Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
–

2087 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisCrítica (9.3)0.45%—Jaspersoft Jasperreports ServerAI10/8/202631/8/2026
Improper restriction of XML external entity reference vulnerability (unauthenticated) in Jaspersoft JasperReports Server. This issue affects JasperReports Server: from 9.0.0 before HF-9 and from 10.0.0 before HF-10.
AnalizadaAlta (8.7)0.48%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 did not sufficiently restrict which HikariCP connection-pool properties could be set through the DataStore configuration API. A user holding the nx-datastores-update permission could set the connectionInitSql property to execute arbitrary SQL against the configured database on every new connection.…
AnalizadaAlta (8.9)0.29%—Sonatype Nexus Repository Manager7/8/202623/9/2026
A user holding a permission to update privilege definitions could modify a wildcard privilege already assigned to their own role to grant broader permissions than they were authorized to hold, including full administrative access, without any additional authorization check or role reassignment.
AnalizadaAlta (8.7)0.25%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Sonatype Nexus Repository 3 did not immediately terminate a user's active login session or revoke their cached permissions when that user's account was deleted, deactivated, or had its password changed. A user whose account was already logged in at the time of one of these actions could continue using their existing…
AnalizadaMedia (6.9)0.34%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 contained an endpoint used to change the administrator account password during initial onboarding. This endpoint did not verify that onboarding was still in progress before allowing the password change, relying instead on the presence of a local onboarding artifact. As a result, an account holding…
AnalizadaMedia (5.3)0.23%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Sonatype Nexus Repository 3 did not properly filter internal configuration keys from user-supplied task properties when creating or updating a scheduled task through the administrative UI. An account holding permission to create at least one scheduled task type could supply a crafted property value that caused the…
AnalizadaMedia (5.1)0.23%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 contains a Server-Side Request Forgery (SSRF) vulnerability in the email configuration verification feature. A user holding the nexus:settings:update permission could submit arbitrary host and port values to the email test/verification endpoint, causing the server to attempt outbound network…
AnalizadaMedia (6.3)0.24%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 was found to be vulnerable to stored cross-site scripting (XSS). A user with the nexus:blobstores:create or nexus:blobstores:update permission could set a blob store name containing malicious script content, which would later execute in the browser of another user viewing system health-check status.…
AnalizadaMedia (5.3)0.23%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 did not fully sandbox JEXL expressions used in Content Selectors. An account holding the nexus:selectors:create permission could construct an expression that read Java object properties not intended to be exposed to the expression engine, disclosing internal JVM class metadata such as class and…
AnalizadaAlta (8.2)0.74%💥 ExploitSonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 CE/Pro versions 3.0.0 through 3.94.x contain an incorrect authorization vulnerability (CWE-863) in the repository-creation user interface. An individual user account holding a delegated repository-admin privilege scoped to a specific repository format could create a repository of a different,…
AnalizadaAlta (7.2)0.77%—Sonatype Nexus Repository Manager7/8/202622/9/2026
An account holding the nexus:settings:update permission in Nexus Repository 3 (or the equivalent nexus:settings permission in the legacy Nexus Repository 2) could submit arbitrary values as realm identifiers through an internal configuration API that did not validate them against the set of registered realms. Because…
AnalizadaAlta (8.6)0.34%—Sonatype Nexus Repository Manager7/8/202622/9/2026
Nexus Repository 3 contained a privilege escalation vulnerability in the REST privileges API. An authenticated user with permission to manage privileges could, under certain role configurations, escalate their own access to full administrator by exploiting a type-confusion flaw in the privilege update endpoint.
AnalizadaCrítica (9.6)0.86%—Microsoft Sharepoint Online7/8/20267/8/2026
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
Pendiente de análisisAlta (7.1)0.32%—Jenkins IVY ReportAI5/8/202631/8/2026
Jenkins Ivy Report Plugin 1.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks when processing Ivy report files.
AnalizadaAlta (8.7)0.90%—Syncfusion Standalone Report Designer23/7/202628/7/2026
Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its file upload functionality that allows authenticated attackers to traverse outside the intended directory by supplying a crafted filename. Attackers can exploit this path traversal weakness to execute…
AnalizadaCrítica (9.3)0.87%—Syncfusion Standalone Report Designer23/7/202628/7/2026
Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to…
AnalizadaCrítica (9.3)0.87%—Syncfusion Standalone Report Designer23/7/202628/7/2026
Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font processing feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to…
AnalizadaCrítica (9.3)0.87%—Syncfusion Standalone Report Designer23/7/202628/7/2026
Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG processing feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to…
AnalizadaMedia (5.4)0.58%—Microsoft Sharepoint Server16/7/202622/7/2026
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
AplazadaCrítica (9.8)0.50%—UreportAI16/7/202617/7/2026
A SQL injection vulnerability in the /ureport/datasource/previewData component of ureport v2.2.9 allows attackers to access sensitive database information via crafted SQL statements.
AnalizadaMedia (6.8)0.18%—Yamadashy Repomix15/7/202618/8/2026
Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, the Repomix MCP server attach_packed_output and read_repomix_output flow can register and read arbitrary local .json, .txt, .md, or .xml files without the file_system_read_file runSecretLint() safety check or Repomix packed-output…
AnalizadaAlta (7.5)0.70%—Yamadashy Repomix15/7/202618/8/2026
Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, src/core/git/gitCommand.ts execGitShallowClone passes the --remote-branch value directly to git fetch and git checkout without validation or --end-of-options, allowing --upload-pack or other Git option injection that bypasses…
AnalizadaAlta (8.8)0.94%—Microsoft Sharepoint Server14/7/202615/7/2026
Improper authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
AnalizadaMedia (5.5)0.60%—Microsoft 365 AppsMicrosoft 365Microsoft Office 2016Microsoft Office 2019+314/7/202616/7/2026
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
AnalizadaMedia (5.4)0.50%—Microsoft Sharepoint Server14/7/202615/7/2026
Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.