Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2528▼ 418 respecto a la semana anterior
Críticas / altas1311▲ 21 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
80 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.2) | 0.51% | — | Snowflake DriversAI | 8/9/2026 | 10/9/2026 | In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and attaches it to the login request without verifying that the configured host is a Snowflake endpoint. An attacker who can modify the connection configuration can cause the driver to mint a fresh attestation and… | |
| Aplazada | Alta (7.1) | 0.25% | — | Local Delivery Drivers FOR WoocommerceAI | 13/8/2026 | 14/8/2026 | Unauthenticated Cross Site Scripting (XSS) in Local Delivery Drivers for WooCommerce <= 3.0.0 versions. | |
| Aplazada | Crítica (9.4) | 0.16% | — | XEN Windows PV DriversAIXenconsoleAIXenifaceAIXenbusAI | 9/7/2026 | 29/9/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The Windows PV drivers expose various facilities to userspace. Several of these have no security descriptor, and are therefore fully accessible to unprivileged users. These are: 1. XenCons,… | |
| Aplazada | Crítica (9.4) | 0.16% | — | Windows PV DriversAIXenconsoleAIXenifaceAIXenbusAI | 9/7/2026 | 29/9/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The Windows PV drivers expose various facilities to userspace. Several of these have no security descriptor, and are therefore fully accessible to unprivileged users. These are: 1. XenCons,… | |
| Aplazada | Crítica (9.4) | 0.16% | — | XEN Windows PV DriversAIXenconsoleAIXenifaceAIXenbusAI | 9/7/2026 | 29/9/2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The Windows PV drivers expose various facilities to userspace. Several of these have no security descriptor, and are therefore fully accessible to unprivileged users. These are: | |
| Aplazada | Alta (8.5) | 0.18% | — | Ricoh Printer DriversAIKonicaminolta Printer DriversAI | 15/6/2026 | 24/7/2026 | Multiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If this vulnerability is exploited, an attacker who can log in to a computer running an affected printer driver could elevate privileges by using a specially crafted driver. | |
| Pendiente de análisis | Alta (8.4) | 0.21% | — | Dynabook Bluetooth Acpi DriversAI | 13/4/2026 | 17/6/2026 | Bluetooth ACPI Drivers provided by Dynabook Inc. contain a stack-based buffer overflow vulnerability. An attacker may execute arbitrary code by modifying certain registry values. | |
| Aplazada | Media (5.7) | 0.09% | — | Intel NPU DriversAI | 10/2/2026 | 17/6/2026 | Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via local access when… | |
| Aplazada | Media (5.1) | 0.12% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Improper control of dynamically-managed code resources for some Intel(R) NPU Drivers within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local… | |
| Aplazada | Media (6.8) | 0.13% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Protection mechanism failure for some Intel(R) NPU Drivers within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack… | |
| Aplazada | Baja (2) | 0.12% | — | Intel Graphics DriversAIIntel LTS KernelAI | 11/11/2025 | 17/6/2026 | Improper input validation in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially… | |
| Aplazada | Baja (2) | 0.13% | — | Intel NPU DriversAI | 11/11/2025 | 17/6/2026 | Sensitive information uncleared in resource before release for reuse for some Intel(R) NPU Drivers for Windows before version 32.0.100.4023 within Ring 3: User Applications may allow an information disclosure. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable… | |
| Aplazada | Alta (8.2) | 0.15% | — | Lexmark Printer DriversAI | 19/8/2025 | 17/6/2026 | Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL. | |
| Aplazada | Media (6.8) | 0.14% | — | Intel Graphics DriversAI | 12/8/2025 | 17/6/2026 | NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.9) | 0.17% | — | Intel Graphics DriversAI | 13/5/2025 | 17/6/2026 | Out-of-bounds read for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable information disclosure or denial of service via local access. | |
| Aplazada | Media (6.8) | 0.16% | — | Intel Graphics DriversAI | 13/5/2025 | 17/6/2026 | NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.8) | 0.16% | — | Intel Graphics DriversAI | 13/5/2025 | 17/6/2026 | Improper input validation for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.9) | 0.15% | — | Intel Graphics DriversAI | 13/5/2025 | 17/6/2026 | Untrusted pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.4) | 0.21% | — | Seiko Epson Printer DriversAI | 28/4/2025 | 17/6/2026 | Multiple SEIKO EPSON printer drivers for Windows OS are configured with an improper access permission settings when installed or used in a language other than English. If a user is directed to place a crafted DLL file in a location of an attacker's choosing, the attacker may execute arbitrary code with SYSTEM… | |
| Aplazada | Alta (7.8) | 0.35% | — | Synaptics Audio DriversAI | 11/3/2025 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability in CxUIUSvc64.exe and CxUIUSvc32.exe of Synaptics audio drivers allows a local authorized attacker to load a DLL in a privileged process. Out of an abundance of caution, this CVE ID is being assigned to better serve our customers and ensure all who… | |
| Aplazada | Media (6.8) | 0.20% | — | Intel Graphics DriversAI | 12/2/2025 | 17/6/2026 | Improper input validation in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (5.7) | 0.19% | — | Intel Ethernet Connection I219 Series DriversAI | 12/2/2025 | 17/6/2026 | Improper access control in some drivers for Intel(R) Ethernet Connection I219 Series before version 12.19.1.39 may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.9) | 0.17% | — | Intel Graphics DriversAI | 13/11/2024 | 17/6/2026 | Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (6.9) | 0.18% | — | Intel Graphics DriversAI | 13/11/2024 | 17/6/2026 | Improper buffer restrictions in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Media (6.9) | 0.18% | — | Intel Graphics DriversAI | 13/11/2024 | 17/6/2026 | Untrusted pointer dereference in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access. |