Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2624▼ 236 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
186 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Baja (2.1) | 0.26% | — | ExcalidrawAI | 24/9/2026 | 24/9/2026 | A vulnerability was detected in Excalidraw up to 0.18.1. The impacted element is an unknown function of the file packages/excalidraw/data/restore.ts of the component Imported File Handler. Performing a manipulation of the argument customData.generationData.html results in cross site scripting. The attack is possible… | |
| Aplazada | Media (5.4) | 0.17% | — | Libreoffice DrawAI | 22/9/2026 | 22/9/2026 | LibreOffice Draw can import PDF documents. A heap buffer overflow existed when importing a stream object. The length of the stream was taken from the object's own dictionary and was not checked against the number of bytes actually present, so copying the stream read and wrote past the end of the buffer holding it. In… | |
| Aplazada | Media (5.4) | 0.11% | — | Libreoffice DrawAI | 22/9/2026 | 22/9/2026 | LibreOffice Draw can import PDF documents. A heap buffer overflow existed when importing an encrypted document. The length of the decryption key was taken from the document's own encryption dictionary and was used to fill a fixed size key buffer without being checked against it, so a length larger than that buffer… | |
| Aplazada | Alta (7.7) | 0.35% | — | Draw.ioAI | 21/9/2026 | 24/9/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 30.3.8, src/main/java/com/mxgraph/online/Utils.java checks IPv6 Unique Local Addresses in Utils.sanitizeUrl() by comparing the text prefixes fc00:: and fd00::, but the JDK returns the expanded address form, so the fc00::/7 range,… | |
| Aplazada | Baja (3.7) | 0.33% | — | Draw.ioAI | 21/9/2026 | 24/9/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 30.2.7, src/main/java/com/mxgraph/online/ExportProxyServlet.java uses request.getPathInfo() to build a proxyPath and appends it directly to EXPORT_URL without rejecting dot segments or confirming that the normalized destination… | |
| Aplazada | Media (4.2) | 0.15% | — | Draw.ioAI | 21/9/2026 | 23/9/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 30.2.7, the OAuth callback handler in src/main/java/com/mxgraph/online/AbsAuth.java skips comparison of stateToken and cookieToken whenever IS_GAE is false, which affects self-hosted Docker and WAR deployments. An attacker can… | |
| Aplazada | Media (6.8) | 0.32% | — | Draw.ioAI | 21/9/2026 | 23/9/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 30.2.7, deployments with ENABLE_DRAWIO_PROXY=1 are vulnerable to server-side request forgery because src/main/java/com/mxgraph/online/Utils.java performs the private-address check in Utils.sanitizeUrl() using one DNS resolution,… | |
| Aplazada | Media (6.1) | 0.25% | — | Draw.ioAI | 21/9/2026 | 29/9/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 30.2.5, opening or importing a crafted .drawio file can execute attacker-controlled JavaScript in the draw.io origin when selected cells are processed by TextFormatPanel.addFont() in src/main/webapp/js/grapheditor/Format.js. An HTML… | |
| Aplazada | Media (5.1) | 0.26% | — | Next AI Draw.ioAI | 13/8/2026 | 9/9/2026 | Next AI Draw.io 0.2.1 through 0.4.16 contains a reflected cross-site scripting vulnerability in the mcp query parameter that is interpolated without escaping into HTML and JavaScript. Attackers can craft malicious URLs to execute arbitrary JavaScript in the localhost origin, enabling exfiltration of diagram sessions… | |
| Aplazada | Alta (7.7) | 0.43% | — | Next AI Draw.ioAI | 13/8/2026 | 9/9/2026 | Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST /api/parse-url endpoint due to hostname validation that only checks string patterns without DNS resolution. Unauthenticated attackers can supply hostnames that bypass string validation but resolve to internal addresses,… | |
| Aplazada | Alta (7.1) | 0.45% | — | RapidrawAI | 30/7/2026 | 9/9/2026 | RapidRAW before 1.6.0 does not validate the lutPath field in preset files before passing it to File::open() in lut_processing.rs. On Windows, a UNC path in lutPath causes an outbound SMB connection to an attacker-controlled host, leaking the victim's NTLMv2 credentials. The vulnerable code path is reachable through… | |
