Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2871▲ 236 respecto a la semana anterior
Críticas / altas1338▼ 92 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
14.300 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.6) | 0.48% | — | Mmaitre314 Picklescan | 21/6/2026 | 5/10/2026 | picklescan anterior a 0.0.30 no detecta llamadas a la función cProfile.runctx en los métodos reduce de archivos pickle, permitiendo a los atacantes ejecutar código arbitrario. Archivos pickle maliciosos eluden la detección de picklescan y ejecutan código remoto cuando se cargan a través de pickle.load(). | |
| Analizada | Alta (7.6) | 0.39% | — | Mmaitre314 Picklescan | 21/6/2026 | 5/10/2026 | picklescan anterior a la versión 0.0.30 no logra detectar archivos pickle maliciosos utilizando idlelib.pyshell.ModifiedInterpreter.runcommand en los métodos reduce. Los atacantes pueden incrustar código indetectado en archivos pickle que ejecuta comandos remotos cuando son cargados por las víctimas. | |
| Aplazada | Alta (7.6) | 0.55% | — | Mmaitre314 PicklescanAI | 21/6/2026 | 5/10/2026 | picklescan anterior a la versión 0.0.25 no detecta archivos pickle maliciosos que utilizan timeit.timeit() en el método __reduce__, lo que permite la ejecución remota de código. Los atacantes pueden crear archivos pickle que importan librerías peligrosas como os y ejecutan comandos de sistema arbitrarios, los cuales… | |
| Analizada | Alta (7.6) | 0.55% | — | Mmaitre314 Picklescan | 21/6/2026 | 5/10/2026 | picklescan anterior a la versión 0.0.28 no detecta archivos pickle maliciosos que invocan la función torch.utils._config_module.load_config dentro de los métodos reduce. Los atacantes pueden crear archivos pickle que incrustan código arbitrario que evade la detección pero se ejecuta durante pickle.load, posibilitando… | |
| Aplazada | Alta (7.1) | 0.16% | — | Ezbsystems UltraisoAI | 21/6/2026 | 22/6/2026 | A vulnerability has been found in Ezbsystems UltraISO Premium Edition up to 9.76. Affected by this issue is some unknown functionality in the library bootpt64.sys of the component Kernel Driver. The manipulation leads to improper access controls. Local access is required to approach this attack. The exploit has been… | |
| Modificada | Media (6.9) | 0.44% | — | Mmaitre314 Picklescan | 20/6/2026 | 24/6/2026 | picklescan before 1.0.1 contains an unsafe pickle deserialization vulnerability allowing unauthenticated attackers to create arbitrary zero-byte files via logging.FileHandler class instantiation. Attackers can exploit this by crafting malicious pickle payloads to bypass RCE blocklists and create lock files or other… | |
| Aplazada | Media (6) | 0.37% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 3.1.2 contains a mass assignment vulnerability in the PUT /api/v1/user endpoint that allows authenticated users to directly modify the credential field without validation. Attackers can bypass password change verification and session invalidation by supplying a crafted password hash, establishing… | |
| Aplazada | Media (6.9) | 0.46% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 3.0.13 contains an information exposure vulnerability in the POST /api/v1/account/forgot-password endpoint that returns full user objects including PII to unauthenticated attackers. An attacker can enumerate valid email addresses and harvest sensitive user data including user IDs, names, account status,… | |
| Analizada | Media (5.1) | 0.33% | — | Flowiseai Flowise | 20/6/2026 | 23/6/2026 | Flowise before 3.0.8 contains a cross-site scripting (XSS) vulnerability caused by insufficient input filtering in chat messages and custom agent functions. An attacker can inject malicious JavaScript by sending an iframe payload (e.g., <iframe src="javascript:alert(document.cookie)">) in a chat box, or by having a… | |
| Aplazada | Crítica (9.3) | 0.93% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execution via the overrideConfig option, supported in both the frontend web integration and the backend Prediction API. Because this feature is enabled by default with no allow-list of permitted variables and relies on vm2 for… | |
| Aplazada | Crítica (9.3) | 0.80% | — | Brainstormforce Ultimate Addons FOR Beaver BuilderAI | 20/6/2026 | 29/9/2026 | WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contiene una vulnerabilidad de omisión de autenticación que permite a los atacantes obtener acceso no autorizado explotando la funcionalidad del formulario de inicio de sesión de redes sociales. Los atacantes pueden enviar una solicitud POST al endpoint… | |
