Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3234▲ 673 respecto a la semana anterior
Críticas / altas1517▲ 124 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)235▲ 221 respecto a la semana anterior
25.772 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4.3) | 0.24% | — | Mattermost Server | 13/7/2026 | 14/7/2026 | Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which allows an authenticated remote cluster to modify or delete posts authored by local users or other remotes via crafted sync messages referencing arbitrary post IDs… | |
| Analizada | Media (5.4) | 0.29% | — | Mattermost Server | 13/7/2026 | 14/7/2026 | Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to restrict the group_constrained channel flag to public and private channels that support group synchronization, which allows an ordinary group or direct message member to remove all participants from the conversation via the channel… | |
| Aplazada | Baja (1.9) | 0.17% | — | Augmnt Augments-mcp-serverAI | 13/7/2026 | 13/7/2026 | A flaw has been found in augmnt augments-mcp-server 7.1.0. This issue affects the function scanProjectDeps of the file src/tools/v4/scan-project-deps.ts of the component scan_project_deps. Executing a manipulation of the argument packageJsonPath can lead to path traversal. The attack can only be executed locally. The… | |
| Aplazada | Baja (2.1) | 0.41% | — | Parseplatform Parse ServerAI | 11/7/2026 | 13/7/2026 | Parse Server is affected by a stored cross-site scripting (XSS) vulnerability in versions >= 9.0.0, < 9.10.0-alpha.2 and <= 8.6.83. When an uploaded file's extension is not recognized by the mime package, Parse Server preserves the client-supplied Content-Type. A malformed Content-Type that is not a valid type/subtype… | |
| Analizada | Media (5.3) | 0.41% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ does not perform authorization checks on passive queue.declare and exchange.declare AMQP 0-9-1 operations, allowing any authenticated user who can connect to a virtual host to enumerate queue and exchange names and read… | |
| Analizada | Alta (8.7) | 2.8% | 💥 Exploit | Broadcom Rabbitmq Server | 10/7/2026 | 29/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the obsolete GET /api/auth endpoint can disclose the OAuth 2 client secret on RabbitMQ installations configured with management.oauth_client_secret, exposing credentials to unauthenticated callers when the management plugin and… | |
| Analizada | Media (4.9) | 0.35% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, RabbitMQ AMQP 0-9-1 allows an existing consumer to keep receiving messages after OAuth token expiry or connection.update_secret refresh to reduced scopes because existing consumers are not canceled or reauthorized at delivery time after the channel user… | |
| Analizada | Alta (7) | 0.35% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.21, 4.1.11, and 4.2.6, RabbitMQ topic authorization can allow restricted topic writes and binds during metadata-store failures because topic-permission lookup errors from Khepri can collapse to undefined, which the internal backend treats as allow.… | |
| Analizada | Alta (7) | 0.38% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ allows foreign bindings to amq.rabbitmq.reply-to destinations because volatile direct-reply-to queues can be accepted at bind and route time but are missing from Khepri-backed deletion checks, leaving persistent route… | |
| Analizada | Alta (7.1) | 0.22% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 4.2.5, the RabbitMQ management UI renders the x-internal-purpose queue or exchange argument into an HTML title attribute without proper escaping on the Queues and Exchanges pages, allowing a user with permission to declare a queue or exchange to execute JavaScript… | |
| Modificada | Media (5.7) | 0.25% | — | Broadcom Rabbitmq Server | 10/7/2026 | 14/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the rabbitmq_federation_management plugin renders the consumer_tag field on the Federation Status page without HTML escaping, allowing a user who can configure a federation upstream or policy to execute JavaScript in the browser… | |
| Analizada | Alta (7.1) | 0.43% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the rabbitmq_management HTTP API accepts oversized valid JSON bodies on with_decode and direct_request paths because read_complete_body checks the accumulated size before the final chunk but not the final combined size. This… | |
