Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2531▼ 362 respecto a la semana anterior
Críticas / altas1338▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

25 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaBaja (1.9)1.1%—Bahmutov Find-cypress-specsAI23/7/202623/7/2026
A weakness has been identified in bahmutov find-cypress-specs up to 1.54.12. The impacted element is the function shell.exec of the file src/index.js of the component Branch Handler. This manipulation of the argument --branch causes os command injection. The attack is restricted to local execution. The exploit has…
AplazadaAlta (7.8)0.91%—Browserstack Cypress CLIAI15/6/202617/6/2026
The browserstack-cypress-cli is BrowserStack's CLI which allows users to run Cypress tests on BrowserStack. Versions prior to 1.36.4 are vulnerable to OS command injection via the cypress_config_file configuration parameter. In readCypressConfigUtil.js, the loadJsFile() function constructs a shell command by…
AplazadaAlta (8.6)1.3%—Cypress Solutions Ctm-200AI31/12/202517/6/2026
Cypress Solutions CTM-200 2.7.1 contains an authenticated command injection vulnerability in the firmware upgrade script that allows remote attackers to execute shell commands. Attackers can exploit the 'fw_url' parameter in the ctm-config-upgrade.sh script to inject and execute arbitrary commands with root privileges.
AplazadaCrítica (9.3)0.33%—Cypress Solutions Ctm-200AICypress Solutions Ctm-oneAI31/12/202517/6/2026
Cypress Solutions CTM-200/CTM-ONE 1.3.6 contains hard-coded credentials vulnerability in Linux distribution that exposes root access. Attackers can exploit the static 'Chameleon' password to gain remote root access via Telnet or SSH on affected devices.
AplazadaAlta (8.1)0.28%—Cypress Psoc4AI27/6/202517/6/2026
A state machine transition flaw in the Bluetooth Low Energy (BLE) stack of Cypress PSoC4 v3.66 allows attackers to bypass the pairing process and authentication via a crafted pairing_failed packet.
AplazadaAlta (8.8)0.56%—Cypress Cyw43455AIBroadcom Wireless Combo ChipsAI11/11/202417/6/2026
Certain Cypress (and Broadcom) Wireless Combo chips such as CYW43455, when a 2021-01-26 Bluetooth firmware update is not present, allow a Bluetooth outage via a "Spectra" attack.
AplazadaMedia (5.5)0.39%—Cypress Wireless Combo ChipsAIBroadcom Wireless Combo ChipsAI10/11/202417/6/2026
Certain Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow inferences about memory content via a "Spectra" attack.
AplazadaBaja (3.5)0.36%—Cypress Wireless ComboAIBroadcom Wireless ComboAI10/11/202417/6/2026
Certain Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow memory read access via a "Spectra" attack.
AplazadaMedia (5.5)0.39%—Cypress Wireless Combo ChipsAIBroadcom Wireless Combo ChipsAI10/11/202417/6/2026
Certain Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow memory access via a "Spectra" attack.
AplazadaMedia (6.5)0.26%—Cypress Bluetooth SDKAI1/11/202417/6/2026
An issue in the Bluetooth Low Energy implementation of Cypress Bluetooth SDK v3.66 allows attackers to cause a Denial of Service (DoS) via supplying a crafted LL_PAUSE_ENC_REQ packet.
ModificadaAlta (7.5)14%—Cypress Ctm-200 Firmware7/3/20249/7/2026
Cypress Solutions CTM-200 v2.7.1.5600 and below was discovered to contain an OS command injection vulnerability via the cli_text parameter.
ModificadaMedia (6.5)0.99%—Simonsmith Cypress Image Snapshot4/8/202317/6/2026
cypress-image-snapshot shows visual regressions in Cypress with jest-image-snapshot. Prior to version 8.0.2, it's possible for a user to pass a relative file path for the snapshot name and reach outside of the project directory into the machine running the test. This issue has been patched in version 8.0.2.