| Analizada | Alta (8.8) | 0.49% | — | Raindropsinfotech Twitch TV | 19/6/2026 | 21/8/2026 | Joomla! Component Twitch Tv 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the username and id parameters. Attackers can send GET requests to index.php with option=com_twitchtv and view parameters containing SQL… | |
| Analizada | Alta (8.8) | 0.49% | — | Weborange Bargain Product VM3 | 19/6/2026 | 19/8/2026 | Joomla! Component Bargain Product VM3 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the product_id parameter. Attackers can supply crafted SQL statements in GET requests to the brainy and alice views to extract… | |
| Analizada | Alta (8.8) | 0.62% | — | Jetbrains HUB | 19/6/2026 | 26/6/2026 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 privilege escalation by attaching authentication details to accounts was possible | |
| Analizada | Crítica (9.8) | 0.52% | — | Jetbrains HUB | 19/6/2026 | 26/6/2026 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 account takeover via predictable restore codes was possible | |
| Analizada | Alta (8.8) | 0.45% | — | Jetbrains Goland | 19/6/2026 | 26/6/2026 | In JetBrains GoLand before 2026.1.3 remote code execution was possible via untrusted project configuration | |
| Analizada | Crítica (9.8) | 0.61% | — | Jetbrains HUB | 19/6/2026 | 26/6/2026 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 authentication bypass via direct database access leading to administrative access was possible | |
| Aplazada | Media (5.3) | 0.51% | — | Circl AIL FrameworkAI | 19/6/2026 | 22/6/2026 | AIL framework contains a path traversal vulnerability in the /objects/item/diff endpoint. The endpoint accepts item identifiers through the s1 and s2 query parameters and, prior to the fix, attempted to retrieve and compare item contents without first verifying that both referenced items existed as valid AIL objects.… | |
| Aplazada | Alta (8.7) | 0.92% | — | PraisonaiAI | 18/6/2026 | 22/6/2026 | PraisonAI before 1.5.115 contains a path traversal vulnerability in MultiAgentMonitor that fails to sanitize agent IDs when building file paths. Attackers can include traversal sequences like ../ in agent IDs to read, write, or overwrite arbitrary files, enabling sensitive disclosure, denial of service, or code… | |
| Aplazada | Alta (7.1) | 0.45% | — | PraisonaiAI | 18/6/2026 | 23/6/2026 | PraisonAI before 1.5.115 contains an information disclosure vulnerability in the MultiAgentLedger component that allows attackers to access sensitive data by registering agents with duplicate IDs. Attackers can exploit the lack of agent ID uniqueness enforcement to share ledger instances and expose system prompts and… | |
| Analizada | Alta (8.8) | 0.77% | — | Microsoft Azure AI BOT Service | 18/6/2026 | 24/6/2026 | Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network. | |
| Aplazada | Alta (8.6) | 0.64% | — | PraisonaiAI | 18/6/2026 | 8/10/2026 | PraisonAI before 1.5.128 contains a cross-origin agent execution vulnerability in the AGUI endpoint that allows remote attackers to trigger arbitrary agent execution. The POST /agui endpoint lacks authentication and hardcodes Access-Control-Allow-Origin: * headers, combined with Starlette's Content-Type-agnostic JSON… | |
| Aplazada | Alta (8.7) | 0.60% | — | PraisonaiAI | 18/6/2026 | 8/10/2026 | PraisonAI before 4.5.128 contains an arbitrary shell command execution vulnerability where the UI modules hardcode approval_mode to auto, overriding administrator configuration from PRAISON_APPROVAL_MODE environment variable. Authenticated attackers can instruct the LLM agent to execute arbitrary shell commands via… | |
| Aplazada | Media (6.8) | 0.18% | — | PraisonaiAI | 18/6/2026 | 8/10/2026 | PraisonAI before 1.5.128 caches tool approval decisions by tool name only, not by invocation arguments, allowing subsequent execute_command calls to bypass approval prompts. Attackers can exploit this by obtaining initial approval for a benign command, then silently exfiltrate API keys and credentials via subsequent… | |
| Aplazada | Alta (7.1) | 0.44% | — | SeppmailAI | 18/6/2026 | 22/6/2026 | SEPPmail versions before 15.0.5 allow improper handling of attachment filenames during encrypted PDF generation. An attacker can exploit this to create new files outside the intended directory, potentially placing files in web-accessible locations. |