Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2882▼ 181 respecto a la semana anterior
Críticas / altas1279▼ 60 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
–

6 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.5)0.41%—AbacusAI3/3/202517/6/2026
Abacus is a highly scalable and stateless counting API. A critical goroutine leak vulnerability has been identified in the Abacus server's Server-Sent Events (SSE) implementation. The issue occurs when clients disconnect from the /stream endpoint, as the server fails to properly clean up resources and terminate…
AplazadaMedia (6.5)0.56%—Abacus ERPAI17/2/202517/6/2026
Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022.105.15542 are affected by an authenticated arbitrary file read vulnerability.
AplazadaMedia (6.3)0.33%—AbacusAI27/6/202417/6/2026
DESIGNA ABACUS v.18 and before allows an attacker to bypass the payment process via a crafted QR code.
ModificadaCrítica (9.8)1.3%—Abacus-ext-cmdline Project Abacus-ext-cmdline21/12/202217/6/2026
All versions of package abacus-ext-cmdline are vulnerable to Command Injection via the execute function due to improper user-input sanitization.
ModificadaAlta (8.8)2.9%—Abacus ERP 2018Abacus ERP 2019Abacus ERP 2020Abacus ERP 2021+119/4/202217/6/2026
A vulnerability within the authentication process of Abacus ERP allows a remote attacker to bypass the second authentication factor. This issue affects: Abacus ERP v2022 versions prior to R1 of 2022-01-15; v2021 versions prior to R4 of 2022-01-15; v2020 versions prior to R6 of 2022-01-15; v2019 versions later than R5…
ModificadaMedia (6.1)0.72%—Abacus11/3/202017/6/2026
oauth/oauth2/v1/saml/ in Abacus OAuth Login 2019_01_r4_20191021_0000 before prior to R4 (20.11.2019 Hotfix) allows Reflected Cross Site Scripting (XSS) via an error message.