Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3246▲ 704 respecto a la semana anterior
Críticas / altas1521▲ 136 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)235▲ 221 respecto a la semana anterior
14.316 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4.3) | 0.30% | — | Redhat Openshift Container Platform | 28/4/2026 | 17/6/2026 | A flaw was found in the OpenShift Container Platform build system. A user with the `edit` ClusterRole can inject arbitrary environment variables, such as `LD_PRELOAD` or `http_proxy`, into `docker-build` containers through the `buildconfigs/instantiate` API. This incomplete fix for a previous vulnerability allows for… | |
| Analizada | Media (6.5) | 0.42% | — | Vmware Spring AI | 28/4/2026 | 17/6/2026 | In Spring AI, a malicious PDF file can be crafted that triggers the allocation of unreasonable amounts of memory when handled by `ForkPDFLayoutTextStripper`. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5) | |
| Analizada | Media (6.1) | 0.15% | — | Vmware Spring AI | 28/4/2026 | 17/6/2026 | In Spring AI, having access to a shared environment can expose the ONNX model used by the application. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5) | |
| Analizada | Alta (8.8) | 0.44% | — | Vmware Spring AI | 28/4/2026 | 17/6/2026 | SQL injection vulnerability in Spring AI's `CosmosDBVectorStore` allows attackers to execute arbitrary SQL queries via crafted document IDs. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5) | |
| Analizada | Media (5.9) | 0.37% | — | Vmware Spring AI | 28/4/2026 | 17/6/2026 | In Spring AI, an attacker can bypass conversation isolation and exfiltrate sensitive memory from other users’ chat histories, including secrets and credentials, by injecting filter logic through conversationId. Only applications that use VectorStoreChatMemoryAdvisor and pass user-supplied input as a conversationId are… | |
| Aplazada | Media (5.4) | 0.25% | — | Check LOG EmailAI | 28/4/2026 | 17/6/2026 | The Check & Log Email WordPress plugin before 2.0.13 does not properly handle email replacement, which could allow unauthenticated users to perform Stored XSS attacks when the email encoder setting is enabled | |
| Analizada | Alta (8.6) | 0.39% | — | Vmware Spring AI | 28/4/2026 | 17/6/2026 | In Spring AI, various FilterExpressionConverter implementations accept a filter expression object and translate them to specific vector store query languages. In several cases, keys and values are not properly escaped, leading to the ability to alter the query. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in… | |
| Aplazada | Media (5.5) | 2.1% | — | Egtai GMX VMD MCPAI | 28/4/2026 | 24/7/2026 | Una falla de seguridad ha sido descubierta en egtai gmx-vmd-mcp hasta la versión 0.1.0. Este problema afecta a la función launch_vmd_gui_tool del archivo mcp_server.py del componente Gestor de Lanzamiento de VMD. La manipulación del argumento structure_file/trajectory_file resulta en inyección de comandos. El ataque… | |
| Pendiente de análisis | Crítica (9.2) | 0.39% | — | Milesight Aiot CamerasAI | 28/4/2026 | 25/7/2026 | Versiones específicas de firmware de cámaras Milesight AIOT usan certificados SSL con claves privadas predeterminadas. | |
| Pendiente de análisis | Alta (8.6) | 0.29% | — | Milesight Aiot Camera FirmwareAI | 28/4/2026 | 20/7/2026 | Una vulnerabilidad de acceso a memoria fuera de límites existe en versiones específicas de firmware de las cámaras Milesight AIOT. | |
| Pendiente de análisis | Alta (7.7) | 0.35% | — | Milesight Aiot Camera FirmwareAI | 28/4/2026 | 25/7/2026 | Versiones específicas de firmware del firmware de cámaras Milesight AIOT contienen credenciales codificadas de forma rígida. | |
| Pendiente de análisis | Alta (7.3) | 0.28% | — | Milesight Aiot CamerasAI | 27/4/2026 | 25/7/2026 | Una vulnerabilidad de generación de clave débil existe en versiones específicas de firmware de cámaras Milesight AIOT, que permite eludir la autorización. | |
| Aplazada | Media (5.5) | 2.1% | — | Disler Aider-mcp-serverAI | 27/4/2026 | 17/6/2026 | A flaw has been found in disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc. Affected by this vulnerability is an unknown functionality of the file src/aider_mcp_server/server.py of the component aider_ai_code. This manipulation of the argument relative_editable_files causes command injection.… | |
