Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
1903 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.9) | 0.88% | — | PraisonaiAIPraisonaiagentsAI | 21/7/2026 | 21/7/2026 | PraisonAI is a multi-agent teams system. Prior to version 4.6.40 of PraisonAI, corresponding to version 1.6.40 of praisonaiagents, `execute_code()` in `praisonaiagents/tools/python_tools.py` (v1.6.37, subprocess sandbox mode) can be fully bypassed using `print.__self__` to retrieve the real Python `builtins` module,… | |
| Aplazada | Media (5.5) | 0.18% | — | PraisonaiAIPraisonaiagentsAI | 21/7/2026 | 22/7/2026 | PraisonAI is a multi-agent teams system. Prior to version 4.6.40 of PraisonAI, corresponding to version 1.6.40 of praisonaiagents, `spider_tools` URL validation can be bypassed using alternate loopback host encodings. The tool contains a URL validation function intended to block local or unsafe targets before fetching… | |
| Aplazada | Alta (8.2) | 0.36% | — | Agenticmail ClaudecodeAIAgenticmail CoreAICodexnotes CodexAIOpenclawAI | 20/7/2026 | 23/7/2026 | AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/claudecode prior to version 0.2.39, @agenticmail/codex prior to version 0.1.33, @agenticmail/core prior to version 0.9.43, and @agenticmail/openclaw prior to version 0.5.71, two inbound-mail handlers act on a privileged effect without… | |
| Aplazada | Alta (7.1) | 0.37% | — | AgenticmailAI | 20/7/2026 | 23/7/2026 | AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/api prior to version 0.9.64, a low-privileged authenticated AgenticMail agent can enumerate another agent's pending/claimed tasks by supplying the target agent name to `GET /api/agenticmail/tasks/pending?assignee=<name>`. The returned… | |
| Aplazada | Alta (8.2) | 0.25% | — | Agenticmail CoreAIAgenticmailAI | 20/7/2026 | 23/7/2026 | AgenticMail gives AI agents real email addresses and phone numbers. @agenticmail/api prior to version 0.9.32 and @agenticmail/core prior to version 0.9.10 had weakness related to validation and and binding of inactive-agent hour filtering; storage SQL identifier validation; metadata-backed ownership checks for raw… | |
| Aplazada | Media (6.3) | 0.17% | — | Ai-sdk Harness OpencodeAIHarness AgentAIOpencodeAI | 20/7/2026 | 23/7/2026 | The `@ai-sdk/harness-opencode` tool connects HarnessAgent to OpenCode through a sandboxed bridge. Prior to version 1.0.28, the tool relay authorizes requests from any process whose command line contains an allowed helper script path (`host-tool-mcp.mjs`). This allows untrusted code executing in the sandbox to invoke… | |
| Pendiente de análisis | Alta (7.3) | 0.18% | — | Qemu Guest AgentAILibvirtAI | 20/7/2026 | 31/8/2026 | A flaw was found in the QEMU Guest Agent (qga). A local unprivileged user can exploit a vulnerability in the guest-ssh-add-authorized-keys command handler by manipulating symbolic links. This can occur either through a deterministic directory-symlink bypass or a Time-of-Check to Time-of-Use (TOCTOU) file-symlink race.… | |
| Aplazada | Baja (2.1) | 0.46% | — | Zhayujie CowagentAI | 18/7/2026 | 20/7/2026 | A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file agent/tools/web_fetch/web_fetch.py. Executing a manipulation of the argument url can lead to server-side request forgery. The attack may be performed from remote. The exploit has been publicly… | |
| Analizada | Crítica (9.8) | 0.46% | — | IBM AgenticsIBM DB2 Genius HUB | 17/7/2026 | 11/8/2026 | IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM Agentics 1.0 could allow an attacker to execute arbitrary code or obtain sensitive information due to the use of dangerous functions without sufficient restrictions. | |
| Aplazada | Alta (8.8) | 0.87% | — | Agentic-flowAI | 17/7/2026 | 23/7/2026 | Agentic-Flow is an AI agent orchestration platform. Prior to 2.0.14, agentic-flow MCP server tools in src/mcp/standalone-stdio.ts, src/mcp/fastmcp/servers/claude-flow-sdk.ts, src/mcp/fastmcp/servers/stdio-full.ts, src/mcp/fastmcp/servers/http-streaming-updated.ts, src/mcp/fastmcp/servers/http-sse.ts,… | |
| Aplazada | Media (6.7) | 0.15% | — | Txone Networks SafeportagentAITxone Networks StellarprotectAI | 17/7/2026 | 27/7/2026 | Improper Access Control vulnerability in the Removable Media Validation function of TXOne Networks products allows a local attacker with administrator privileges to bypass the file lockdown mechanism, resulting in unauthorized file transfer to the victim device. The attacker needs to deploy unauthorized file on the… | |
| Pendiente de análisis | Media (5.7) | 0.38% | — | Amazon Bedrock Agentcore Python SDKAI | 16/7/2026 | 17/7/2026 | AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform. Unintended logging of sensitive user content in the OpenTelemetry instrumentation in AWS Bedrock AgentCore Python SDK versions 1.4.8 and 1.5.0 might allow a… | |
| Pendiente de análisis | Media (6.9) | 0.42% | — | Strands Agents ToolsAIElasticsearchAI | 15/7/2026 | 15/7/2026 | Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the elasticsearch_memory tool for agent memory storage. We identified CVE-2026-15746, a server-side request forgery (SSRF) issue in the… | |
| Analizada | Media (5.3) | 0.30% | — | F5 Nginx AgentF5 Nginx Instance Manager | 15/7/2026 | 6/8/2026 | The NGINX Agent config_dirs directive allows a low-privileged attacker to gain limited read and write access to files outside of the designated secure directory. The config_dirs directive required for this issue can also be configured through NGINX Instance Manager. A successful exploit may allow an attacker to cross… | |
| Aplazada | Alta (8.6) | 0.33% | — | PraisonaiagentsAI | 15/7/2026 | 15/7/2026 | PraisonAI (praisonaiagents) before 1.6.78 contains a remote code execution vulnerability in the plugin manager, which loads and executes arbitrary Python (.py) files from project-level and user-home .praisonai/plugins/ directories using importlib spec_from_file_location() and exec_module() without code signing,… | |
| Analizada | Media (5.4) | 0.39% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field. Scope is… | |
| Analizada | Crítica (9.1) | 1.2% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Improper Encoding or Escaping of Output vulnerability that could result in arbitrary code execution in the context of the current user. An attacker with high privileges could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user… | |
| Analizada | Crítica (9.3) | 1.0% | 💥 PoC | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the context of the current user, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in… | |
| Analizada | Baja (3.7) | 0.51% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Information Exposure vulnerability that could lead to a limited disclosure of sensitive information. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. | |
| Analizada | Media (6.1) | 0.46% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature bypass. An attacker could construct a malicious URL that redirects a victim to an attacker-controlled site. Exploitation of this issue requires user interaction in that a victim must click on a… | |
| Analizada | Media (4.8) | 0.41% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field. Scope is… | |
| Analizada | Media (5.9) | 0.71% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue… | |
| Analizada | Media (5.9) | 0.71% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue… | |
| Analizada | Media (6.8) | 0.88% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. A high-privileged attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue does not require user interaction.… | |
| Analizada | Alta (8.1) | 0.71% | — | Adobe CommerceAdobe Commerce B2BAdobe MagentoAdobe I/O Events | 14/7/2026 | 28/8/2026 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field,… |