Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3081▲ 625 respecto a la semana anterior
Críticas / altas1483▲ 317 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 0.35% | — | Purestorage Flasharray PurityAI | 9/6/2026 | 23/7/2026 | A flaw exists in FlashArray Purity where insufficient filtering of certain data paths could expose sensitive information to an authenticated user with low privileges. | |
| Pendiente de análisis | Alta (8.6) | 0.35% | — | Purestorage Flasharray PurityAI | 9/6/2026 | 23/7/2026 | A flaw exists in the FlashArray Purity management interface where an authenticated low-privileged user may, under specific conditions, access functionality beyond their assigned privileges. | |
| Pendiente de análisis | Media (6.9) | 0.38% | — | Purestorage Flasharray PurityAI | 14/4/2026 | 17/6/2026 | Under certain administrative conditions, FlashArray Purity may apply snapshot retention policies earlier or later than configured. | |
| Aplazada | Media (5.1) | 0.22% | — | Purestorage FlasharrayAI | 16/6/2025 | 17/6/2026 | A flaw exists in FlashArray whereby the Key Encryption Key (KEK) is logged during key rotation when RDL is configured. | |
| Aplazada | Alta (8.7) | 0.38% | — | Purestorage FlasharrayAI | 10/6/2025 | 17/6/2026 | Improper input validation performed during the authentication process of FlashArray could lead to a system Denial of Service. | |
| Aplazada | Crítica (9.8) | 0.42% | — | Purestorage FlasharrayAI | 8/10/2024 | 17/6/2026 | A flaw exists whereby a user can make a specific call to a FlashArray endpoint allowing privilege escalation. |