Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3038▲ 464 respecto a la semana anterior
Críticas / altas1416▲ 190 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)387▲ 170 respecto a la semana anterior
3780 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.1) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Improper Authentication vulnerability in Apache APISIX. On a route using openid-connect plugin with remote introspection against an authorization server that serves multiple issuers, a token that introspects as active for one issuer may get accepted on a route restricted to another. This issue affects Apache APISIX:… | |
| Aplazada | Media (6.3) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Use of Non-Canonical URL paths for authorization decisions vulnerability in Apache APISIX. In some configurations where a permissive route overlaps a protected one, a crafted encoded path can reach an upstream endpoint that the matched route's policies were never meant to cover. A request that should have been… | |
| Aplazada | Alta (8.2) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Allocation of resources without limits or throttling vulnerability in batch-requests plugin in Apache APISIX. An unauthenticated caller can drive a gateway worker into OOM via a route where the batch-requests plugin is used and the batch endpoint is publicly exposed. This issue affects Apache APISIX: from 1.3.0… | |
| Aplazada | Baja (2.1) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Cross-Site request forgery (CSRF) vulnerability in feishu-auth and dingtalk-auth plugins in Apache APISIX. An attacker who can get a user to click a crafted link may cause that user's browser session on a protected route to be established under the attacker's identity instead of their own. Any work the user then… | |
| Aplazada | Media (6.4) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Improper verification of cryptographic signature vulnerability in Apache APISIX. Any unauthenticated attacker could impersonate any user on every route protected by the saml-auth plugin under default configuration. This issue affects Apache APISIX: from 3.17.0 through 3.18.0. Users are recommended to upgrade to… | |
| Aplazada | Alta (8.6) | — | — | Apache Camel QuarkusAI | 1/10/2026 | 1/10/2026 | Improper Restriction of XML External Entity Reference in the XSLT support extension (camel-quarkus-support-xalan) in Apache Camel Quarkus from 3.2.0 before 3.33.3 and from 3.34.0 before 3.40.0 on all platforms allows an attacker who supplies the XML document being transformed to read local files or issue requests to… | |
| Aplazada | Media (5.3) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Exposure of data element to wrong session vulnerability in Apache APISIX. This issue affects Apache APISIX: from 2.3.0 before 3.7.0. Under a supported authz-keycloak configuration, a request's authorization scope could persist into later requests on the same route, leading to unintended authorization expansion and… | |
| Aplazada | Media (5.7) | — | — | Apache ApisixAI | 1/10/2026 | 1/10/2026 | Insertion of sensitive information into log file vulnerability in Apache APISIX. This vulnerability can cause the unmasked header value to be written to the log sink under a certain response structure. This issue affects Apache APISIX: 3.17.0. Users are recommended to upgrade to version 3.18.0, which fixes the issue. | |
| Aplazada | Sin puntuar | 0.25% | — | Apache CamelAI | 30/9/2026 | 1/10/2026 | In camel-ai camel 0.2.91a1, v0.2.91a2 and v0.2.91a3, TerminalToolkit.shell_exec allows prompt-driven shell command execution without an approval boundary. | |
| Aplazada | Sin puntuar | 0.22% | — | Apache CamelAI | 30/9/2026 | 1/10/2026 | In camel-ai camel 0.2.91a1, v0.2.91a2 and v0.2.91a3, CodeExecutionToolkit can run model-produced Python code through SubprocessInterpreter without an approval boundary. | |
| Pendiente de análisis | Alta (7.5) | 0.31% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | An integer overflow in WSS4J's DER bounds check lets an oversized allocation pass validation. An unauthenticated attacker can send a SOAP message carrying an X.509 certificate whose SubjectKeyIdentifier extension declares a length of 0x7FFFFFFF; WSS4J decodes this while resolving the signature's key reference, before… | |
| En análisis | Media (4.8) | 0.29% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | Apache WSS4J remembers the Nonce of each UsernameToken it accepts, so a captured token cannot be reused. It stored the Nonce as raw base64 text, but authentication decodes that text and uses the bytes.The same bytes can be written as base64 in several ways. An attacker who captured an authenticated request could… | |
