Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
2676 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.7) | 0.13% | — | Caliptra Core ROMAI | 4/8/2026 | 3/9/2026 | Time-of-check time-of-use (TOCTOU) vulnerability combined with missing input validation in Caliptra Core ROM (UpdateResetFlow::run()) in subsystem mode allows a compromised local attacker to silently bypass secure boot by supplying an AXI staging address that is not validated against the strap-configured… | |
| Pendiente de análisis | Alta (8.2) | 0.61% | — | Nasa Core Flight SystemAINasa Health AND SafetyAI | 30/7/2026 | 31/8/2026 | An incomplete fix for CVE-2026-15352 in the NASA core Flight System (cFS) Health and Safety (HS) application leaves a separate NULL pointer dereference reachable in versions through 7.0.1. An attacker who can trigger the affected command under specific conditions could cause the HS application to crash, resulting in a… | |
| Aplazada | Alta (8.8) | 0.50% | — | Charx JupicoreAI | 30/7/2026 | 30/7/2026 | The CHARX JupiCore service allows an unauthenticated remote attacker to reconfigure charging points. This can lead to disclosure of charging point UIDs, Denial-of-Service and files tampering. | |
| Aplazada | Crítica (10) | 0.77% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, image.download and related file-writing modules use caller-controlled output_dir instead of validate_path_with_env_config and its FLYTO_SANDBOX_DIR confinement, allowing attacker-controlled response bytes to be written to… | |
| Aplazada | Alta (8.5) | 0.45% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, HTTP-emitting modules including src/core/modules/third_party/developer/http/requests.py, core.api.http_get, core.api.http_post, graphql.query, graphql.mutation, monitor.http_check, communication.slack_send,… | |
| Aplazada | Alta (8.6) | 0.59% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, the workflow engine variable resolver expands ${env.VAR} for any host environment variable without an allowlist or capability policy check, allowing a workflow parameter to bypass the default capability policy denylist for… | |
| Aplazada | Crítica (9.3) | 0.51% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, the standalone flyto-verification service in src/core/verification_service.py exposes unauthenticated POST /run on 0.0.0.0:8344 and uses client-supplied callback_url for an outbound POST with X-Internal-Key: $FLYTO_RUNNER_SECRET… | |
| Aplazada | Alta (8.6) | 0.56% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, llm.chat reads provider keys such as OPENAI_API_KEY and ANTHROPIC_API_KEY from the environment and sends them in the Authorization: Bearer header to caller-controlled base_url, allowing an attacker to receive the operator's key… | |
| Aplazada | Alta (8.5) | 0.41% | — | Flyto2 CoreAI | 29/7/2026 | 30/7/2026 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, the HTTP modules http.get, http.request, and http.batch in src/core/modules/atomic/http/get.py, src/core/modules/atomic/http/request.py, and src/core/modules/atomic/http/batch.py validate only the initial URL, then follow… | |
| Aplazada | Media (5.3) | 0.44% | — | Mwdb CoreAI | 29/7/2026 | 30/7/2026 | MWDB Core versions >=2.0.0 and <2.19.0 contain a missing authorization vulnerability in the deprecated config and blob upload endpoints. These endpoints accept the undocumented POST method, which bypasses the capability checks applied to the documented PUT method. This allows any authenticated user without the… | |
| Aplazada | Alta (7) | 0.83% | — | Mwdb CoreAI | 29/7/2026 | 30/7/2026 | MWDB Core versions >=2.2.0 and <2.19.0 contain a missing authorization vulnerability in the Remote Instances proxy API. The proxy API does not verify authentication for incoming requests, allowing an unauthenticated remote attacker to send arbitrary requests to a remote MWDB instance using the identity and permissions… | |
| Pendiente de análisis | Alta (7.3) | 0.33% | — | IBM Observability With Instana AgentAIInstana CoreAI | 28/7/2026 | 30/7/2026 | IBM Observability with Instana (Agent) Build 1.0.303 through 1.0.320 IBM Instana Node.js tracer component @instana/core version 6.2.1 is vulnerable to prototype pollution through its configuration normalization API. | |
| Aplazada | Media (4.8) | 0.43% | — | Ericsson Packet Core ControllerAI | 27/7/2026 | 29/9/2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a directory traversal vulnerability in Configuration Management that could allow an attacker to change directory permissions, denying access to legitimate users. | |
| Aplazada | Media (5.1) | 0.16% | — | Ericsson Packet Core ControllerAI | 27/7/2026 | 29/9/2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a hardcoded credential vulnerability in the alarm system. An attacker with access to the cluster with knowledge of the hardcoded credential can read alarm and alert information. | |
| Aplazada | Media (4.8) | 0.23% | — | Ericsson Packet Core ControllerAI | 27/7/2026 | 29/9/2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain an Exposure of Sensitive System Information vulnerability in Configuration Management allowing an attacker to enumerate other users on the system. | |
| Aplazada | Media (6.8) | 0.23% | — | Ericsson Packet Core ControllerAI | 27/7/2026 | 29/9/2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages. | |
| Aplazada | Alta (8.5) | 0.28% | — | Ericsson Packet Core ControllerAI | 27/7/2026 | 29/9/2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain an Improper Neutralization of Special Elements vulnerability allowing an attacker to execute arbitrary code as root. | |
| Pendiente de análisis | Baja (3.1) | 0.26% | — | Pki-coreAI | 24/7/2026 | 25/7/2026 | A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's… | |
| Analizada | Media (4.6) | 0.17% | — | GNU Coreutils | 24/7/2026 | 26/8/2026 | GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte input when the -w (--check-chars) option is used. The find_field() function miscalculates the byte length of characters by repeatedly processing a fixed pointer instead of advancing through the input, resulting in an… | |
| Analizada | Baja (1.8) | 0.19% | — | GNU Coreutils | 24/7/2026 | 2/10/2026 | GNU coreutils unexpand is vulnerable to a heap-based buffer overflow due to an integer overflow during buffer allocation when processing large tab stop (-t) values. The multiplication used to calculate the allocation size can wrap around, resulting in an undersized buffer. When processing crafted input, subsequent… | |
| Pendiente de análisis | Alta (8.4) | 0.73% | — | Amazon Bedrock Agent CoreAI | 23/7/2026 | 24/7/2026 | Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SDK before 1.18.1 might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments. To mitigate this issue, users should upgrade to… | |
| Aplazada | Alta (7.5) | 0.43% | — | Tonda CoreAI | 23/7/2026 | 23/7/2026 | Contributor Local File Inclusion in Tonda Core <= 2.1.2 versions. | |
| Aplazada | Crítica (9.6) | 0.20% | — | Avada CoreAI | 23/7/2026 | 23/7/2026 | Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions. | |
| Aplazada | Media (6.8) | 0.14% | — | Selinux PolicycoreutilsAI | 23/7/2026 | 23/7/2026 | A Missing Authorization vulnerability in selinux policycoreutils seunshares allows a user that is running in unconfined context to kill e.g. root-owned processes running also in unconfined context This issue affects policycoreutils through 3.10. | |
| Aplazada | Media (5.8) | 0.10% | — | Selinux PolicycoreutilsAI | 23/7/2026 | 23/7/2026 | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10. |