Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▲ 10 respecto a la semana anterior
Críticas / altas1458▲ 322 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.3) | 0.13% | — | Lenovo Legion ZoneAILenovo APP StoreAI | 16/7/2026 | 16/7/2026 | A potential insecure permissions vulnerability was reported in Legion Zone and the Lenovo App Store Windows applications, distributed exclusively in the Chinese market, that when installed on a non‑system partition, could allow a local user to execute arbitrary code. | |
| Aplazada | Alta (7) | 0.17% | — | Lenovo APP StoreAI | 16/7/2026 | 16/7/2026 | A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code with elevated privileges. | |
| Aplazada | Alta (7) | 0.18% | — | Lenovo APP StoreAI | 16/7/2026 | 16/7/2026 | A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code. | |
| Aplazada | Alta (8.5) | 0.14% | — | Lenovo APP StoreAILenovo BrowserAI | 10/12/2025 | 25/9/2026 | A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a local authenticated user to execute code with elevated privileges under certain conditions. | |
| Analizada | Alta (7) | 0.12% | — | Lenovo APP Store | 12/11/2025 | 17/6/2026 | An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application. | |
| Aplazada | Alta (7.7) | 0.21% | — | Lenovo PC ManagerAILenovo APP StoreAILenovo BrowserAILenovo Legion ZoneAI | 12/11/2025 | 17/6/2026 | A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code. | |
| Aplazada | Alta (8.4) | 0.16% | — | Lenovo Protection DriverAILenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 17/7/2025 | 17/6/2026 | A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code. | |
| Analizada | Media (4.6) | 0.20% | — | Apple APP Store Connect | 10/7/2025 | 17/6/2026 | An authentication issue was addressed with improved state management. This issue is fixed in App Store Connect 3.0. An attacker with physical access to an unlocked device may be able to view sensitive user information. | |
| Aplazada | Media (4.7) | 0.13% | — | Lenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 14/1/2025 | 17/6/2026 | A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash. | |
| Aplazada | Media (4.7) | 0.12% | — | Lenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 14/1/2025 | 17/6/2026 | A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash. | |
| Analizada | Alta (7.8) | 0.17% | — | Lenovo APP Store | 11/10/2024 | 17/6/2026 | A DLL hijack vulnerability was reported in Lenovo App Store that could allow a local attacker to execute code with elevated privileges. | |
| Modificada | Media (5.5) | 0.16% | — | Lenovo APP Store | 19/1/2024 | 17/6/2026 | An incorrect permissions vulnerability was reported in the Lenovo App Store app that could allow an attacker to use system resources, resulting in a denial of service. | |
| Modificada | Alta (7.5) | 0.41% | — | Lenovo APP Store APP | 27/10/2023 | 17/6/2026 | An information disclosure vulnerability has been identified in the Lenovo App Store which may allow some applications to gain unauthorized access to sensitive user data used by other unrelated applications. | |
| Modificada | Media (5.5) | 0.20% | — | MI APP Store | 21/4/2022 | 17/6/2026 | A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation. | |
| Modificada | Media (6.1) | 0.56% | — | MI APP Store | 21/4/2022 | 17/6/2026 | An intent redirection vulnerability in the Mi App Store product. This vulnerability is caused by the Mi App Store does not verify the validity of the incoming data, can cause the app store to automatically download and install apps. |