Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 82 respecto a la semana anterior
Críticas / altas1416▲ 189 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)100▼ 400 respecto a la semana anterior
2625 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | RAGFlow 0.24.0 contains improper access control in get_dataset (api/apps/evaluation_app). Depending on the exposed entry, an attacker can trigger attacker-controlled code or command execution | |
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | infiniflow ragflow 0.25.3 contains improper access control in resume (api/apps/connector_app.py). Depending on the exposed entry, an attacker can perform unauthorized cross-session or privilege-crossing operations. | |
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | Ragflow 0.24.0 and prior contains improper access control in update_metadata_setting (api/apps/kb_app.py). Depending on the exposed entry, an attacker can perform unauthorized cross-session or privilege-crossing operations. | |
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | infiniflow ragflow 0.24.0 is vulnerable to Incorrect Access Control via run_mindmap. A reachable path accepts a caller-selected object or tenant identifier and reaches a data-access operation without a visible owner, tenant, workspace, or membership binding on that object. | |
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | infiniflow ragflow 0.24.0 is vulnerable to Incorrect Access Control via trace_mindmap. An externally reachable path accepts a caller-selected object or tenant identifier and reaches a data-access operation without a visible owner, tenant, workspace, or membership binding on that object. | |
| Recibida | Sin puntuar | — | — | Infiniflow RagflowAI | 1/10/2026 | 1/10/2026 | infiniflow ragflow 0.24.0 is vulnerable to Incorrect Access Control via /v1/document/get/<doc_id>. | |
| Recibida | Sin puntuar | — | — | LangflowAI | 1/10/2026 | 1/10/2026 | langflow-ai langflow v1.8.4 is affected by: Directory Traversal. The impact is: Arbitrary file write outside the intended workspace or storage boundary.. The component is: src/backend/base/langflow/api/v1/knowledge_bases.py:knowledge_bases-create_knowledge_base-a-live-http-post-to-create-knowledge-base. The attack… | |
| Recibida | Sin puntuar | — | — | LangflowAI | 1/10/2026 | 1/10/2026 | langflow-ai langflow v1.9.3 is affected by: Code Injection. The impact is: execute arbitrary code (remote). The component is: src/backend/base/langflow/api/v1/validate.py:validate-post_validate_code-a-real-authenticated-http-post-to-api-v1. The attack vector is: Attack surface: HTTP or browser-backed service path. A… | |
| Pendiente de análisis | Media (5.3) | 0.50% | — | VaadinAIVaadin Spreadsheet FlowAIVaadin SpreadsheetAI | 30/9/2026 | 30/9/2026 | A missing authorization check in the Vaadin Spreadsheet component allows an authenticated user of an application that renders a spreadsheet to add or replace cell comments on a sheet that has protection enabled, including on cells that are locked. Writing a comment to a cell that does not exist yet also creates the… | |
| Pendiente de análisis | Media (6.3) | 0.64% | — | VaadinAIVaadin CoreAIVaadin Charts FlowAIVaadin ChartsAI+1 | 30/9/2026 | 30/9/2026 | A prototype pollution vulnerability exists in the deep merge helpers of Vaadin Charts and Vaadin Component Base. Merging an object the application does not control into a chart configuration or into a component's i18n property writes onto Object.prototype, making the injected properties visible to every object in the… | |
| Aplazada | Alta (8.8) | 0.73% | — | CartflowsAI | 30/9/2026 | 30/9/2026 | Contributor Remote Code Execution (RCE) in CartFlows <= 3.2.0 versions. | |
| Aplazada | Media (5.1) | 0.20% | — | Digiwin Easyflow .netAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has a Reflected Cross-site Scripting vulnerability. Unauthenticated remote attackers can execute arbitrary JavaScript codes in user's browser through phishing attacks. | |
| Aplazada | Crítica (9.3) | 0.43% | — | Digiwin Easyflow DOT NETAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain other users' plaintext passwords through a specific API. | |
