Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2886▲ 263 respecto a la semana anterior
Críticas / altas1344▼ 85 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
14.300 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.8) | 1.1% | — | Offload AI Optimize With Cloudflare ImagesAI | 18/6/2026 | 18/6/2026 | The Offload, AI & Optimize with Cloudflare Images plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.10.2 via the 'account-id' parameter parameter. This is due to insufficient privilege enforcement on the cf_images_do_setup AJAX handler, which requires only the… | |
| Aplazada | Media (5.3) | 0.12% | — | Corsair SignalrgbAI | 17/6/2026 | 22/6/2026 | In SignalRGB versions prior to 1.3.7.0, the \\.\SignalIo device object is created without an explicit SDDL security descriptor and without FILE_DEVICE_SECURE_OPEN. This results in overly permissive default access control, allowing any authenticated local user to obtain a handle to the device and issue privileged… | |
| Aplazada | Crítica (9.1) | 0.52% | — | Network-aiAI | 17/6/2026 | 23/6/2026 | Network-AI is a TypeScript/Node.js multi-agent orchestrator. In versions 5.7.1 and earlier, the MCP SSE server allows unauthenticated cross-origin MCP tool invocation due to an empty default secret. This issue was partially addressed by CVE-2026-46701 in version 5.4.5 by closing the CORS flaw (with… | |
| Aplazada | Media (6.9) | 0.28% | — | Sourcecodester CET Automated Grading System With AI Predictive AnalyticsAI | 17/6/2026 | 18/6/2026 | A security vulnerability has been detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. Affected is an unknown function of the file /index.php of the component Student Self-Registration Endpoint. The manipulation leads to improper access controls. Remote exploitation of the attack… | |
| Analizada | Crítica (9.1) | 0.63% | — | Splunk AI Toolkit | 17/6/2026 | 22/6/2026 | In Splunk AI Toolkit versions below 5.7.4, a user who holds the "admin" Splunk role could execute arbitrary OS commands on the host running the Splunk Enterprise instance. The vulnerability is possible because of an unsafe shell execution pattern in the btool configuration helper, which constructs OS command strings… | |
| Analizada | Media (4.3) | 0.22% | — | Splunk AI Toolkit | 17/6/2026 | 22/6/2026 | In Splunk AI Toolkit versions below 5.7.4, a low-privileged user that does not hold the "admin" or "power" Splunk roles could cause the Splunk AI Toolkit to make outbound requests over HTTP to a server that an attacker controls, which could allow for data exfiltration. The vulnerability exists because of an insecure… | |
| Aplazada | Alta (7.1) | 0.69% | — | PytorchAIMmaitre314 PicklescanAI | 17/6/2026 | 17/6/2026 | picklescan before 1.0.3 contains a scanning bypass vulnerability in the scan_pytorch function that allows attackers to embed malicious magic numbers via dynamic eval using the __reduce__ trick. Attackers can craft malicious PyTorch payloads that evade picklescan detection while remaining executable, enabling arbitrary… | |
| Aplazada | Crítica (9.3) | 0.76% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 23/6/2026 | picklescan before 1.0.1 contains an unsafe deserialization vulnerability allowing unauthenticated users to execute arbitrary code by hiding eval calls nested under callable objects via getattr. Attackers can embed malicious code in pickle files that evades detection but executes when the pickle is loaded from… | |
| Aplazada | Crítica (9.3) | 0.67% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 17/6/2026 | picklescan before 1.0.4 contains an incomplete blocklist for the profile module that fails to block the module-level profile.run() function, allowing attackers to achieve arbitrary code execution via exec(). Attackers can craft malicious pickle files calling profile.run(statement) to execute arbitrary Python code… | |
| Aplazada | Alta (8.7) | 0.69% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 17/6/2026 | picklescan before 0.0.35 contains an unsafe pickle deserialization vulnerability allowing unauthenticated attackers to read arbitrary server files by chaining io.FileIO and urllib.request.urlopen. Attackers can bypass RCE-focused blocklists to exfiltrate sensitive data like /etc/passwd to external servers. | |
| Aplazada | Crítica (10) | 0.91% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 18/6/2026 | picklescan before 1.0.4 fails to block pkgutil.resolve_name, allowing attackers to bypass the entire blocklist by resolving any dangerous function through indirect REDUCE calls. Remote attackers can invoke any blocked function such as os.system, builtins.exec, or subprocess.call to achieve remote code execution. | |
