Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2635▼ 213 respecto a la semana anterior
Críticas / altas1376▲ 145 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.3) | 0.52% | — | GohttpAI | 19/5/2026 | 24/7/2026 | An issue in gohttp commit 34ea51 allows attackers to execute a directory traversal via supplying a crafted request. | |
| Modificada | Alta (7.5) | 1.3% | — | Gohttp Project Gohttp | 20/5/2019 | 17/6/2026 | In GoHttp through 2017-07-25, there is a stack-based buffer over-read via a long User-Agent header. | |
| Modificada | Crítica (9.8) | 1.7% | — | Gohttp Project Gohttp | 17/5/2019 | 17/6/2026 | GoHTTP through 2017-07-25 has a sendHeader use-after-free. | |
| Modificada | Alta (7.5) | 1.3% | — | Gohttp Project Gohttp | 17/5/2019 | 17/6/2026 | GoHTTP through 2017-07-25 has a stack-based buffer over-read in the scan function (when called from getRequestType) via a long URL. | |
| Modificada | Crítica (9.8) | 1.6% | — | Gohttp Project Gohttp | 17/5/2019 | 17/6/2026 | GoHTTP through 2017-07-25 has a GetExtension heap-based buffer overflow via a long extension. |