| Analizada | Alta (8.2) | 0.26% | — | Smartertools Smartermail | 27/4/2026 | 17/6/2026 | SmarterTools SmarterMail builds prior to 9610 contain a cryptographic weakness in the file and email sharing endpoints that use DES-CBC encryption with keys and initialization vectors derived from System.Random seeded with insufficient entropy, reducing the seed space to approximately 19,000 possible values. An… | |
| Aplazada | Baja (2.1) | 0.47% | — | Hbai-ltd Toonflow-appAI | 27/4/2026 | 17/6/2026 | A vulnerability was identified in HBAI-Ltd Toonflow-app up to 1.1.1. This issue affects the function updateStoryboardUrl of the file replaceUrl.ts of the component Storyboard Export. Such manipulation of the argument url leads to path traversal. It is possible to launch the attack remotely. The exploit is publicly… | |
| Aplazada | Baja (1.3) | 0.35% | — | Hbai-ltd Toonflow-appAI | 27/4/2026 | 17/6/2026 | A vulnerability was determined in HBAI-Ltd Toonflow-app up to 1.1.1. This vulnerability affects the function z.url of the file src/routes/setting/about/downloadApp.ts of the component downloadApp Endpoint. This manipulation of the argument url causes path traversal. It is possible to initiate the attack remotely. The… | |
| Aplazada | Baja (2.1) | 0.37% | — | Hbai-ltd Toonflow-appAI | 27/4/2026 | 17/6/2026 | A vulnerability was found in HBAI-Ltd Toonflow-app up to 1.1.1. This affects the function fetch of the file src/routes/setting/vendorConfig/getCodeByLink.ts of the component getCodeByLink Endpoint. The manipulation of the argument Link results in server-side request forgery. The attack may be performed from remote.… | |
| Aplazada | Media (5.5) | 0.47% | — | Bidingcc BuildingaiAI | 27/4/2026 | 17/6/2026 | A vulnerability has been found in BidingCC BuildingAI up to 26.0.1. Impacted is the function uploadRemoteFile of the file packages/core/src/modules/upload/services/file-storage.service.ts of the component Remote Upload API. The manipulation of the argument url leads to server-side request forgery. It is possible to… | |
| Aplazada | Media (5.5) | 2.6% | — | Agentdeskai Browser-tools-mcpAI | 26/4/2026 | 2/10/2026 | A flaw has been found in AgentDeskAI browser-tools-mcp up to 1.2.0. This issue affects some unknown processing of the file browser-tools-server/browser-connector.ts. Executing a manipulation can lead to os command injection. The attack may be performed from remote. The exploit has been published and may be used.… | |
| Aplazada | Baja (2.1) | 0.35% | — | Ihatecreatingusernames2 Airahub2AI | 25/4/2026 | 17/6/2026 | A vulnerability was found in IhateCreatingUserNames2 AiraHub2 up to 3e4b77fd7d48ed811ffe5b8d222068c17c76495e. Affected is the function connect_stream_endpoint/sync_agents of the file AiraHub.py of the component Endpoint. Performing a manipulation results in server-side request forgery. The attack may be initiated… | |
| Aplazada | Media (5.5) | 0.47% | — | Vanna-ai VannaAI | 25/4/2026 | 17/6/2026 | A security vulnerability has been detected in vanna-ai vanna up to 2.0.2. The affected element is an unknown function of the component Legacy Flask API. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. The vendor… | |
| Analizada | Baja (3.1) | 0.24% | — | Langchain-openai | 24/4/2026 | 17/6/2026 | LangChain is a framework for building agents and LLM-powered applications. Prior to 1.1.14, langchain-openai's _url_to_size() helper (used by get_num_tokens_from_messages for image token counting) validated URLs for SSRF protection and then fetched them in a separate network operation with independent DNS resolution.… | |
| Modificada | Media (6.5) | 0.44% | — | Langchain-text-splitters | 24/4/2026 | 15/7/2026 | LangChain is a framework for building agents and LLM-powered applications. Prior to langchain-text-splitters 1.1.2, HTMLHeaderTextSplitter.split_text_from_url() validated the initial URL using validate_safe_url() but then performed the fetch with requests.get() with redirects enabled (the default). Because redirect… | |
| Modificada | Alta (8.2) | 0.37% | — | Katacontainers Confidential ContainersKatacontainers Kata Containers | 24/4/2026 | 24/8/2026 | Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. From v3.4.0 to v3.28.0, an oversight in the CopyFile policy (and perhaps the CopyFile handler) allows untrusted hosts to write to arbitrary locations inside the guest… | |
| Analizada | Media (4.3) | 0.57% | — | Apache Airflow | 24/4/2026 | 17/6/2026 | The asset dependency graph did not restrict nodes by the viewer's DAG read permissions: a user with read access to at least one DAG could browse the asset graph for any other asset in the deployment and learn the existence and names of DAGs and assets outside their authorized scope. Users are recommended to upgrade to… |