Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 224 respecto a la semana anterior
Críticas / altas1384▲ 157 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
111 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.8) | 0.16% | — | Avast Sandbox Minifilter DriverAI | 16/9/2026 | 17/9/2026 | Improper preservation of permissions in the Avast sandbox minifilter driver (aswSnx.sys) on Windows allows a local, low-privileged attacker executing inside the sandbox to escape file isolation and escalate to SYSTEM. When the sandbox virtualizes a file it copies the original security descriptor, but the driver opened… | |
| Pendiente de análisis | Alta (8.5) | 0.18% | — | Avast AntivirusAI | 19/6/2026 | 30/9/2026 | AVAST Antivirus 25.11 contains an unquoted service path vulnerability in the SecureLine service that allows local non-privileged users to execute code with elevated SYSTEM privileges. Attackers can exploit the unquoted binary path in the service configuration to inject malicious executables that execute with… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Stack overflow vulnerability in Avast Antivirus when scanning a malformed Office Open XML file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition builds… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed zip file containing XML may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Stack overflow vulnerability due to uncontrolled recursion in Avast Antivirus when scanning a malformed PDF file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file with .NET metadata may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Uncontrolled recursion vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition builds… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds write vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Pendiente de análisis | Media (5.3) | 0.21% | — | Avast Windows Anti RootkitAIAVG Windows Anti RootkitAI | 8/5/2026 | 17/6/2026 | The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xbb94. | |
| Pendiente de análisis | Alta (7.8) | 0.18% | — | Avast Windows Anti RootkitAIAVG Windows Anti RootkitAI | 8/5/2026 | 17/6/2026 | The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xc4a3. | |
| Aplazada | Alta (8.5) | 0.17% | — | Avast SecurelineAI | 1/2/2026 | 17/6/2026 | Avast SecureLine 5.5.522.0 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious code that would execute with LocalSystem account permissions during… | |
| Aplazada | Alta (7.5) | 0.11% | — | Avast AntivirusAI | 1/12/2025 | 25/9/2026 | NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the antivirus process to crash.This issue affects Antivirus: 16.0.0; Anitvirus: 3.0.3. | |
| Analizada | Crítica (9.8) | 0.46% | — | Avast Antivirus | 1/12/2025 | 25/9/2026 | Integer Overflow or Wraparound vulnerability in Avast Antivirus (25.1.981.6) on Windows allows Privilege Escalation.This issue affects Antivirus: from 25.1.981.6 before 25.3. | |
| Aplazada | Alta (7.8) | 0.18% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 1/12/2025 | 25/9/2026 | Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Mach-O file may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Analizada | Alta (7.8) | 0.25% | — | Avast Antivirus | 11/11/2025 | 17/6/2026 | Double fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3 on windows allows local attacker to escalate privelages via pool overflow. | |
| Aplazada | Media (4.4) | 0.12% | — | Avast Free AntivirusAI | 11/11/2025 | 17/6/2026 | Collision in MiniFilter driver in Avast Software Avast Free Antivirus before 25.9 on Windows allows a local attacker with administrative privileges to disable real-time protection and self-defense mechanisms. | |
| Aplazada | Alta (7.3) | 0.21% | — | Avast Business Antivirus FOR LinuxAI | 28/5/2025 | 17/6/2026 | Lack of file validation in do_update_vps in Avast Business Antivirus for Linux 4.5 on Linux allows local user to spoof or tamper with the update file via an unverified file write. | |
| Aplazada | Alta (7.8) | 0.22% | — | GEN Digital Avast Cleanup PremiumAI | 9/5/2025 | 17/6/2026 | Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Gen Digital Inc. Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via creating a symbolic link and leveraging a TOCTTOU… | |
| Aplazada | Alta (7.8) | 0.17% | — | Avast Cleanup PremiumAI | 9/5/2025 | 17/6/2026 | Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via creating a symbolic link and leveraging a TOCTTOU (time-of-check to… | |
| Analizada | Alta (7.8) | 0.39% | — | Avast Free Antivirus | 22/11/2024 | 17/6/2026 | Avast Free Antivirus AvastSvc Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Avast Free Antivirus. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit… | |
| Analizada | Alta (7.8) | 0.39% | — | Avast Free Antivirus | 22/11/2024 | 17/6/2026 | Avast Free Antivirus AvastSvc Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Avast Free Antivirus. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit… | |
| Analizada | Alta (7.8) | 0.34% | — | Avast Cleanup Premium | 22/11/2024 | 17/6/2026 | Avast Cleanup Premium Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Avast Cleanup Premium. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this… | |
| Analizada | Alta (7.8) | 0.34% | — | Avast Cleanup Premium | 22/11/2024 | 17/6/2026 | Avast Cleanup Premium Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Avast Cleanup Premium. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this… |