Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2722▼ 6 respecto a la semana anterior
Críticas / altas1451▲ 315 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (1.1) | 0.13% | — | Myaedes APPAI | 16/3/2026 | 17/6/2026 | A vulnerability was detected in myAEDES App up to 1.18.4 on Android. Affected is an unknown function of the file aedes/me/beta/utils/EngageBayUtils.java of the component aedes.me.beta. Performing a manipulation of the argument AUTH_KEY results in information disclosure. The attack is only possible with local access.… | |
| Aplazada | Alta (7.5) | 0.72% | — | AedesAI | 3/12/2024 | 17/6/2026 | An issue in aedes v0.51.2 allows attackers to cause a Denial of Service(DoS) via a crafted request. NOTE: the Supplier indicates that exploitation cannot occur because of the protection mechanism in the validateTopic function in lib/utils.js. | |
| Modificada | Alta (7.5) | 2.2% | — | Aedes Project Aedes | 26/8/2020 | 17/6/2026 | An issue was discovered in MoscaJS Aedes 0.42.0. lib/write.js does not properly consider exceptions during the writing of an invalid packet to a stream. | |
| Modificada | Media (5.3) | 1.4% | — | Aedes Project Aedes | 8/8/2018 | 17/6/2026 | Improper authorization in aedes version <0.35.0 will publish a LWT in a channel when a client is not authorized. |