Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2976▼ 107 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
601 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4.3) | 0.15% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.9.0, once the validity of the received V2G message has been verified, it is checked whether the submitted session ID matches the registered one. However, if no session has been registered, the default value is 0. Therefore, a message submitted with a… | |
| Analizada | Media (4.3) | 0.16% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. In all versions up to and including 2025.12.1, the default value for `terminate_connection_on_failed_response` is `False`, which leaves the responsibility for session and connection termination to the EV. In this configuration, any errors encountered by the module are logged… | |
| Analizada | Media (4.7) | 0.18% | — | Linuxfoundation Libocpp | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack, and EVerest libocpp is a C++ implementation of the Open Charge Point Protocol. In libocpp prior to version 0.30.1, pointers returned by the `strdup` calls are never freed. At each connection attempt, the newly allocated memory area will be leaked, potentially causing memory… | |
| Analizada | Alta (8.3) | 1.3% | 💥 Exploit | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.10.0, an integer overflow occurring in `SdpPacket::parse_header()` allows the current buffer length to be set to 7 after a complete header of size 8 has been read. The remaining length to read is computed using the current length subtracted by the header… | |
| Analizada | Alta (7.4) | 0.29% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.10.0, once the module receives a SDP request, it creates a whole new set of objects like `Session`, `IConnection` which open new TCP socket for the ISO15118-20 communications and registers callbacks for the created file descriptor, without closing and… | |
| Analizada | Media (6.5) | 0.32% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.10.0, C++ exceptions are not properly handled for and by the `TbdController` loop, leading to its caller and itself to silently terminates. Thus, this leads to a denial of service as it is responsible of SDP and ISO15118-20 servers. Version 2025.10.0… | |
| Analizada | Alta (7.4) | 0.17% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.10.0, the use of the `assert` function to handle errors frequently causes the module to crash. This is particularly critical because the manager shuts down all other modules and exits when any one of them terminates, leading to a denial of service. In a… | |
| Analizada | Baja (2.4) | 0.28% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2025.12.0, `is_message_crc_correct` in the DZG_GSH01 powermeter SLIP parser reads `vec[vec.size()-1]` and `vec[vec.size()-2]` without checking that at least two bytes are present. Malformed SLIP frames on the serial link can reach `is_message_crc_correct` with… | |
| Analizada | Alta (7.4) | 0.39% | — | Linuxfoundation Everest | 21/1/2026 | 17/6/2026 | EVerest is an EV charging software stack. In versions 2025.9.0 and below, an attacker can exhaust the operating system's memory and cause the module to terminate by initiating an unlimited number of TCP connections that never proceed to ISO 15118-2 communication. This is possible because a new thread is started for… | |
| Analizada | Media (5.3) | 0.24% | — | Linuxfoundation Fulcio | 12/1/2026 | 17/6/2026 | Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Prior to 1.8.5, Fulcio's metaRegex() function uses unanchored regex, allowing attackers to bypass MetaIssuer URL validation and trigger SSRF to arbitrary internal services. Since the SSRF only can trigger GET… | |
| Analizada | Media (6.6) | 0.17% | — | Linuxfoundation Spinnaker | 5/1/2026 | 17/6/2026 | Spinnaker is an open source, multi-cloud continuous delivery platform. Versions prior to 2025.1.6, 2025.2.3, and 2025.3.0 are vulnerable to server-side request forgery. The primary impact is allowing users to fetch data from a remote URL. This data can be then injected into spinnaker pipelines via helm or other… | |
| Analizada | Media (5.5) | 0.33% | — | Linuxfoundation Wasmedge | 30/12/2025 | 17/6/2026 | WasmEdge is a WebAssembly runtime. Prior to version 0.16.0-alpha.3, a multiplication in `WasmEdge/include/runtime/instance/memory.h` can wrap, causing `checkAccessBound()` to incorrectly allow the access. This leads to a segmentation fault. Version 0.16.0-alpha.3 contains a patch for the issue. | |
