Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

1220 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+1756/5/202517/6/2026
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
AnalizadaAlta (7.8)0.11%—Qualcomm Snapdragon AR2 GEN 1 FirmwareQualcomm Snapdragon Auto 5G Modem-rf GEN 2 FirmwareQualcomm Snapdragon X24 LTE Modem FirmwareQualcomm Snapdragon X32 5G Modem-rf Firmware+1696/5/202517/6/2026
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
AnalizadaAlta (7.8)0.11%—Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Csra6620 FirmwareQualcomm Csra6640 Firmware+2086/5/202517/6/2026
Memory corruption while reading secure file.
AplazadaMedia (4.8)0.23%—QTAI11/4/202529/7/2026
There is a Heap-based Buffer Overflow vulnerability in QTextMarkdownImporter. This requires an incorrectly formatted markdown file to be passed to QTextMarkdownImporter to trigger the overflow. This issue affects Qt from 6.8.0 to 6.8.4. Versions up to 6.6.0 are known to be unaffected, and the fix is in 6.8.4 and later.
AnalizadaAlta (7.5)0.26%—Qualcomm Qcn9070 FirmwareQualcomm Qcn9072 FirmwareQualcomm Qcn9074 FirmwareQualcomm Qcn9100 Firmware+2657/4/202517/6/2026
Transient DOS may occur while parsing SSID in action frames.
AnalizadaAlta (7.8)0.11%—Qualcomm Fastconnect 7800 FirmwareQualcomm Qca1062 FirmwareQualcomm Qca1064 FirmwareQualcomm Qca2062 Firmware+457/4/202517/6/2026
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
AnalizadaAlta (7.8)0.11%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+457/4/202517/6/2026
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
AnalizadaAlta (7.5)0.26%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8064au FirmwareQualcomm Aqt1000 Firmware+2217/4/202517/6/2026
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
AnalizadaAlta (7.5)0.26%—Qualcomm Sa9000p FirmwareQualcomm Sd626 FirmwareQualcomm Sd660 FirmwareQualcomm Sd670 Firmware+1787/4/202517/6/2026
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
AnalizadaAlta (7.8)0.11%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+417/4/202517/6/2026
Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.
AnalizadaAlta (7.8)0.11%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+417/4/202517/6/2026
Memory corruption while processing escape code in API.
AnalizadaMedia (6.2)0.11%—Qualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+2387/4/202517/6/2026
Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.
AnalizadaMedia (5.5)0.11%—Qualcomm Csr8811 FirmwareQualcomm Csra6620 FirmwareQualcomm Csra6640 FirmwareQualcomm Fastconnect 6200 Firmware+3067/4/202517/6/2026
There may be information disclosure during memory re-allocation in TZ Secure OS.
AnalizadaAlta (7.5)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+1857/4/202517/6/2026
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
AplazadaBaja (2.3)0.34%—ProjeqtorAI3/4/202517/6/2026
A vulnerability was found in Projeqtor up to 12.0.2. It has been rated as critical. Affected by this issue is some unknown functionality of the file /tool/saveAttachment.php. The manipulation of the argument attachmentFiles leads to unrestricted upload. The attack may be launched remotely. The complexity of an attack…
AnalizadaMedia (5.3)0.36%—QT21/3/202517/6/2026
encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).
AnalizadaBaja (2.1)0.50%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to modify or corrupt memory. We have already fixed the vulnerability in the following versions: QTS 5.2.3.3006 build…
AnalizadaBaja (2.1)0.39%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to modify memory. We have already fixed the vulnerability in the following versions: QTS 5.2.3.3006 build 20250108 and later…
AnalizadaBaja (2.1)0.50%—Qnap Quts HeroQnap QTS7/3/202517/6/2026
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to modify or corrupt memory. We have already fixed the vulnerability in the following versions: QTS 5.2.3.3006 build…
AnalizadaMedia (5.1)0.45%—Qnap Qulog CenterQnap QTSQnap Quts Hero7/3/202517/6/2026
A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read application data. We have already fixed the vulnerability in the following versions: QuLog Center 1.7.0.829 ( 2024/10/01…
AnalizadaAlta (7.1)0.49%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to modify application data. We have already fixed the vulnerability in the following…
AnalizadaMedia (5.1)0.83%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QTS 5.2.3.3006 build…
AnalizadaMedia (5.1)0.41%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to modify application data. We have already fixed the vulnerability in the…
AnalizadaBaja (2.1)0.50%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to modify or corrupt memory. QTS 5.2.x/QuTS hero h5.2.x are not affected. We have already fixed the vulnerability in…
AnalizadaAlta (7.5)0.42%—Qnap QTSQnap Quts Hero7/3/202517/6/2026
An exposure of sensitive information vulnerability has been reported to affect product. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We have already fixed the vulnerability in the following version: QTS 5.2.0.2851 build 20240808 and later QuTS hero h5.2.0.2851…