| Aplazada | Alta (8.1) | 0.72% | — | Dayuanjiang Next-ai-draw-ioAI | 21/7/2026 | 22/7/2026 | Cross Site Scripting vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to execute arbitrary code via the mcp parameter | |
| Aplazada | Alta (7.8) | 0.63% | — | Dayuanjiang Next-ai-draw-ioAI | 21/7/2026 | 22/7/2026 | Directory Traversal vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allowsa remote attacker to execute arbitrary code via the nex-ai-draw-io/mcp-server | |
| Aplazada | Alta (7.5) | 0.51% | — | Dayuanjiang Next-ai-draw-ioAI | 21/7/2026 | 22/7/2026 | An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the x-ai-provider component | |
| Aplazada | Crítica (9.8) | 0.62% | — | Dayuanjiang Next-ai-draw-ioAI | 21/7/2026 | 22/7/2026 | An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the X-Forwarded-For header value | |
| Aplazada | Alta (8.2) | 0.28% | — | Owncloud DrawioAIOwncloud ClassicAI | 6/7/2026 | 29/9/2026 | DrawIO for ownCloud is an application for using DrawIO with the file storage, synchronization, and sharing application ownCloud Classic. In DrawIO for ownCloud prior to version 1.0.2, which corresponds to ownCloud 10 prior to version 10.15.3, attackers with access to the DrawIO app can leverage improper neutralization… | |
| Analizada | Media (6.1) | 0.32% | — | Diagrams Drawio | 10/6/2026 | 17/6/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.12, a crafted .drawio file can execute arbitrary JavaScript in the editor's origin when the file is opened. The vulnerability is not in the label sanitizer (which works correctly on the rendering path) but in a feature-detection… | |
| Aplazada | Media (4.4) | 0.13% | — | HidrawAI | 26/5/2026 | 24/7/2026 | A heap-based buffer overflow vulnerability exists in XML parser functionality in the HiDraw. An authenticated malicious user with local access can exploit this vulnerability using a specially crafted XML file which may lead to memory corruption and potential arbitrary code execution. Successful exploitation could… | |
| Aplazada | Baja (3.4) | 0.30% | — | Draw.ioAI | 8/5/2026 | 17/6/2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.9, the draw.io client accepts a ?gitlab= URL parameter that overrides the GitLab server URL used during OAuth sign-in. A crafted link causes the user's click on draw.io's "Authorize in GitLab" dialog to open a popup on the… | |
| Analizada | Media (5.5) | 0.15% | — | Dayuanjiang Next AI Draw.io | 21/4/2026 | 17/6/2026 | Next AI Draw.io is a next.js web application that integrates AI capabilities with draw.io diagrams. Prior to 0.4.15, the embedded HTTP sidecar contains three POST handlers (/api/state, /api/restore, and /api/history-svg) that process incoming requests by accumulating the entire request body into a JavaScript string… | |
| Analizada | Alta (8.8) | 0.30% | — | Bosch Rexroth Indraworks | 18/2/2026 | 17/6/2026 | A vulnerability has been identified in Rexroth IndraWorks. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires user interaction, specifically opening a specially crafted file, which then causes the… | |
| Analizada | Alta (8.8) | 0.30% | — | Bosch Rexroth Indraworks | 18/2/2026 | 17/6/2026 | A vulnerability has been identified in Rexroth IndraWorks. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires user interaction, specifically opening a specially crafted file, which then causes the… | |
| Analizada | Alta (8.8) | 0.38% | — | Bosch Rexroth IndraworksBosch Rexroth Ua.testclient | 18/2/2026 | 17/6/2026 | A vulnerability has been identified in the UA.Testclient utility, which is included in Rexroth IndraWorks. All versions prior to 15V24 are affected. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires user… | |
| Analizada | Alta (8.8) | 0.38% | — | Bosch Rexroth Indraworks | 18/2/2026 | 17/6/2026 | A vulnerability has been identified in the OPC.Testclient utility, which is included in Rexroth IndraWorks. All versions prior to 15V24 are affected. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires… | |
| Analizada | Alta (7.8) | 0.20% | — | 3DS Solidworks Edrawings | 16/2/2026 | 17/6/2026 | An Out-Of-Bounds Write vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026 could allow an attacker to execute arbitrary code while opening a specially crafted EPRT file. |