| Analizada | Alta (7.5) | 0.34% | — | Linuxfoundation UPF | 18/12/2025 | 17/6/2026 | A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2.1.3-dev. When the UPF receives a PFCP Session Report Response that is missing the mandatory Cause Information Element, the session report handler dereferences a nil pointer instead of rejecting the… | |
| Analizada | Alta (8.4) | 0.24% | — | Linuxfoundation Gardenctl | 12/12/2025 | 30/9/2026 | gardenctl is a command-line client for the Gardener which configures access to clusters and cloud provider CLI tools. When using non‑POSIX shells such as Fish and PowerShell, versions 2.11.0 and below of gardenctl allow an attacker with administrative privileges for a Gardener project to craft malicious credential… | |
| Analizada | Baja (3.6) | 0.14% | — | Linuxfoundation CNI Network Plugins | 10/12/2025 | 17/6/2026 | The CNI portmap plugin allows containers to emulate opening a host port, forwarding that traffic to the container. Versions 1.6.0 through 1.8.0 inadvertently forward all traffic with the same destination port as the host port when the portmap plugin is configured with the nftables backend, thus ignoring the… | |
| Analizada | Alta (7.4) | 0.17% | — | Linuxfoundation Strimzi | 5/12/2025 | 25/9/2026 | Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. From 0.47.0 and prior to 0.49.1, in some situations, Strimzi creates an incorrect Kubernetes Role which grants the Apache Kafka Connect and Apache Kafka MirrorMaker 2 operands the GET access to all… | |
| Analizada | Alta (7.5) | 0.44% | — | Linuxfoundation Sigstore Timestamp Authority | 4/12/2025 | 17/6/2026 | Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps. Prior to 2.0.3, Function api.ParseJSONRequest currently splits (via a call to strings.Split) an optionally-provided OID (which is untrusted data) on periods. Similarly, function api.getContentType splits the Content-Type header (which is also… | |
| Analizada | Alta (7.5) | 0.21% | — | Linuxfoundation Fulcio | 4/12/2025 | 17/6/2026 | Fulcio is a free-to-use certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Prior to 1.8.3, function identity.extractIssuerURL splits (via a call to strings.Split) its argument (which is untrusted data) on periods. As a result, in the face of a malicious request with an… | |
| Modificada | Media (4.7) | 0.07% | — | Linuxfoundation YoctoGoogle AndroidOpenwrt | 2/12/2025 | 17/6/2026 | In aee daemon, there is a possible system crash due to a race condition. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10190802; Issue ID: MSV-4833. | |
| Modificada | Baja (3.3) | 0.12% | — | Linuxfoundation Pytorch | 12/11/2025 | 5/7/2026 | An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS). | |
| Analizada | Media (6.9) | 0.16% | — | Linuxfoundation Containerd | 7/11/2025 | 17/6/2026 | containerd is an open-source container runtime. Versions 1.7.28 and below, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 through 2.1.4, and 2.2.0-beta.0 through 2.2.0-rc.1 contain a bug in the CRI Attach implementation where a user can exhaust memory on the host due to goroutine leaks. This issue is fixed in versions… | |
| Analizada | Alta (7.3) | 0.56% | 💥 PoC | Linuxfoundation Runc | 6/11/2025 | 17/6/2026 | runc is a CLI tool for spawning and running containers according to the OCI specification. In versions 1.2.7, 1.3.2 and 1.4.0-rc.2, an attacker can trick runc into misdirecting writes to /proc to other procfs files through the use of a racing container with shared mounts (we have also verified this attack is possible… | |
| Analizada | Alta (8.4) | 0.56% | — | Linuxfoundation Runc | 6/11/2025 | 17/6/2026 | runc is a CLI tool for spawning and running containers according to the OCI specification. Versions 1.0.0-rc3 through 1.2.7, 1.3.0-rc.1 through 1.3.2, and 1.4.0-rc.1 through 1.4.0-rc.2, due to insufficient checks when bind-mounting `/dev/pts/$n` to `/dev/console` inside the container, an attacker can trick runc into… | |
| Analizada | Alta (7.3) | 0.84% | 💥 PoC | Linuxfoundation Runc | 6/11/2025 | 17/6/2026 | runc is a CLI tool for spawning and running containers according to the OCI specification. In versions 1.2.7 and below, 1.3.0-rc.1 through 1.3.1, 1.4.0-rc.1 and 1.4.0-rc.2 files, runc would not perform sufficient verification that the source of the bind-mount (i.e., the container's /dev/null) was actually a real… | |
| Analizada | Alta (7.8) | 0.16% | — | Linuxfoundation Containerd | 6/11/2025 | 17/6/2026 | containerd is an open-source container runtime. Versions 0.1.0 through 1.7.28, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 through 2.1.4 and 2.2.0-beta.0 through 2.2.0-rc.1 have an overly broad default permission vulnerability. Directory paths `/var/lib/containerd`, `/run/containerd/io.containerd.grpc.v1.cri` and… |