Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 546 respecto a la semana anterior
Críticas / altas1325▼ 174 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 241 respecto a la semana anterior
1171 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.1) | 0.95% | — | Wpeverest Everest FormsAI | 20/4/2026 | 17/6/2026 | The Everest Forms plugin for WordPress is vulnerable to Arbitrary File Read and Deletion in all versions up to, and including, 3.4.4. This is due to the plugin trusting attacker-controlled old_files data from public form submissions as legitimate server-side upload state, and converting attacker-supplied URLs into… | |
| Aplazada | Alta (7.2) | 0.39% | — | Quick Interest SliderAI | 15/4/2026 | 17/6/2026 | The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'loan-amount' and 'loan-period' parameters in all versions up to, and including, 3.1.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary… | |
| Pendiente de análisis | Media (6.9) | 0.38% | — | Purestorage Flasharray PurityAI | 14/4/2026 | 17/6/2026 | Under certain administrative conditions, FlashArray Purity may apply snapshot retention policies earlier or later than configured. | |
| Pendiente de análisis | Alta (8.5) | 0.38% | — | Purestorage FlashbladeAI | 14/4/2026 | 17/6/2026 | A vulnerability exists in FlashBlade whereby sensitive information may be logged under specific conditions. | |
| Aplazada | Media (6.1) | 0.35% | — | Royal Wordpress Backup Restore PluginAI | 10/4/2026 | 17/6/2026 | The Royal WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpr_pending_template' parameter in all versions up to, and including, 1.0.16 due to insufficient input validation. This makes it possible for unauthenticated attackers to inject arbitrary web… | |
| Aplazada | Media (6.4) | 0.36% | — | Pinterest Site VerificationAIMeta TAG ManagerAI | 8/4/2026 | 25/7/2026 | The Pinterest Site Verification plugin using Meta Tag plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'post_var' parameter in versions up to, and including, 1.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with… | |
| Aplazada | Crítica (9.8) | 3.0% | 💥 Exploit | Wpeverest Everest FormsAI | 8/4/2026 | 25/7/2026 | The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.4.3 via deserialization of untrusted input from form entry metadata. This is due to the html-admin-page-entries-view.php file calling PHP's native unserialize() on stored entry meta values without… | |
| Analizada | Media (5.8) | 0.42% | — | Pavelzbornik Whisperx Rest API | 6/4/2026 | 17/6/2026 | The whisperX API is a tool for enhancing and analyzing audio content. From 0.3.1 to 0.5.0, FileService.download_from_url() in app/services/file_service.py calls requests.get(url) with zero URL validation. The file extension check occurs AFTER the HTTP request is already made, and can be bypassed by appending .mp3 to… | |
| Analizada | Alta (8.6) | 0.45% | 💥 PoC | Lexiforest Curl Cffi | 6/4/2026 | 17/6/2026 | curl_cffi is the a Python binding for curl. Prior to 0.15.0, curl_cffi does not restrict requests to internal IP ranges, and follows redirects automatically via the underlying libcurl. Because of this, an attacker-controlled URL can redirect requests to internal services such as cloud metadata endpoints. In addition,… | |
| Aplazada | Crítica (9.8) | 4.4% | 💥 Exploit | Everest Forms PROAI | 31/3/2026 | 17/6/2026 | The Everest Forms Pro plugin for WordPress is vulnerable to Remote Code Execution via PHP Code Injection in all versions up to, and including, 1.9.12. This is due to the Calculation Addon's process_filter() function concatenating user-submitted form field values into a PHP code string without proper escaping before… | |
| Aplazada | Media (5.4) | 0.30% | — | Restaurant CafeteriaAI | 28/3/2026 | 17/6/2026 | The Restaurant Cafeteria WordPress theme through 0.4.6 exposes insecure admin-ajax actions without nonce or capability checks, allowing any logged-in user, like subscriber, to perform privileged operations. An attacker can install and activate a from a user-supplied URL, leading to arbitrary PHP code execution, and… | |
| Analizada | Media (5.3) | 0.33% | — | Prestashop | 26/3/2026 | 17/6/2026 | PrestaShop is an open source e-commerce web application. Versions prior to 8.2.5 and 9.1.0 improperly use the validation framework. Versions 8.2.5 and 9.1.0 contain a fix. No known workarounds are available. | |