| Analizada | Alta (7.8) | 0.14% | — | Dell Aiops Collector | 17/6/2026 | 23/6/2026 | Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged attacker with console access could potentially exploit this vulnerability to gain Filesystem access. This vulnerability only affects fresh installations of Collector versions earlier than 1.18.3.… | |
| Aplazada | Crítica (9.3) | 0.60% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 5/10/2026 | picklescan anterior a la 0.0.27 contiene un error de lógica de análisis en la función _list_globals al manejar opcodes STACK_GLOBAL, fallando en rastrear argumentos en el rango correcto y permitiendo que archivos pickle maliciosos eludan la detección. Los atacantes pueden elaborar archivos pickle con argumentos en la… | |
| Aplazada | Crítica (9.3) | 0.99% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 5/10/2026 | picklescan anterior a la versión 0.0.33 no logra bloquear el módulo ctypes, permitiendo a los atacantes lograr ejecución remota de código invocando llamadas al sistema directas y accediendo a memoria sin procesar. Los atacantes pueden crear archivos pickle maliciosos utilizando ctypes.WinDLL para cargar kernel32.dll y… | |
| Aplazada | Alta (8.7) | 0.38% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 5/10/2026 | PickleScan antes de la versión 0.0.33 no incluye la función pty.spawn en su lista de globales inseguras, lo que permite a los atacantes eludir las comprobaciones de seguridad. Actores maliciosos pueden elaborar cargas útiles de pickle utilizando pty.spawn para lograr ejecución de código arbitrario cuando los archivos… | |
| Aplazada | Crítica (9.3) | 0.82% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 5/10/2026 | picklescan anterior a 0.0.33 contiene una vulnerabilidad de escritura arbitraria de archivos que permite a los atacantes eludir la lista de bloqueo peligrosa utilizando distutils.file_util.write_file. Los atacantes pueden construir objetos pickle maliciosos para sobrescribir archivos críticos del sistema y lograr… | |
| Aplazada | Crítica (9.3) | 0.82% | — | Mmaitre314 PicklescanAI | 17/6/2026 | 5/10/2026 | picklescan anterior a la versión 0.0.33 contiene una lista de denegación incompleta que no logra bloquear las funciones pydoc.locate y operator.methodcaller, permitiendo a los atacantes eludir las comprobaciones de seguridad. Atacantes remotos pueden crear archivos pickle maliciosos utilizando estas funciones no… | |
| Aplazada | Alta (8.5) | 0.36% | — | Brainstormforce SuredashAI | 17/6/2026 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Brainstorm Force SureDash allows Blind SQL Injection. This issue affects SureDash: from n/a through 1.8.0. | |
| Aplazada | Alta (7.1) | 0.28% | — | Wedevs WemailAI | 17/6/2026 | 17/6/2026 | The weMail: Email Marketing, Email Automation, Newsletters, Subscribers & Email Optins for WooCommerce WordPress plugin before 2.1.3 does not properly escape a user-supplied parameter before reflecting it into an HTML attribute on a non-nonce-protected AJAX response, allowing unauthenticated attackers to deliver… | |
| Aplazada | Alta (7.2) | 0.24% | — | Mitsubishielectric Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Packaged AIR ConditionersAIMitsubishielectric RefrigeratorsAI+12 | 17/6/2026 | 17/6/2026 | Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Packaged Air Conditioners (for Japan and outside Japan); Refrigerators (for Japan); Heat Pump… | |
| Analizada | Crítica (9.1) | 0.88% | — | Apache-airflow-providers-sftp | 17/6/2026 | 17/6/2026 | A path traversal in the SFTP provider (`SFTPHook.retrieve_directory` / `SFTPOperator(operation=get)`) let a malicious or compromised remote SFTP server write files outside the configured local destination directory via crafted directory-entry names. No Airflow account is required — the attack surface is any deployment… | |
| Analizada | Media (6.8) | 0.42% | — | Pydantic AI | 17/6/2026 | 6/8/2026 | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.56.0 through 1.101.0, 2.0.0b1, and 2.0.0b2, the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an IPv6 transition form that the previous fix, CVE-2026-46678, did not decode,… | |
| Aplazada | Crítica (9.8) | 0.56% | — | AI LABAI | 17/6/2026 | 17/6/2026 | Unauthenticated PHP Object Injection in AI Lab < 5.4.2 versions. | |
| Aplazada | Alta (7.1) | 0.24% | — | Auto RepairAI | 17/6/2026 | 17/6/2026 | Unauthenticated Cross Site Scripting (XSS) in Auto Repair <= 22.6 versions. | |
| Aplazada | Alta (8.1) | 0.43% | — | AirsupplyAI | 17/6/2026 | 6/10/2026 | Inclusión local de ficheros no autenticada en versiones de AirSupply menor o igual a 2.0.0. |