Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id_denuncia' and 'id_user' in '/backend/api/buscarDenunciasById.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_archivo' in '/backend/api/verArchivo.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'email' in '/backend/api/users/searchUserByEmail.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_user' in '/backend/api/buscarUsuarioId.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id_denuncia' and 'seguro' in '/backend/api/buscarUsuarioByDenuncia.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id_tp_denuncia' and 'id_sociedad' in '/backend/api/buscarTipoDenunciabyId.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_sociedad' in '/backend/api/buscarTipoDenuncia.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id_denuncia' and 'id_user' in '/backend/api/buscarTestigoByIdDenunciaUsuario.php'. | |
| Analizada | Alta (8.7) | 0.32% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'web' in '/backend/api/buscarSSOParametros.php'. | |
| Analizada | Alta (8.7) | 0.32% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'web' in '/backend/api/buscarConfiguracionParametros.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id' and ' 'id_sociedad' in '/api/buscarEmpresaById.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameters 'id_denuncia' and 'id_user' in '/backend/api/buscarDocumentosByIdDenunciaUsuario.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_denuncia' in '/backend/api/buscarDenunciaByPin.php'. | |
| Analizada | Alta (8.7) | 0.32% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'web' in '/backend/api/buscarConfiguracionParametros2.php'. | |
| Analizada | Alta (8.7) | 0.30% | — | Canaldenuncia.app | 4/11/2025 | 17/6/2026 | A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_denuncia' in '/backend/api/buscarComentariosByDenuncia.php'. |