Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2586▼ 299 respecto a la semana anterior
Críticas / altas1355▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)0.83%—Microsoft Authentication LibraryMicrosoft Azure Identity SDK11/6/202420/7/2026
Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability
ModificadaAlta (7.5)0.83%—Http Authentication Library Project Http Authentication Library30/12/201917/6/2026
The HTTP Authentication library before 2019-12-27 for Nim has weak password hashing because the default algorithm for libsodium's crypto_pwhash_str is not used.
ModificadaMedia (6.5)4.6%—Microsoft Authentication Library10/12/201917/6/2026
An information disclosure vulnerability in Android Apps using Microsoft Authentication Library (MSAL) 0.3.1-Alpha or later exists under specific conditions, aka 'Microsoft Authentication Library for Android Information Disclosure Vulnerability'.
ModificadaAlta (8.8)3.8%—Microsoft Active Directory Authentication LibraryMicrosoft Nuget14/8/201917/6/2026
An elevation of privilege vulnerability exists in Azure Active Directory Authentication Library On-Behalf-Of flow, in the way the library caches tokens. This vulnerability allows an authenticated attacker to perform actions in context of another user. The authenticated attacker can exploit this vulneraiblity by…
ModificadaAlta (7.5)36%—SAP SSO Authentication Library14/4/201717/6/2026
SAP AS JAVA SSO Authentication Library 2.0 through 3.0 allow remote attackers to cause a denial of service (memory consumption) via large values in the width and height parameters to otp_logon_ui_resources/qr, aka SAP Security Note 2389042.