Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
1700 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.8) | 0.18% | — | Samsung Magicinfo 9 ServerAI | 10/4/2026 | 17/6/2026 | Samsung MagicINFO 9 Server Incorrect Default Permissions Local Privilege Escalation Vulnerability This issue affects MagicINFO 9 Server: less than 21.1091.1. | |
| Aplazada | Media (6.4) | 0.24% | — | Magicconversation Magic Conversation FOR Gravity FormsAI | 8/4/2026 | 25/7/2026 | The Magic Conversation For Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'magic-conversation' shortcode in all versions up to, and including, 3.0.97 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated… | |
| Analizada | Media (4.7) | 0.13% | — | Imagemagick | 26/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, due to an incorrect return value on certain platforms a pointer is incremented past the end of a buffer that is on the stack and that could result in an out of bounds write. Versions 7.1.2-18… | |
| Analizada | Media (5.5) | 0.14% | — | Imagemagick | 26/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds write of a zero byte exists in the X11 `display` interaction path that could lead to a crash. Versions 7.1.2-18 and 6.9.13-43 patch the issue. | |
| Aplazada | Alta (7.5) | 0.39% | — | Metagauss RegistrationmagicAI | 25/3/2026 | 17/6/2026 | Missing Authorization vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RegistrationMagic: from n/a through <= 6.0.7.6. | |
| Aplazada | Alta (8.1) | 0.38% | — | Metagauss RegistrationmagicAI | 25/3/2026 | 17/6/2026 | Incorrect Privilege Assignment vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Privilege Escalation.This issue affects RegistrationMagic: from n/a through <= 6.0.7.1. | |
| Analizada | Alta (7.8) | 0.16% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Crítica (9.8) | 0.50% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | CWE-20 vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Media (6.1) | 0.24% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | CWE-79 vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Alta (7.5) | 0.44% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Alta (7.5) | 0.44% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Alta (7.5) | 0.27% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. | |
| Analizada | Crítica (9.8) | 0.41% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-10. | |
| Analizada | Alta (7.5) | 0.27% | — | Molotovcherry Android-imagemagick7 | 24/3/2026 | 17/6/2026 | NULL Pointer Dereference vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-10. | |
| Analizada | Media (6.9) | 0.18% | — | Magiciso Magic ISO Maker | 21/3/2026 | 17/6/2026 | Magic Iso Maker 5.5 build 281 contains a buffer overflow vulnerability in the Serial Code registration field that allows local attackers to crash the application by submitting an oversized input. Attackers can generate a file containing 5000 bytes of data, paste it into the Serial Code field during registration, and… | |
| Analizada | Alta (7.5) | 0.61% | — | Imagemagick | 18/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zero byte. Versions 7.1.2-17 and 6.9.13-42 fix the issue. | |
| Aplazada | Media (6.5) | 0.22% | — | Wpthemespace Magical Addons FOR ElementorAI | 13/3/2026 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Noor Alam Magical Addons For Elementor magical-addons-for-elementor allows Stored XSS.This issue affects Magical Addons For Elementor: from n/a through <= 1.4.1. | |
| Aplazada | Media (5.4) | 0.29% | — | Metagauss RegistrationmagicAI | 13/3/2026 | 17/6/2026 | Missing Authorization vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RegistrationMagic: from n/a through <= 6.0.7.6. | |
| Analizada | Media (6.7) | 0.14% | — | Imagemagick | 12/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, when a memory allocation fails in the sixel encoder it would be possible to write past the end of a buffer on the stack. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41. | |
| Analizada | Alta (8.2) | 0.51% | — | Magic-wormhole Project Magic Wormhole | 12/3/2026 | 17/6/2026 | Magic Wormhole makes it possible to get arbitrary-sized files and directories from one computer to another. From 0.21.0 to before 0.23.0, receiving a file (wormhole receive) from a malicious party could result in overwriting critical local files, including ~/.ssh/authorized_keys and .bashrc. This could be used to… | |
| Analizada | Media (5.5) | 0.13% | — | Imagemagick | 11/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, an overflow on 32-bit systems can cause a crash in the SFW decoder when processing extremely large images. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41. | |
| Analizada | Media (6.1) | 0.15% | — | Imagemagick | 10/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit unsigned integer overflow in the XWD (X Windows) encoder can cause an undersized heap buffer allocation. When writing a extremely large image an out of bounds heap write can… | |
| Analizada | Media (5.5) | 0.15% | — | Imagemagick | 10/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a crafted image could cause an out of bounds heap write inside the WaveletDenoiseImage method. When processing a crafted image with the -wavelet-denoise operation an out of bounds… | |
| Analizada | Media (4.4) | 0.16% | — | Imagemagick | 10/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, BilateralBlurImage contains a heap buffer over-read caused by an incorrect conversion. When processing a crafted image with the -bilateral-blur operation an out of bounds read can occur. This… | |
| Analizada | Alta (7.8) | 0.16% | — | Imagemagick | 10/3/2026 | 17/6/2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, a heap-based buffer overflow in the UHDR encoder can happen due to truncation of a value and it would allow an out of bounds write. This vulnerability is fixed in 7.1.2-16. |