Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2533▼ 405 respecto a la semana anterior
Críticas / altas1319▲ 38 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
126 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.1) | 0.41% | — | Horde IMPAI | 24/8/2026 | 24/9/2026 | Horde IMP's AppleDouble MIME viewer writes an attacker-controlled attachment name into an HTML status block without escaping it. In lib/Mime/Viewer/Appledouble.php, _IMPrender() obtains the name of the data part with IMP_Contents::getPartName(), which returns the MIME part's own name parameter as supplied by the… | |
| Aplazada | Alta (7.7) | 3.3% | — | Horde Virtual File SystemAI | 8/7/2026 | 14/7/2026 | Horde Virtual File System (VFS) API before 3.0.1 contains an OS command injection vulnerability in the Horde_Vfs_Smb driver where the _escapeShellCommand() method fails to sanitize command substitution sequences, allowing authenticated attackers to inject arbitrary shell commands through user-controlled filenames.… | |
| Aplazada | Alta (7.1) | 0.56% | — | Horde IMPAI | 1/7/2026 | 14/7/2026 | Horde IMP before 7.0.1 contains a path traversal vulnerability in lib/Compose.php that allows authenticated attackers to read arbitrary files from the server filesystem by embedding traversal sequences after a CKEditor path prefix in img src URLs. Attackers can bypass the stripos() prefix validation by appending… | |
| Analizada | Media (6.9) | 0.24% | — | Horde Groupware | 2/12/2025 | 17/6/2026 | Horde Groupware v5.2.22 has a user enumeration vulnerability that allows an unauthenticated attacker to determine the existence of valid accounts on the system. To exploit the vulnerability, an HTTP request must be sent to ‘/imp/attachment.php’ including the parameters ‘id’ and ‘u’. If the specified user exists, the… | |
| Aplazada | Alta (7.2) | 31% | — | Horde IMPAIHorde Application FrameworkAI | 21/3/2025 | 17/6/2026 | Horde IMP through 6.2.27, as used with Horde Application Framework through 5.2.23, allows XSS that leads to account takeover via a crafted text/html e-mail message with an onerror attribute (that may use base64-encoded JavaScript code), as exploited in the wild in March 2025. | |
| Modificada | Alta (8) | 71% | — | Horde GroupwareDebian Linux | 28/7/2022 | 17/6/2026 | Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects. | |
| Modificada | Media (5.4) | 1.1% | — | Horde Mime ViewerDebian Linux | 11/3/2022 | 17/6/2026 | lib/Horde/Mime/Viewer/Ooo.php in Horde Mime_Viewer before 2.2.4 allows XSS via an OpenOffice document, leading to account takeover in Horde Groupware Webmail Edition. This occurs after XSLT rendering. | |
| Modificada | Media (6.1) | 4.9% | — | Horde GroupwareDebian Linux | 14/2/2021 | 17/6/2026 | An XSS issue was discovered in Horde Groupware Webmail Edition through 5.2.22 (where the Horde_Text_Filter library before 2.3.7 is used). The attacker can send a plain text e-mail message, with JavaScript encoded as a link or email that is mishandled by preProcess in Text2html.php, because bespoke use of \x00\x00\x00… | |
| Modificada | Media (6.1) | 0.97% | — | Horde GollemHorde Groupware | 18/5/2020 | 17/6/2026 | Gollem before 3.0.13, as used in Horde Groupware Webmail Edition 5.2.22 and other products, is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the HTTP GET dir parameter in the browser functionality, affecting breadcrumb output. An attacker can obtain access to a victim's webmail account by making… | |
| Modificada | Media (6.1) | 0.88% | — | Horde Groupware | 18/5/2020 | 17/6/2026 | The image view functionality in Horde Groupware Webmail Edition before 5.2.22 is affected by a stored Cross-Site Scripting (XSS) vulnerability via an SVG image upload containing a JavaScript payload. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL. | |
| Modificada | Media (6.5) | 9.6% | — | Horde GroupwareHorde FormDebian Linux | 23/3/2020 | 17/6/2026 | This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within add.php. The issue results from the lack of proper validation of user-supplied data, which… | |
| Modificada | Media (6.3) | 6.8% | — | Horde GroupwareDebian Linux | 23/3/2020 | 17/6/2026 | This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within edit.php. When parsing the params[template] parameter, the process does not properly… | |
| Modificada | Crítica (9.8) | 72% | — | Horde GroupwareFedoraproject FedoraDebian Linux | 17/2/2020 | 17/6/2026 | Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution. | |
| Modificada | Media (6.5) | 2.1% | — | Horde GroupwareDebian Linux | 5/11/2019 | 17/6/2026 | Multiple CSRF issues in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php. | |
| Modificada | Media (5.3) | 1.1% | — | Horde GroupwareOpensuseDebian Linux | 5/11/2019 | 17/6/2026 | Horde Groupware Web mail 5.1.2 has CSRF with requests to change permissions | |
| Modificada | Alta (8.8) | 2.1% | — | Horde GroupwareDebian Linux | 5/11/2019 | 17/6/2026 | Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book | |
| Modificada | Alta (8.8) | 1.1% | — | Horde Groupware | 24/10/2019 | 17/6/2026 | Horde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 and other products, allows CSRF, as demonstrated by the treanBookmarkTags parameter to the trean/ URI on a webmail server. NOTE: treanBookmarkTags could, for example, be a stored XSS payload. | |
| Modificada | Media (6.1) | 1.5% | — | Horde Groupware | 24/10/2019 | 17/6/2026 | Horde Groupware Webmail Edition through 5.2.22 allows XSS via an admin/user.php?form=update_f&user_name= or admin/user.php?form=remove_f&user_name= or admin/config/diff.php?app= URI. | |
| Modificada | Alta (8.8) | 19% | — | Horde GroupwareDebian Linux | 29/5/2019 | 17/6/2026 | Remote code execution was discovered in Horde Groupware Webmail 5.2.22 and 5.2.17. Horde/Form/Type.php contains a vulnerable class that handles image upload in forms. When the Horde_Form_Type_image method onSubmit() is called on uploads, it invokes the functions getImage() and _getUpload(), which uses unsanitized user… | |
| Modificada | Media (5.9) | 4.1% | — | 9folders NineApple MailBloop AirmailEmclient+13 | 16/5/2018 | 17/6/2026 | The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. | |
| Modificada | Media (5.9) | 5.5% | — | Apple MailBloop AirmailEmclientFlipdogsolutions Maildroid+7 | 16/5/2018 | 17/6/2026 | The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a… | |
| Modificada | Alta (8.1) | 2.4% | — | Horde Ldap | 10/4/2018 | 17/6/2026 | The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN. | |
| Modificada | Media (5.4) | 1.8% | — | Horde Groupware | 20/11/2017 | 17/6/2026 | In Horde Groupware 5.2.19, there is XSS via the Name field during creation of a new Resource. This can be leveraged for remote code execution after compromising an administrator account, because the CVE-2015-7984 CSRF protection mechanism can then be bypassed. | |
| Modificada | Media (5.4) | 1.1% | — | Horde Groupware | 20/11/2017 | 17/6/2026 | In Horde Groupware 5.2.19 and 5.2.21, there is XSS via the Color field in a Create Task List action. | |
| Modificada | Media (5.4) | 1.1% | — | Horde Groupware | 20/11/2017 | 17/6/2026 | In Horde Groupware 5.2.19-5.2.22, there is XSS via the URL field in a "Calendar -> New Event" action. |