Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2841▼ 157 respecto a la semana anterior
Críticas / altas1370▲ 51 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 258 respecto a la semana anterior
26 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (4.3) | 0.23% | — | Bplugins 3D Viewer Embed 3D ModelsAI | 15/4/2026 | 17/6/2026 | Missing Authorization vulnerability in bPlugins 3D viewer – Embed 3D Models 3d-viewer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects 3D viewer – Embed 3D Models: from n/a through <= 1.8.5. | |
| Analizada | Alta (7.8) | 0.19% | — | Adobe Substance 3D Viewer | 14/10/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.5) | 0.16% | — | Adobe Substance 3D Viewer | 14/10/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An attacker could leverage this vulnerability to crash the application or make it unavailable. Exploitation of this issue requires user interaction in that a victim… | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Substance 3D Viewer | 14/10/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.19% | — | Adobe Substance 3D Viewer | 14/10/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.21% | — | Adobe Substance 3D Viewer | 9/9/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.21% | — | Adobe Substance 3D Viewer | 9/9/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.26% | — | Adobe Substance 3D Viewer | 9/9/2025 | 30/9/2026 | Substance3D - Viewer versions 0.25.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.19% | — | Adobe Substance 3D Viewer | 12/8/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Substance 3D Viewer | 12/8/2025 | 17/6/2026 | Substance3D - Viewer versions 0.25 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.5) | 0.26% | — | Adobe Substance 3D Viewer | 8/7/2025 | 17/6/2026 | Substance3D - Viewer versions 0.22 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Analizada | Media (5.5) | 0.23% | — | Adobe Substance 3D Viewer | 8/7/2025 | 17/6/2026 | Substance3D - Viewer versions 0.22 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption in service. Exploitation of this issue requires user interaction in that a… | |
| Analizada | Alta (7.8) | 0.24% | — | Adobe Substance 3D Viewer | 8/7/2025 | 17/6/2026 | Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user, scope unchanged. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Modificada | Alta (7.8) | 0.68% | — | Microsoft 3D Viewer | 12/9/2023 | 17/6/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 0.68% | — | Microsoft 3D Viewer | 12/9/2023 | 17/6/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 0.68% | — | Microsoft 3D Viewer | 12/9/2023 | 17/6/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 6.8% | — | Microsoft 3D Viewer | 10/11/2021 | 19/8/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 4.3% | — | Microsoft 3D Viewer | 10/11/2021 | 19/8/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Media (5.5) | 2.8% | — | Microsoft 3D Viewer | 8/6/2021 | 17/6/2026 | 3D Viewer Information Disclosure Vulnerability | |
| Modificada | Alta (7.8) | 2.4% | — | Microsoft 3D Viewer | 8/6/2021 | 17/6/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 2.2% | — | Microsoft 3D Viewer | 8/6/2021 | 17/6/2026 | 3D Viewer Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 4.2% | — | Microsoft 3D Viewer | 16/10/2020 | 17/6/2026 | <p>A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.</p> <p>An attacker who successfully exploited the vulnerability would gain execution on a victim system.</p> <p>The security update addresses the vulnerability by correcting how the Base3D rendering engine… | |
| Modificada | Alta (7.8) | 3.9% | — | Microsoft 365 AppsMicrosoft 3D Viewer | 16/10/2020 | 17/6/2026 | <p>A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.</p> <p>An attacker who successfully exploited the vulnerability would gain execution on a victim system.</p> <p>The security update addresses the vulnerability by correcting how the Base3D rendering engine… | |
| Modificada | Alta (9.3) | 25% | — | Awingsoft Awakening Winds3d Viewer Plugin | 7/5/2010 | 16/6/2026 | The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneURL property value with a URL for a .exe file. | |
| Modificada | Alta (9.3) | 32% | — | Awingsoft Awakening Winds3d PlayerAwingsoft Awakening Winds3d Viewer | 7/1/2010 | 16/6/2026 | Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control in WindsPly.ocx 3.5.0.0 Beta, 3.0.0.5, and earlier in AwingSoft Awakening Web3D Player and Winds3D Viewer allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long SceneUrl property value, a… |