Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2564▼ 303 respecto a la semana anterior
Críticas / altas1351▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
1254 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.5) | 0.47% | — | Cleo HarmonyAI | 1/9/2026 | 1/9/2026 | A vulnerability was found in Cleo Harmony up to 5.8.1.10. The affected element is an unknown function of the file /api/connections of the component JWT Refresh Token Handler. Performing a manipulation of the argument Bearer results in improper privilege management. The attack is possible to be carried out remotely.… | |
| Aplazada | Baja (2.1) | 0.46% | — | Cleo HarmonyAI | 1/9/2026 | 1/9/2026 | A vulnerability has been found in Cleo Harmony up to 5.8.1.10. Impacted is the function LocalUserUtil.getNativeUserByAssertions of the component SAML Authentication. Such manipulation of the argument Email leads to improper authentication. The attack can be executed remotely. The exploit has been disclosed to the… | |
| Aplazada | Baja (3.3) | 0.10% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. | |
| Aplazada | Baja (3.3) | 0.13% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. | |
| Aplazada | Media (6.5) | 0.15% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution. | |
| Aplazada | Baja (3.3) | 0.13% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. | |
| Aplazada | Media (5.5) | 0.11% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak. | |
| Aplazada | Alta (8.8) | 0.73% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. | |
| Aplazada | Media (5.5) | 0.13% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak | |
| Aplazada | Alta (8.4) | 0.15% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered. | |
| Aplazada | Baja (3.3) | 0.12% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. | |
| Aplazada | Alta (8.1) | 0.43% | — | OpenharmonyAI | 19/5/2026 | 24/7/2026 | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. | |
| Analizada | Media (5.1) | 0.11% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | |
| Analizada | Crítica (10) | 0.36% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | |
| Analizada | Media (5.5) | 0.10% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Boundary-unlimited vulnerability in the application read module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (5.5) | 0.11% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Out-of-bounds write vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (4.7) | 0.09% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Race condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (4.7) | 0.09% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Alta (7.1) | 0.11% | — | Huawei HarmonyosHuawei Emui | 13/4/2026 | 17/6/2026 | UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | |
| Analizada | Media (4.1) | 0.09% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (5.5) | 0.09% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (5.7) | 0.10% | — | Huawei HarmonyosHuawei Emui | 13/4/2026 | 17/6/2026 | Out-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | |
| Analizada | Alta (7.1) | 0.10% | — | Huawei HarmonyosHuawei Emui | 13/4/2026 | 17/6/2026 | UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | |
| Analizada | Media (4.7) | 0.07% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | UAF vulnerability in the screen management module. Impact: Successful exploitation of this vulnerability may affect availability. | |
| Analizada | Media (5.6) | 0.10% | — | Huawei Harmonyos | 13/4/2026 | 17/6/2026 | Double free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability. |