Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2693▼ 76 respecto a la semana anterior
Críticas / altas1446▲ 304 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
3657 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Crítica (9.9) | — | — | Gitlab AI GatewayAI | 2/10/2026 | 2/10/2026 | GitLab has remediated a vulnerability in the GitLab AI Gateway component affecting all versions of the AI Gateway from 18.1.6 before 19.2.4, 19.3 before 19.3.2, and 19.4 before 19.4.1 that, under certain conditions, could have allowed an authenticated user with Duo Agent Platform access to escape the prompt template… | |
| Pendiente de análisis | Media (6.5) | 0.19% | — | HCL Digital ExperienceAI | 1/10/2026 | 1/10/2026 | HCL Digital Experience is affected by improper input sanitation. This can result in HTML injection which could be leveraged in content spoofing from a trusted domain. Apply HCL Digital Experience 9.5 CF238 or later to address this. | |
| Aplazada | Alta (8.8) | 0.35% | — | Trex Digital Trex MESAI | 30/9/2026 | 30/9/2026 | Missing authentication for critical function vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Authentication Bypass. This issue affects Trex MES: through 2026-09-29. | |
| Aplazada | Crítica (9.8) | 0.48% | — | Trex Digital Smart Manufacturing Systems Trex MESAI | 30/9/2026 | 30/9/2026 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Command Line Execution through SQL Injection. This issue affects Trex MES: through 2026-09-29. | |
| Aplazada | Baja (2.1) | 1.1% | — | 0xshariq Github-mcp-serverAI | 30/9/2026 | 2/10/2026 | A vulnerability was identified in 0xshariq github-mcp-server up to 52e764a7d66eac1726fce02ca7bb5a638571801a. This issue affects the function child_process.exec of the file src/github.ts of the component Git Remove MCP Tool. Such manipulation of the argument File leads to os command injection. The attack can be… | |
| En análisis | Crítica (9.2) | 0.27% | — | Simple-gitAISimple-git Argv-parserAI | 29/9/2026 | 30/9/2026 | simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. Prior to 2.0.1 of the argv-parser package, parseEnv omits VISUAL from GitEnvKeys, so prepareEnv drops the value before vulnerabilityCheck can classify it as allowUnsafeEditor. A… | |
| En análisis | Crítica (9.2) | 0.27% | — | Simple-gitAI | 29/9/2026 | 30/9/2026 | simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. From 3.15.0 until 4.0.1, the default blockUnsafeOperationsPlugin does not classify trailer.<token>.cmd as unsafe configuration. An application that passes attacker-controlled… | |
| En análisis | Alta (8.1) | 0.36% | — | Simple-gitAI | 29/9/2026 | 2/10/2026 | simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. Prior to 4.0.0, the default blockUnsafeOperationsPlugin compares parsed option names with literal dangerous option spellings while Git accepts unambiguous long-option… | |
| En análisis | Alta (8.1) | 0.46% | — | Simple-gitAI | 29/9/2026 | 30/9/2026 | simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. Prior to 4.0.0, the default blockUnsafeOperationsPlugin does not completely reject configuration includes supplied through customArgs to git.clone(). The missing include.path… | |
| En análisis | Media (4.3) | 0.26% | — | GitlabAI | 29/9/2026 | 29/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to read private child issue contents, including titles and descriptions, from projects they had no access to,… | |
| En análisis | Alta (8.7) | 0.36% | — | GitlabAI | 29/9/2026 | 29/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.11 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary JavaScript in the context of another user's browser session due to improper sanitization… | |
| En análisis | Baja (3.7) | 0.34% | — | GitlabAI | 29/9/2026 | 29/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.11 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an unauthenticated user to read CI/CD job trace contents containing sensitive variable values due to improper authorization… | |
| En análisis | Media (4.3) | 0.33% | — | GitlabAI | 29/9/2026 | 29/9/2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 17.9 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with guest-level permissions to read private security policy content they were not authorized to access due to… | |
| Pendiente de análisis | Alta (8.7) | 0.40% | — | GitpythonAI | 26/9/2026 | 30/9/2026 | GitPython before 3.1.62 does not validate the `path` field read from an untrusted .gitmodules file when updating submodules. While a prior fix (GHSA-hmq2-w58f-27jc) added Submodule._validated_name() to constrain the `name` field, and GitPython's own containment guard Submodule._to_relative_path() is applied in add()… | |
| Aplazada | Alta (7.3) | 0.15% | — | Gitoxidelabs Gix-fsAI | 25/9/2026 | 28/9/2026 | gitoxide gix-fs before 0.23.0 contains a path validation bypass vulnerability in the worktree checkout mechanism that allows attackers to escape the worktree directory via symlink manipulation. During forced checkout with overwrite_existing enabled, attackers can craft malicious repository trees where symlink entries… | |
| Analizada | Crítica (9.9) | 0.55% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on the GitLab server due to an integer overflow issue when compiling a specially… | |
| Analizada | Media (5.4) | 0.14% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with an MCP-scoped token to perform actions beyond the intended scope of that token due to improper… | |
| Analizada | Baja (3.1) | 0.14% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under a race condition, the MCP search tool's shared state handling could have caused search results to be returned under an incorrect user context. | |
| Analizada | Media (4.3) | 0.11% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to spoof merge request authorship and attribute content to arbitrary existing users on the target instance due… | |
| Analizada | Media (4.3) | 0.17% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with developer-role permissions to bypass admin-configured AI tool governance controls for workflows in… | |
| Analizada | Alta (7.7) | 0.21% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to access sensitive CI/CD variable values from debug-mode job traces through the Duo AI troubleshooting feature… | |
| Analizada | Crítica (9.9) | 0.36% | — | Gitlab | 23/9/2026 | 28/9/2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on the GitLab server due to a double free issue when parsing a specially crafted… | |
| Aplazada | Alta (7.6) | 0.29% | — | Easydigitaldownloads Easy Digital DownloadsAI | 23/9/2026 | 23/9/2026 | Shop manager SQL Injection in Easy Digital Downloads <= 3.7.0 versions. | |
| Analizada | Crítica (9.3) | 0.89% | — | Github Enterprise Server | 22/9/2026 | 2/10/2026 | A server-side request forgery (SSRF) vulnerability was identified in the notebook viewer of GitHub Enterprise Server. The notebook viewer validated the scheme and host of a user-supplied URL but did not validate the port, allowing requests to be directed to internal services listening on other ports of the same… | |
| Analizada | Alta (7.4) | 0.45% | — | Github Enterprise Server | 22/9/2026 | 2/10/2026 | A stored cross-site scripting (XSS) vulnerability was identified in GitHub Enterprise Server that allowed an authenticated attacker to inject arbitrary HTML attributes into rendered Markdown because the Markdown rendering pipeline rewrote quote characters in already-sanitized HTML without re-sanitizing the result.… |