Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
483 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.35% | — | Gpac | 15/11/2023 | 17/6/2026 | GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a heap-use-after-free via the flush_ref_samples function at /gpac/src/isomedia/movie_fragments.c. | |
| Modificada | Media (5.5) | 0.25% | — | Gpac | 14/11/2023 | 17/6/2026 | MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gf_isom_add_chapter at /isomedia/isom_write.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file. | |
| Modificada | Media (5.5) | 0.31% | — | Gpac | 7/11/2023 | 17/6/2026 | Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data. | |
| Modificada | Alta (7.5) | 0.59% | — | Gpac | 7/11/2023 | 17/6/2026 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |
| Modificada | Media (5.5) | 0.21% | — | Gpac | 1/11/2023 | 17/6/2026 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42. | |
| Modificada | Media (5.5) | 0.21% | — | Gpac | 1/11/2023 | 17/6/2026 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box. | |
| Modificada | Media (5.5) | 0.21% | — | Gpac | 1/11/2023 | 17/6/2026 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box. | |
| Modificada | Media (5.5) | 0.21% | — | Gpac | 1/11/2023 | 17/6/2026 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14. | |
| Modificada | Crítica (9.8) | 50% | 💥 Exploit | Ndkdesign NDK Steppingpack | 25/10/2023 | 17/6/2026 | In the module "Step by Step products Pack" (ndk_steppingpack) version 1.5.6 and before from NDK Design for PrestaShop, a guest can perform SQL injection. The method `NdkSpack::getPacks()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection. | |
| Modificada | Media (5.5) | 0.29% | — | Gpac | 16/10/2023 | 17/6/2026 | Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |
| Modificada | Alta (7.8) | 0.33% | — | Gpac | 15/10/2023 | 17/6/2026 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |
| Modificada | Media (5.5) | 0.23% | — | Gpac | 12/10/2023 | 17/6/2026 | An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c. | |
| Analizada | Alta (7.7) | 0.33% | — | Gpac | 11/10/2023 | 17/6/2026 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. | |
| Modificada | Alta (7.1) | 0.37% | — | Gpac | 4/10/2023 | 17/6/2026 | Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV. | |
| Modificada | Media (4.8) | 0.36% | — | Regpacks Regpack | 2/10/2023 | 17/6/2026 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Regpacks Regpack plugin <= 0.1 versions. | |
| Modificada | Media (5.5) | 0.30% | — | Gpac | 11/9/2023 | 17/6/2026 | GPAC through 2.2.1 has a use-after-free vulnerability in the function gf_bifs_flush_command_list in bifs/memory_decoder.c. | |
| Modificada | Media (5.5) | 0.26% | — | Gpac | 5/9/2023 | 17/6/2026 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.26% | — | Gpac | 4/9/2023 | 17/6/2026 | Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.28% | — | Gpac | 4/9/2023 | 17/6/2026 | Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.31% | — | Gpac | 4/9/2023 | 17/6/2026 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.28% | — | Gpac | 4/9/2023 | 17/6/2026 | Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.30% | — | Gpac | 1/9/2023 | 17/6/2026 | Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.30% | — | Gpac | 1/9/2023 | 17/6/2026 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.31% | — | Gpac | 1/9/2023 | 17/6/2026 | Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV. | |
| Modificada | Media (5.5) | 0.32% | 💥 PoC | Gpac | 31/8/2023 | 17/6/2026 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV. |