation by supplying a crafted password hash, establishing…
AplazadaMedia (6.9)0.46%—Flowiseai FlowiseAI20/6/202622/6/2026
Flowise before 3.0.13 contains an information exposure vulnerability in the POST /api/v1/account/forgot-password endpoint that returns full user objects including PII to unauthenticated attackers. An attacker can enumerate valid email addresses and harvest sensitive user data including user IDs, names, account status,…
AnalizadaMedia (5.1)0.33%—Flowiseai Flowise20/6/202623/6/2026
Flowise before 3.0.8 contains a cross-site scripting (XSS) vulnerability caused by insufficient input filtering in chat messages and custom agent functions. An attacker can inject malicious JavaScript by sending an iframe payload (e.g., <iframe src="javascript:alert(document.cookie)">) in a chat box, or by having a…
AplazadaCrítica (9.3)0.93%—Flowiseai FlowiseAI20/6/202622/6/2026
Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execution via the overrideConfig option, supported in both the frontend web integration and the backend Prediction API. Because this feature is enabled by default with no allow-list of permitted variables and relies on vm2 for…
AplazadaCrítica (9.3)0.80%—Brainstormforce Ultimate Addons FOR Beaver BuilderAI20/6/202629/9/2026
WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contiene una vulnerabilidad de omisión de autenticación que permite a los atacantes obtener acceso no autorizado explotando la funcionalidad del formulario de inicio de sesión de redes sociales. Los atacantes pueden enviar una solicitud POST al endpoint…
AnalizadaAlta (8.8)0.49%—Raindropsinfotech Twitch TV19/6/202621/8/2026
Joomla! Component Twitch Tv 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the username and id parameters. Attackers can send GET requests to index.php with option=com_twitchtv and view parameters containing SQL…
AnalizadaAlta (8.8)0.49%—Weborange Bargain Product VM319/6/202619/8/2026
Joomla! Component Bargain Product VM3 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the product_id parameter. Attackers can supply crafted SQL statements in GET requests to the brainy and alice views to extract…
AnalizadaAlta (8.8)0.62%—Jetbrains HUB19/6/202626/6/2026
In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 privilege escalation by attaching authentication details to accounts was possible
AnalizadaCrítica (9.8)0.52%—Jetbrains HUB19/6/202626/6/2026
In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 account takeover via predictable restore codes was possible
AnalizadaAlta (8.8)0.45%—Jetbrains Goland19/6/202626/6/2026
In JetBrains GoLand before 2026.1.3 remote code execution was possible via untrusted project configuration
AnalizadaCrítica (9.8)0.61%—Jetbrains HUB19/6/202626/6/2026
In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 authentication bypass via direct database access leading to administrative access was possible
AplazadaMedia (5.3)0.51%—Circl AIL FrameworkAI19/6/202622/6/2026
AIL framework contains a path traversal vulnerability in the /objects/item/diff endpoint. The endpoint accepts item identifiers through the s1 and s2 query parameters and, prior to the fix, attempted to retrieve and compare item contents without first verifying that both referenced items existed as valid AIL objects.…
AplazadaAlta (8.7)0.92%—PraisonaiAI18/6/202622/6/2026
PraisonAI before 1.5.115 contains a path traversal vulnerability in MultiAgentMonitor that fails to sanitize agent IDs when building file paths. Attackers can include traversal sequences like ../ in agent IDs to read, write, or overwrite arbitrary files, enabling sensitive disclosure, denial of service, or code…
AplazadaAlta (7.1)0.45%—PraisonaiAI18/6/202623/6/2026
PraisonAI before 1.5.115 contains an information disclosure vulnerability in the MultiAgentLedger component that allows attackers to access sensitive data by registering agents with duplicate IDs. Attackers can exploit the lack of agent ID uniqueness enforcement to share ledger instances and expose system prompts and…
AnalizadaAlta (8.8)0.77%—Microsoft Azure AI BOT Service18/6/202624/6/2026
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.
AplazadaAlta (8.6)0.64%—PraisonaiAI18/6/20268/10/2026
PraisonAI before 1.5.128 contains a cross-origin agent execution vulnerability in the AGUI endpoint that allows remote attackers to trigger arbitrary agent execution. The POST /agui endpoint lacks authentication and hardcodes Access-Control-Allow-Origin: * headers, combined with Starlette's Content-Type-agnostic JSON…
AplazadaAlta (8.7)0.60%—PraisonaiAI18/6/20268/10/2026
PraisonAI before 4.5.128 contains an arbitrary shell command execution vulnerability where the UI modules hardcode approval_mode to auto, overriding administrator configuration from PRAISON_APPROVAL_MODE environment variable. Authenticated attackers can instruct the LLM agent to execute arbitrary shell commands via…
AplazadaMedia (6.8)0.18%—PraisonaiAI18/6/20268/10/2026
PraisonAI before 1.5.128 caches tool approval decisions by tool name only, not by invocation arguments, allowing subsequent execute_command calls to bypass approval prompts. Attackers can exploit this by obtaining initial approval for a benign command, then silently exfiltrate API keys and credentials via subsequent…
AplazadaAlta (7.1)0.44%—SeppmailAI18/6/202622/6/2026
SEPPmail versions before 15.0.5 allow improper handling of attachment filenames during encrypted PDF generation. An attacker can exploit this to create new files outside the intended directory, potentially placing files in web-accessible locations.