Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3146▲ 578 respecto a la semana anterior
Críticas / altas1455▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)301▲ 287 respecto a la semana anterior
–

21.080 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.5)0.48%—Appointment Booking CalendarAI7/5/202617/6/2026
The Appointment Booking Calendar plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.6.10.6. This is due to a flawed authorization logic in the nonce_permissions_check() method combined with the public exposure of a site-wide reusable nonce. The plugin exposes a public_nonce…
AnalizadaMedia (6.1)0.26%—Frappe Erpnext5/5/202624/7/2026
ERPNext v15.103.1 y versiones anteriores es vulnerable a Cross Site Scripting (XSS) en el motor de plantillas de correo electrónico. Un atacante con permiso para crear o editar plantillas de correo electrónico puede inyectar código JavaScript malicioso que se ejecuta en el navegador de la víctima cuando se aplica la…
AnalizadaCrítica (9.8)0.60%—Frappe Erpnext5/5/202624/7/2026
ERPNext v15.103.1 y anteriores es vulnerable a la Inyección de Plantillas del Lado del Servidor (SSTI). Un atacante con permiso para crear o editar plantillas de correo electrónico puede inyectar expresiones de plantilla que se ejecutan en el servidor cuando la plantilla es renderizada.
AnalizadaAlta (8.7)0.61%—Frappe Erpnext5/5/202617/6/2026
Frappe Framework ERPNext 13.4.0 contains a sandbox escape vulnerability in RestrictedPython that allows authenticated users with System Manager role to execute arbitrary code by exploiting frame introspection. Attackers can create a server script via the /app/server-script endpoint and access the gi_frame attribute to…
AplazadaCrítica (9.8)0.33%—Tegsoft Online Support ApplicationAI4/5/20267/10/2026
Vulnerabilidad de neutralización inadecuada de la entrada durante la generación de páginas web ('cross-site scripting') en la Aplicación de Soporte en Línea de Tegsoft Management and Information Services Trade Limited Company permite XSS Reflejado. Este problema afecta a la Aplicación de Soporte en Línea: desde V3…
AplazadaBaja (2.9)0.57%💥 PoCCodewise Tornet Scooter Mobile APPAI3/5/202617/6/2026
A vulnerability has been found in CodeWise Tornet Scooter Mobile App 4.75 on iOS/Android. The impacted element is an unknown function of the file /TwoFactor. Such manipulation leads to improper restriction of excessive authentication attempts. The attack may be performed from remote. Attacks of this nature are highly…
AplazadaAlta (8.6)0.44%—Zyosoft School APPAI2/5/202617/6/2026
School App developed by Zyosoft has an Insecure Direct Object Reference vulnerability, allowing authenticated remote attackers to modify a specific parameter to read and modify other users' data.
AplazadaMedia (5.3)0.51%—Appcheap APP BuilderAI2/5/202617/6/2026
The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to and including 5.6.0. This is due to missing authorization validation in the `upload_avatar()` function, which accepts an attacker-controlled `user_id` parameter…
AnalizadaMedia (4.3)0.46%—Whatsapp1/5/202617/6/2026
Incomplete validation of AI rich response messages for Instagram Reels in WhatsApp for iOS v2.25.8.0 to v2.26.15.72 and WhatsApp for Android v2.25.8.0 to v2.26.7.10 could have allowed a user to trigger processing of media content from an arbitrary URL on another user’s device, including triggering OS-controlled custom…
AnalizadaMedia (6.5)0.53%—Whatsapp1/5/202617/6/2026
An attachment spoofing issue in WhatsApp for Windows prior to v2.3000.1032164386.258709 could have allowed maliciously formatted documents with embedded NUL bytes in the filename to be shown in the application as one type of file but run as an executable when opened. We have not seen evidence of exploitation in the…
AnalizadaMedia (6.5)0.32%—Apple Container30/4/202617/6/2026
Users who connect to malicious registries with hostnames matching the bypass patterns will have their registry credentials exposed in plaintext. This issue is fixed in container version 0.12.3.