| Aplazada | Alta (7.1) | 0.38% | — | Digiwin EasyflowAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has an Arbitrary File Read vulnerability. Authenticated remote attackers can exploit this vulnerability to download arbitrary system files. | |
| Aplazada | Alta (7.1) | 0.27% | — | Digiwin EasyflowAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has an SQL Injection vulnerability. Authenticated remote attackers can inject arbitrary SQL commands to read database contents. | |
| Aplazada | Crítica (9.3) | 0.51% | — | Digiwin EasyflowAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. Unauthenticated remote attackers can execute arbitrary code on the server by sending maliciously crafted serialized content. | |
| Aplazada | Alta (8.6) | 0.56% | — | Digiwin EasyflowAI | 30/9/2026 | 30/9/2026 | EasyFlow .NET developed by Digiwin has an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. | |
| Aplazada | Media (5.5) | 0.25% | — | Risesoft Y9 Workflow EngineAI | 29/9/2026 | 30/9/2026 | A vulnerability was detected in risesoft-y9 WorkFlow-Engine up to 9.6.10. Impacted is the function getByIdAndYear of the file CustomHistoricProcessServiceImpl.java of the component OAuth2 Resource Filter. Performing a manipulation of the argument year/processInstanceId results in sql injection. Remote exploitation of… | |
| Pendiente de análisis | Media (6.1) | 0.19% | — | Wikimedia Mediawiki Flow ExtensionAI | 29/9/2026 | 30/9/2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - Flow Extension allows Stored XSS. This issue affects Mediawiki - Flow Extension: from * before 1.46.1, 1.45.5, 1.43.10. | |
| Pendiente de análisis | Media (6.3) | 0.39% | — | Apache Airflow Teradata ProviderAI | 29/9/2026 | 29/9/2026 | The Apache Airflow Teradata provider's compute-cluster example Dag declared every one of its Dag Params as unconstrained free text and templated them straight into the compute-cluster operators, which interpolate those values into Teradata DDL. A user who is permitted to trigger that Dag - a lower-trust role than the… | |
| Pendiente de análisis | Media (6.3) | 0.22% | — | Apache Airflow Providers SnowflakeAI | 29/9/2026 | 29/9/2026 | Apache Airflow's Snowflake provider did not validate the connection's `account` and `region` fields before interpolating them into request URLs. The SQL API endpoint is built as `https://{account}.snowflakecomputing.com/api/v2/statements`, so an `account` value containing `/`, `?` or `#` demotes the intended domain to… | |
| Pendiente de análisis | Media (4.3) | 0.29% | — | Apache Airflow Providers GoogleAI | 29/9/2026 | 29/9/2026 | Apache Airflow's Google provider built Google Drive search expressions by interpolating file and folder names directly into single-quoted string literals, without escaping the quote character that delimits them. A name containing an apostrophe therefore terminated the literal early and appended clauses of the… | |
| Pendiente de análisis | Media (6.5) | 0.28% | — | Apache Airflow Providers TeradataAI | 29/9/2026 | 29/9/2026 | Apache Airflow's Teradata provider embedded cloud storage credentials directly into SQL statements. `S3ToTeradataOperator` and `AzureBlobStorageToTeradataOperator` interpolate the source bucket's credentials as plain string literals into the `CREATE MULTISET TABLE ... LOCATION` statement whenever the bucket is private… | |
| Aplazada | Alta (7.1) | 0.29% | — | Flowring AgentflowAI | 29/9/2026 | 30/9/2026 | Improper Limitation of a Pathname to a Restricted Directory(Path Traversal) in the /WebAgenda/download/uploadFile.jsp API endpoint of Flowring Agentflow 4.0 version before 2023/03/24 allows remote authenticated users to write files to arbitrary locations outside the intended upload directory via the path parameter. | |
| Aplazada | Crítica (9.3) | 0.27% | — | Flowring AgentflowAI | 29/9/2026 | 29/9/2026 | Unrestricted Upload of File with Dangerous Type in the /WebAgenda/download/uploadFile.jsp API endpoint of Flowring Agentflow 4.0 version before 2023/03/24 allows remote authenticated users to execute arbitrary system commands via a malicious file. |