| Analizada | Media (5.4) | 0.40% | — | Prestashop | 26/3/2026 | 17/6/2026 | PrestaShop is an open source e-commerce web application. Versions prior to 8.2.5 and 9.1.0 are vulnerable to stored Cross-Site Scripting (stored XSS) vulnerabilities in the BO. An attacker who can inject data into the database, via limited back-office access or a previously existing vulnerability, can exploit… | |
| Analizada | Media (6.1) | 0.25% | — | Sujanshrestha Google Analytics GA4 | 26/3/2026 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Google Analytics GA4 allows Cross-Site Scripting (XSS).This issue affects Google Analytics GA4: from 0.0.0 before 1.1.14. | |
| Analizada | Media (5.2) | 0.20% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2026.02.0, even immediately after CSMS performs a RemoteStop (StopTransaction), the EVSE can return to `PrepareCharging` via the EV's BCB toggle, allowing session restart. This breaks the irreversibility of remote stop and can bypass operational/billing/safety… | |
| Analizada | Media (5.2) | 0.19% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2026.02.0, during RemoteStop processing, a delayed authorization response restores `authorized` back to true, defeating the `stop_transaction()` call condition on PowerOff events. As a result, the transaction can remain open even after a remote stop. Version… | |
| Analizada | Media (6.5) | 0.29% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to C++ UB (potential memory corruption). This is triggered by an MQTT `everest_external/nodered/{connector}/cmd/switch_three_phases_while_charging` message and results in `Charger::shared_context` / `internal_context`… | |
| Analizada | Media (6.5) | 0.31% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2026.02.0, when WithdrawAuthorization is processed before the TransactionStarted event, AuthHandler determines `transaction_active=false` and only calls `withdraw_authorization_callback`. This path ultimately calls `Charger::deauthorize()`, but no actual stop… | |
| Analizada | Media (5.5) | 0.33% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to version 2026.02.0, ISO15118_chargerImpl::handle_session_setup uses v2g_ctx after it has been freed when ISO15118 initialization fails (e.g., no IPv6 link-local address). The EVSE process can be crashed remotely by an attacker with MQTT access who issues a… | |
| Analizada | Media (5.5) | 0.34% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_update_energy_transfer_modes copies a variable-length list into a fixed-size array of length 6 without bounds checking. With schema validation disabled by default, oversized MQTT Cmd payloads can trigger… | |
| Analizada | Media (5.5) | 0.34% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_session_setup copies a variable-length payment_options list into a fixed-size array of length 2 without bounds checking. With schema validation disabled by default, oversized MQTT Cmd payloads can trigger… | |
| Analizada | Media (4.2) | 0.15% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race (C++ UB) triggered by an A 1-phase ↔ 3-phase switch request (`ac_switch_three_phases_while_charging`) during charging/waiting executes concurrently with the state machine loop. Version 2026.02.0 contains a patch. | |
| Analizada | Media (5.3) | 0.18% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to use-after-free. This is triggered by EV plug-in/unplug and RFID/RemoteStart/OCPP authorization events (or delayed authorization response). Version 2026.2.0 contains a patch. | |
| Analizada | Alta (7) | 0.22% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::map<std::queue>` corruption. The trigger is CSMS GetLog/UpdateFirmware request (network) with an EVSE fault event (physical). This results in TSAN reports concurrent access (data race) to `event_queue`.… | |
| Analizada | Media (5.9) | 0.37% | — | Linuxfoundation Everest | 26/3/2026 | 17/6/2026 | EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::queue`/`std::deque` corruption. The trigger is powermeter public key update and EV session/error events (while OCPP not started). This results in a TSAN data race report and an ASAN/UBSAN misaligned address… |