| Analizada | Crítica (10) | 0.63% | — | Broadcom Rabbitmq Server | 10/7/2026 | 13/7/2026 | RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound… | |
| Analizada | Crítica (9.3) | 2.4% | 💥 Exploit | Suyogs Mcp-server-kubernetes | 10/7/2026 | 17/7/2026 | MCP Server Kubernetes before 3.9.0 contains an argument injection vulnerability in structured tools (kubectl_get, kubectl_describe, kubectl_delete) that allows attackers to bypass the assertNoDangerousFlags security check by supplying resourceType and name parameters with leading dashes. Attackers can inject the… | |
| Analizada | Alta (7.5) | 0.55% | — | Broadcom Rabbitmq Server | 10/7/2026 | 9/10/2026 | RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, the RabbitMQ stream listener does not enforce the configured stream frame-size limit while assembling frames during authentication and before Tune negotiation, allowing an unauthenticated remote client to declare oversized frame lengths and consume broker… | |
| Analizada | Crítica (10) | 0.50% | — | Broadcom Rabbitmq Server | 10/7/2026 | 9/10/2026 | RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, AMQP 0-9-1, AMQP 1.0, and Stream Protocol authentication can allow a loopback-restricted user such as guest to connect remotely when traffic is accepted through a trusted PROXY-protocol path and the backend listener is… | |
| Aplazada | Media (6.2) | 0.47% | 💥 PoC | Lucee Cfml ServerAI | 10/7/2026 | 14/7/2026 | Lucee CFML Server versions across the 5.3.x, 6.1.x, 6.2.x, and 7.0.x release lines contain a reflected cross-site scripting vulnerability in URL path parsing that allows unauthenticated remote attackers to execute arbitrary JavaScript in a victim's browser by embedding HTML or JavaScript payloads within the request… | |
| Aplazada | Media (5.3) | 0.60% | — | Arikusi Deepseek MCP ServerAI | 9/7/2026 | 10/7/2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.8.0, the self-hosted HTTP transport of `@arikusi/deepseek-mcp-server` exposes `POST /mcp` without any authentication: `createMcpExpressApp` is called without an `authProvider` and no middleware guards the route, so… | |
| Aplazada | Alta (8.6) | 0.37% | — | Deepseek MCP ServerAI | 9/7/2026 | 10/7/2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.7.0, the process-global `SessionStore` accepts caller-supplied `session_id` values without binding them to any authenticated principal or transport session. An attacker can enumerate active session IDs via… | |
| Analizada | Media (4.9) | 0.49% | — | Claris Filemaker Server | 9/7/2026 | 10/7/2026 | An authenticated administrator may be able to achieve arbitrary code execution on the host system by uploading a malicious file through the Open Source LLM setup feature in the Admin Console. This vulnerability has been addressed in FileMaker Server 26.0.1. | |
| Aplazada | Crítica (9.4) | 0.17% | — | Citrix XapiAICitrix XenserverAI | 9/7/2026 | 10/7/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] XAPI can configure different users with different roles, using Role Based Access Control. For more details, see: The pool-admin role is fully privileged. Notably, users with this role can… | |
| Aplazada | Crítica (9.4) | 0.17% | — | Citrix XenserverAI | 9/7/2026 | 10/7/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] XAPI can configure different users with different roles, using Role Based Access Control. For more details, see: The pool-admin role is fully privileged. Notably, users with this role can… | |
| Aplazada | Crítica (9.4) | 0.17% | — | Citrix XenserverAI | 9/7/2026 | 10/7/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] XAPI can configure different users with different roles, using Role Based Access Control. For more details, see: The pool-admin role is fully privileged. Notably, users with this role can… | |
| Aplazada | Crítica (9.4) | 0.17% | — | Citrix XenserverAI | 9/7/2026 | 9/7/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] XAPI can configure different users with different roles, using Role Based Access Control. For more details, see: The pool-admin role is fully privileged. Notably, users with this role can… | |
| Aplazada | Crítica (9.4) | 0.17% | — | Citrix XenserverAI | 9/7/2026 | 9/7/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] XAPI can configure different users with different roles, using Role Based Access Control. For more details, see: The pool-admin role is fully privileged. Notably, users with this role can… |