Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
419 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 2.9% | — | Apple SafariApple Iphone OSApple TvosWebkitgtk+ | 20/5/2016 | 17/6/2026 | WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-1854, CVE-2016-1855, and CVE-2016-1856. | |
| Modificada | Alta (8.8) | 2.6% | — | Apple SafariApple Iphone OSApple TvosWebkitgtk+ | 20/5/2016 | 17/6/2026 | WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-1854, CVE-2016-1855, and CVE-2016-1857. | |
| Modificada | Alta (8.8) | 2.6% | — | Apple SafariApple Iphone OSApple TvosWebkitgtk+ | 20/5/2016 | 17/6/2026 | WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-1855, CVE-2016-1856, and CVE-2016-1857. | |
| Modificada | Alta (8.8) | 3.1% | — | Apple SafariApple Iphone OSApple TvosWebkitgtk+ | 24/3/2016 | 17/6/2026 | WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. | |
| Modificada | Alta (8.8) | 4.5% | — | Apple SafariApple Iphone OSApple TvosApple Watchos+1 | 1/2/2016 | 17/6/2026 | WebKit, as used in Apple iOS before 9.2.1, Safari before 9.0.3, and tvOS before 9.1.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-1724. | |
| Modificada | Alta (8.8) | 2.6% | — | Apple SafariApple Iphone OSApple TvosApple Watchos+1 | 1/2/2016 | 17/6/2026 | WebKit, as used in Apple iOS before 9.2.1, Safari before 9.0.3, and tvOS before 9.1.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-1727. | |
| Modificada | Media (4.3) | 2.1% | — | URS Wolfer KwebkitpartKde-runtimeKDE Kio-extrasOpensuse | 8/12/2014 | 17/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in KDE-Runtime 4.14.3 and earlier, kwebkitpart 1.3.4 and earlier, and kio-extras 5.1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via a crafted URI using the (1) zip, (2) trash, (3) tar, (4) thumbnail, (5) smtps, (6) smtp, (7) smb, (8)… | |
| Modificada | Media (6.8) | 2.2% | — | Apple SafariApple WebkitApple MAC OS XApple MAC OS X Server | 27/2/2014 | 17/6/2026 | WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1268 and CVE-2014-1269. | |
| Modificada | Media (6.8) | 2.2% | — | Apple SafariApple WebkitApple MAC OS XApple MAC OS X Server | 27/2/2014 | 17/6/2026 | WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1268 and CVE-2014-1270. | |
| Modificada | Media (6.8) | 1.9% | — | Apple SafariApple WebkitApple MAC OS XApple MAC OS X Server | 27/2/2014 | 17/6/2026 | WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1269 and CVE-2014-1270. | |
| Modificada | Media (6.8) | 2.2% | — | Apple ItunesApple Iphone OSApple TvosApple Safari+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.1% | — | Apple SafariApple WebkitApple ItunesApple Iphone OS+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.2% | — | Apple ItunesApple Iphone OSApple TvosApple Safari+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.2% | — | Apple SafariApple WebkitApple ItunesApple Iphone OS+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.1% | — | Apple SafariApple WebkitApple ItunesApple Iphone OS+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.1% | — | Apple ItunesApple Iphone OSApple TvosApple Safari+1 | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (6.8) | 2.1% | — | Apple SafariApple WebkitApple Itunes | 18/12/2013 | 16/6/2026 | WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1. | |
| Modificada | Media (4.3) | 2.3% | 💥 Exploit | Apple WebkitGoogle ChromeApple Safari | 15/11/2012 | 16/6/2026 | html/parser/XSSAuditor.cpp in WebCore in WebKit, as used in Google Chrome through 22 and Safari 5.1.7, does not consider all possible output contexts of reflected data, which makes it easier for remote attackers to bypass a cross-site scripting (XSS) protection mechanism via a crafted string, aka rdar problem 12019108. | |
| Modificada | Alta (7.6) | 2.4% | — | Apple ItunesApple Webkit | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.4% | — | Apple ItunesApple Webkit | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.4% | — | Apple ItunesApple Webkit | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.4% | — | Apple ItunesApple WebkitApple Safari | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.4% | — | Apple ItunesApple WebkitApple Safari | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.2% | — | Apple ItunesApple Webkit | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | |
| Modificada | Alta (7.6) | 2.5% | — | Apple ItunesApple Webkit | 8/3/2012 | 16/6/2026 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. |