ModificadaAlta (8.8)0.78%—Infineon Cypress Bluetooth Mesh Software Development KIT1/2/202317/6/2026
Cypress : https://www.infineon.com/ Cypress Bluetooth Mesh SDK BSA0107_05.01.00-BX8-AMESH-08 is affected by: Buffer Overflow. The impact is: execute arbitrary code (remote). The component is: affected function is lower_transport_layer_on_seg. ¶¶ In Cypress Bluetooth Mesh SDK, there is an out-of-bound write…
ModificadaAlta (8.8)0.78%—Infineon Cypress Bluetooth Mesh Software Development KIT1/2/202317/6/2026
Cypress : https://www.infineon.com/ Cypress Bluetooth Mesh SDK BSA0107_05.01.00-BX8-AMESH-08 is affected by: Buffer Overflow. The impact is: execute arbitrary code (remote). The component is: affected function is pb_transport_handle_frag_. ¶¶ In Cypress Bluetooth Mesh SDK, there is an out-of-bound write vulnerability…
ModificadaMedia (6.5)0.58%—Cypress Wireless Internet Connectivity FOR Embedded Devices7/9/202117/6/2026
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the reception of LMP_max_slot with a greater ACL Length after completion of the LMP setup procedure, allowing attackers in radio range to trigger a denial of service (firmware crash) via a…
ModificadaMedia (6.5)0.58%—Cypress Wireless Internet Connectivity FOR Embedded Devices7/9/202117/6/2026
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle the reception of a malformed LMP timing accuracy response followed by multiple reconnections to the link slave, allowing attackers to exhaust device BT resources and eventually trigger a crash via…
ModificadaMedia (6.5)0.58%—Cypress Cyw920735q60evb-01 FirmwareCypress Cyw20735b1 Firmware7/9/202117/6/2026
The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and restart (crash) of the device by flooding it with LMP_AU_Rand packets after the paging procedure.
ModificadaMedia (5.3)0.51%—Cypress Wireless Internet Connectivity FOR Embedded Devices7/9/202117/6/2026
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the reception of LMP_max_slot with an invalid Baseband packet type (and LT_ADDRESS and LT_ADDR) after completion of the LMP setup procedure, allowing attackers in radio range to trigger a…
ModificadaAlta (7.8)0.34%—Cypress Cyw20735 Firmware16/6/202017/6/2026
On the Cypress CYW20735 evaluation board, any data that exceeds 384 bytes is copied and causes an overflow. This is because the maximum BLOC buffer size for sending and receiving data is set to 384 bytes, but everything else is still configured to the usual size of 1092 (which was used for everything in the previous…
ModificadaAlta (7.5)0.39%—Cypress Psoc 4.2 BLE9/6/202017/6/2026
The Bluetooth Low Energy implementation in Cypress PSoC Creator BLE 4.2 component versions before 3.64 generates a random number (Pairing Random) with significantly less entropy than the specified 128 bits during BLE pairing. This is the case for both authenticated and unauthenticated pairing with both LE Secure…
ModificadaAlta (8.8)1.2%—Cypress Wiced Studio13/4/202017/6/2026
An issue was discovered in Cypress (formerly Broadcom) WICED Studio 6.2 CYW20735B1 and CYW20819A1. As a Bluetooth Low Energy (BLE) packet is received, it is copied into a Heap (ThreadX Block) buffer. The buffer allocated in dhmulp_getRxBuffer is four bytes too small to hold the maximum of 255 bytes plus headers. It is…
ModificadaMedia (6.5)1.5%—Cypress Cyble-416045Cypress Cybl1157312/2/202017/6/2026
The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.
ModificadaMedia (6.5)0.88%—Cypress Psoc 4 BLE10/2/202017/6/2026
The Bluetooth Low Energy (BLE) stack implementation on Cypress PSoC 4 through 3.62 devices does not properly restrict the BLE Link Layer header and executes certain memory contents upon receiving a packet with a Link Layer ID (LLID) equal to zero. This allows attackers within radio range to cause deadlocks, cause…
ModificadaAlta (8.8)1.0%—Broadcom Bcm4335c0 FirmwareBroadcom Bcm43438a1 FirmwareCypress Cyw20702a1kwfbg FirmwareCypress Cyw20702a1kwfbgt Firmware+597/6/201917/6/2026
Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not properly restrict LMP commnds and executes certain memory contents upon receiving an LMP command, as demonstrated by executing an HCI command.
ModificadaMedia (5)1.0%—BitchxCypress10/11/200716/6/2026
The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally introduced backdoor that e-mails sensitive information (hostnames, usernames, and shell history) to a fixed address.