| Pendiente de análisis | Alta (7.5) | 0.38% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | In the WSS4J streaming (StAX) code, a signature reference using the WS-Security STR-Transform leaves an internal "inside signed content" flag permanently set. The WS-SecurityPolicy enforcer uses that flag to decide whether an element needs checking, so it stops evaluating SignedParts and SignedElements for the rest of… | |
| Pendiente de análisis | Crítica (9.1) | 0.23% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | WSS4J EncryptedHeader child confusion could promote an attacker-controlled plaintext element as the decrypted header, leading to incorrect confidentiality coverage and possible policy bypass. Users are recommended to upgrade to versions 4.0.2 or 3.0.6 or 2.4.4, which fix this issue. | |
| En análisis | Crítica (9.8) | 0.84% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | An authentication bypass in the DOM security processor in Apache WSS4J allows unauthenticated remote attackers to forge authenticated SOAP messages via a crafted unsigned SAML sender-vouches assertion containing an attacker-controlled key. Users are recommended to upgrade to versions 4.0.2 or 3.0.6 or 2.4.4, which fix… | |
| Pendiente de análisis | Crítica (9.1) | 0.28% | — | Apache CXFAI | 30/9/2026 | 30/9/2026 | In the StAX streaming WS-SecurityPolicy validator, certain relative or unsupported XPath expressions can be converted into paths that never match the actual XML element path. A remote SOAP peer may therefore send a required element without the expected signature or encryption. Users are recommended to upgrade to… | |
| En análisis | Alta (7.5) | 0.49% | — | Apache Wss4jAI | 30/9/2026 | 30/9/2026 | Apache WSS4J accepted attacker-controlled derived-key lengths and offsets without adequate bounds. This could permit cryptographically weak keys or excessive CPU and memory consumption when processing crafted WS-Security messages. The fixes enforce a minimum key length of 16 bytes, a maximum length of 512 bytes, and a… | |
| Pendiente de análisis | Crítica (9.1) | 0.55% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD is a Java library for client-side and server-side SSH. The optional sshd-ldap component provides support for integrating password and publickey authentication on the… | |
| Pendiente de análisis | Crítica (9.1) | 0.55% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 or 3.0.0-M1 to 3.0.0-M5 bypassed authentication checks. Apache MINA SSHD is a Java library for client-side and server-side SSH. The optional sshd-ldap component provides support for integrating password and… | |
| Pendiente de análisis | Media (6.5) | 0.38% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Server-side memory exhaustion in Apache MINA SSHD 1.0.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5, component sshd-sftp, in the SFTP v6 check-file-name/check-file-handle extension. Apache MINA SSHD is a Java library for client-side and server-side SSH. Using a very small "block size" (for instance 256, which is the minimum)… | |
| Pendiente de análisis | Alta (7.5) | 0.43% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd-sftp in Apache MINA SSHD versions 0.9.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD is a Java library for client-side and server-side SSH. The sshd-sftp component provides support for SFTP. The SFTP client implementation, when… | |
| Pendiente de análisis | Media (6.5) | 0.44% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Uncontrolled resource consumption in component ssd-scp in Apache MINA SSHD versions up to 2.19.0 or 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD is a Java library for client-side and server-side SSH. Component sshd-scp of Apache MINA SSHD provides a Java implementation of SCP. The SCP command protocol is line-oriented with… | |
| Pendiente de análisis | Media (6.5) | 0.27% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Improper input validation in sshd-git in Apache MINA SSHD, versions up to 2.19.0 and 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD is a Java library for client-side and server-side SSH. Component org.apache.sshd:sshd-git provides though class GitPgmCommandFactory a way to configure an Apache MINA SSHD server such that… | |
| Pendiente de análisis | Alta (8.1) | 0.47% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configured to require multi-authentication schemes, for instance two different public keys, not just one. In OpenSSH, this would be done by setting in sshd_config AuthenticationMethods "publickey,publickey". Apache MINA SSHD… | |
| Pendiente de análisis | Crítica (9.1) | 0.51% | — | Apache Mina SshdAI | 30/9/2026 | 30/9/2026 | Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5 for a certain (presumed rare) way to implement an SSH server. Apache MINA SSHD is a Java library for client- and server-side SSH. In the server part of the library, a mechanism to perform "asynchronous… |