AnalizadaAlta (7.1)0.14%—Dell/alienware Purchased Apps29/4/202617/6/2026
Dell/Alienware Purchased Apps, versions prior to 1.1.31.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Arbitrary File Write
AplazadaBaja (2.1)0.47%—Hbai-ltd Toonflow-appAI27/4/202617/6/2026
A vulnerability was identified in HBAI-Ltd Toonflow-app up to 1.1.1. This issue affects the function updateStoryboardUrl of the file replaceUrl.ts of the component Storyboard Export. Such manipulation of the argument url leads to path traversal. It is possible to launch the attack remotely. The exploit is publicly…
AplazadaBaja (1.3)0.35%—Hbai-ltd Toonflow-appAI27/4/202617/6/2026
A vulnerability was determined in HBAI-Ltd Toonflow-app up to 1.1.1. This vulnerability affects the function z.url of the file src/routes/setting/about/downloadApp.ts of the component downloadApp Endpoint. This manipulation of the argument url causes path traversal. It is possible to initiate the attack remotely. The…
AplazadaBaja (2.1)0.37%—Hbai-ltd Toonflow-appAI27/4/202617/6/2026
A vulnerability was found in HBAI-Ltd Toonflow-app up to 1.1.1. This affects the function fetch of the file src/routes/setting/vendorConfig/getCodeByLink.ts of the component getCodeByLink Endpoint. The manipulation of the argument Link results in server-side request forgery. The attack may be performed from remote.…
AplazadaMedia (5.3)0.76%—Hostbillapp HostbillAI24/4/202617/6/2026
An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Checkout Authentication Flow component
AplazadaBaja (3.8)0.57%—Hostbillapp HostbillAI24/4/202617/6/2026
An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Client Balance component
AplazadaMedia (4.9)0.86%—Hostbillapp HostbillAI24/4/202617/6/2026
Cross Site Scripting vulnerability in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to execute arbitrary code
AnalizadaBaja (1.3)0.26%—Frappe Press24/4/202617/6/2026
Press, a Frappe custom app that runs Frappe Cloud, manages infrastructure, subscription, marketplace, and software-as-a-service (SaaS). Redirect parameter on login page is vulnerable to reflected XSS. The patch in commit 16d1b6ca2559f858a1de77bcb03fd7f1b81671c6 fixes the issue by restricting redirects to internal URLs…
AnalizadaMedia (6.6)0.19%—Frappe Press24/4/202617/6/2026
Press, a Frappe custom app that runs Frappe Cloud, manages infrastructure, subscription, marketplace, and software-as-a-service (SaaS).`press.api.account.create_api_secret` is prone to CSRF-like exploits. This endpoint writes to database and it is also accessible via GET method. The patch in commit…
AnalizadaAlta (8)0.57%—Microsoft Power Apps23/4/202617/6/2026
Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute code over a network.
AnalizadaMedia (5.9)0.37%—IBM Websphere Application Server23/4/202617/6/2026
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.4 IBM WebSphere Application Server Liberty is vulnerable to identity spoofing under limited conditions when an application is deployed without authentication and authorization configured.
AnalizadaMedia (4.6)0.34%—Frappe22/4/202617/6/2026
An authenticated attacker can persist crafted values in multiple field types and trigger client-side script execution when another user opens the affected document in Desk. The vulnerable formatter implementations interpolate stored values into raw HTML attributes and element content without escaping This issue…
AnalizadaMedia (4.6)0.29%—Frappe22/4/202617/6/2026
An authenticated attacker can store a crafted tag value in _user_tags and trigger JavaScript execution when a victim opens the list/report view where tags are rendered. The vulnerable renderer interpolates tag content into HTML attributes and element content without escaping. This issue affects Frappe: 16.10.10.
ModificadaMedia (6.2)0.19%—Apple IpadosApple Iphone OS22/4/202617/6/2026
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 15.8.8 and iPadOS 15.8.8, iOS 16.7.16 and iPadOS 16.7.16, iOS 18.7.8 and iPadOS 18.7.8, iOS 26.4.2 and iPadOS 26.4.2, iPadOS 17.7.11. Notifications marked for deletion could be unexpectedly retained on the device.