Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2700▼ 69 respecto a la semana anterior
Críticas / altas1449▲ 307 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
–

99 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.7)0.73%—Image-sizeRedhat DiscoveryRedhat GatekeeperRedhat Trusted Artifact Signer+19/6/202624/7/2026
image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by supplying a specially crafted image buffer with a zero-valued size field in a recognized box-type. Attackers can trigger an infinite loop in the JXL or HEIF image parsers by…
AplazadaAlta (7.1)0.46%—Odine Solutions GatekeeperAI16/1/202617/6/2026
Odine Solutions GateKeeper 1.0 contains a SQL injection vulnerability in the trafficCycle API endpoint that allows remote attackers to inject malicious database queries. Attackers can exploit the vulnerability by sending crafted payloads to the /rass/api/v1/trafficCycle/ endpoint to manipulate PostgreSQL database…
ModificadaAlta (7.5)0.40%—F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Internet Gatekeeper+212/10/202217/6/2026
Multiple Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl.dll unpacker handler function crashes. This can lead to a possible scanning engine crash.
ModificadaMedia (5.5)0.47%—F-secure Cloud Protection FOR SalesforceF-secure Collaboration ProtectionF-secure Elements Endpoint ProtectionF-secure Internet Gatekeeper+123/9/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine
ModificadaAlta (7.5)0.47%—Withsecure Business SuiteWithsecure Elements Endpoint ProtectionF-secure Internet GatekeeperF-secure Linux Security6/9/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine.
ModificadaAlta (7.5)0.59%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+323/8/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl unpack function crashes. This can lead to a possible scanning engine crash. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.44%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+323/8/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.47%—F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+410/8/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.48%—F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+45/8/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.46%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+322/7/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning engine.
ModificadaAlta (7.5)0.45%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+322/7/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning engine.
ModificadaAlta (7.5)0.47%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+214/7/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaMedia (6.5)0.54%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+325/5/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaMedia (6.5)0.63%—F-secure AtlantF-secure Elements Endpoint ProtectionF-secure Internet GatekeeperF-secure Linux Security+11/3/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine.
ModificadaMedia (5.3)0.66%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Security Cloud+29/2/202217/6/2026
A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (5.5)0.46%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+222/12/202117/6/2026
A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (5.9)100%—Apache Log4jNetapp Cloud ManagerDebian LinuxSonicwall Email Security+11218/12/202125/8/2026
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service when a crafted string is interpreted. This issue was fixed in Log4j…
ModificadaMedia (5.5)0.41%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+126/11/202117/6/2026
A vulnerability affecting F-Secure antivirus engine was discovered whereby unpacking UPX file can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (5.3)1.1%—Openpolicyagent Gatekeeper17/11/202117/6/2026
Styra Open Policy Agent (OPA) Gatekeeper through 3.7.0 mishandles concurrency, sometimes resulting in incorrect access control. The data replication mechanism allows policies to access the Kubernetes cluster state. During data replication, OPA/Gatekeeper does not wait for the replication to finish before processing a…
ModificadaMedia (6.5)0.56%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements FOR Microsoft 365F-secure Internet Gatekeeper+38/10/202117/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVRDL unpacking module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the…
ModificadaMedia (6.5)0.56%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements FOR Microsoft 365F-secure Internet Gatekeeper+38/10/202117/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVPACK module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus…
ModificadaMedia (5.3)0.60%—F-secure AtlantF-secure Cloud ProtectionF-secure Internet GatekeeperF-secure Linux Security6/10/202117/6/2026
A vulnerability affecting the F-Secure Antivirus engine was discovered when the engine tries to unpack a zip archive (LZW decompression method), and this can crash the scanning engine. The vulnerability can be exploited remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus…
ModificadaAlta (8.8)0.94%—F-secure Internet Gatekeeper28/9/202117/6/2026
A vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. An authenticated user can modify settings through the web user interface in a way that could lead to an arbitrary code execution on the F-Secure Internet Gatekeeper server.
ModificadaAlta (7.5)0.61%—F-secure Internet Gatekeeper28/9/202117/6/2026
A denial-of-service (DoS) vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. The vulnerability occurs because of an attacker can trigger assertion via malformed HTTP packet to web interface. An unauthenticated attacker could exploit this vulnerability by sending a large username…
ModificadaAlta (7.5)2.4%—Oracle Advanced Networking OptionOracle Agile Engineering Data ManagementOracle Agile Product Lifecycle ManagementOracle Agile Product Lifecycle Management FOR Process+10721/7/202125/8/2026
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks…