Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 345 respecto a la semana anterior
Críticas / altas1316▼ 9 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 273 respecto a la semana anterior
194 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.1) | 0.18% | — | Thimpress LearnpressAI | 6/10/2026 | 6/10/2026 | Unauthenticated Cross Site Scripting (XSS) in LearnPress <= 4.4.9 versions. | |
| Aplazada | Media (5.1) | 0.17% | — | Thimpress LearnpressAI | 5/10/2026 | 6/10/2026 | LearnPress plugin for WordPress through 4.4.9.1 contains a stored cross-site scripting vulnerability that allows authenticated instructors to inject scripts via quiz question hint and explanation fields. Attackers with the Instructor role can submit unsanitized payloads through the update_question AJAX handler that… | |
| Aplazada | Media (6.1) | 0.21% | — | Thimpress LearnpressAI | 3/10/2026 | 6/10/2026 | The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Reflected DOM-Based Cross-Site Scripting via the 'orderby' parameter in all versions up to, and including, 4.4.7 due to insufficient input sanitization and output escaping. This makes it possible for… | |
| Aplazada | Media (4.3) | 0.15% | — | Thimpress LearnpressAI | 2/10/2026 | 2/10/2026 | Missing Authorization vulnerability in ThimPress LearnPress learnpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects LearnPress: from n/a through 4.4.9.1. | |
| Aplazada | Media (5.3) | 0.20% | — | Thimpress LearnpressAI | 2/10/2026 | 3/10/2026 | Authorization Bypass Through User-Controlled Key vulnerability in ThimPress LearnPress allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects LearnPress: from n/a through 4.4.9. | |
| Aplazada | Alta (7.5) | 0.36% | — | Thimpress LearnpressAI | 1/10/2026 | 3/10/2026 | The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 4.4.8 via the CourseMaterialTemplate::render_material_items() callback exposed on the public lp-ajax-handle (load_content_via_ajax) endpoint.… | |
| Pendiente de análisis | Alta (7.8) | 0.14% | — | GimpAIGimpressionistAI | 24/9/2026 | 5/10/2026 | A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to load a malicious… | |
| Aplazada | Baja (3.7) | 0.28% | — | Thimpress LearnpressAI | 17/9/2026 | 18/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not restrict the correctness flags it returns when a quiz answer is checked, allowing unauthenticated attackers to obtain the correct answer to every option of a question, along with the instructor's explanation, on courses configured to be taken without enrolling. | |
| Aplazada | Media (5.3) | 0.34% | — | Thimpress LearnpressAI | 16/9/2026 | 17/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not check the user's capabilities before applying a user supplied post status filter in one of its REST routes, allowing unauthenticated attackers to list courses that are not published, including draft, pending, private, scheduled and trashed ones. | |
| Aplazada | Baja (3.7) | 0.31% | — | Thimpress LearnpressAI | 16/9/2026 | 17/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not perform any authentication, capability or nonce check before serving a previously generated order export file, allowing unauthenticated attackers who can determine its identifier to download customer names, purchases, amounts and guest email addresses. | |
| Aplazada | Media (5.3) | 0.34% | — | Thimpress LearnpressAI | 16/9/2026 | 17/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not check the user's capabilities in one of its administrative course tools, allowing unauthenticated attackers to list every enrolled student's display name and user identifier against the course they are enrolled on, and to recover their email addresses through the… | |
| Aplazada | Media (5.3) | 0.34% | — | Thimpress LearnpressAI | 16/9/2026 | 17/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not check the user's capabilities in one of its administrative template handlers, allowing unauthenticated attackers to retrieve the text, identifier and type of every published quiz question on the site, along with a keyword search over them, which is content the… | |
| Aplazada | Alta (7.1) | 0.28% | — | Thimpress LearnpressAI | 16/9/2026 | 17/9/2026 | The LearnPress WordPress plugin before 4.4.7 does not escape a user supplied value before using it in an HTML attribute on a public page, allowing unauthenticated attackers to execute arbitrary JavaScript in the browser of anyone who opens a crafted link, including a logged in administrator. Only sites running a… | |
| Aplazada | Media (6.3) | 0.26% | — | Impress FOR IDX BrokerAI | 10/9/2026 | 10/9/2026 | Subscriber Broken Access Control in IMPress for IDX Broker <= 3.3.0 versions. | |
| Aplazada | Media (6.5) | 0.42% | — | Impress FOR IDX BrokerAI | 10/9/2026 | 10/9/2026 | Unauthenticated Broken Authentication in IMPress for IDX Broker <= 3.3.0 versions. | |
| Aplazada | Media (6.4) | 0.20% | — | Thimpress LearnpressAI | 8/9/2026 | 9/9/2026 | The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'layout_custom_css' parameter in all versions up to, and including, 4.3.9.1 due to insufficient input sanitization and output escaping. This makes it possible for… | |
| Aplazada | Media (5.1) | 0.24% | — | Thimpress LearnpressAI | 3/9/2026 | 8/9/2026 | LearnPress WordPress Plugin before 4.4.6 contains a stored cross-site scripting vulnerability that allows authenticated attackers with the Instructor role to inject persistent malicious payloads by submitting unsanitized input into quiz question answer title fields. Attackers can store arbitrary JavaScript through the… | |
| Aplazada | Media (5.3) | 0.29% | — | Thimpress LearnpressAI | 3/9/2026 | 8/9/2026 | LearnPress WordPress Plugin before 4.4.6 contains a broken object-level authorization vulnerability that allows authenticated attackers with the Instructor role to add answers to quiz questions owned by other instructors by exploiting a missing ownership check on the question answer insert path. Attackers can supply… | |
| Aplazada | Media (4.9) | 0.44% | — | Thimpress LearnpressAI | 1/9/2026 | 1/9/2026 | The LearnPress plugin for WordPress is vulnerable to SQL Injection via the 'orderby' parameter of the export_order_csv AJAX action in versions up to, and including, 4.4.4. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query in the… | |
| Aplazada | Media (5.3) | 0.34% | — | Thimpress LearnpressAI | 27/8/2026 | 28/8/2026 | The LearnPress WordPress plugin before 4.0.3 does not perform any authorization check on one of its REST endpoints in all versions up to, and including, 4.0.2, allowing unauthenticated attackers to disclose the payment status of arbitrary orders by enumerating order identifiers. | |
| Aplazada | Media (4.4) | 0.38% | — | Thimpress LearnpressAI | 25/8/2026 | 26/8/2026 | The LearnPress plugin for WordPress is vulnerable to unauthorized modification of arbitrary WordPress options in versions up to, and including, 4.4.4 via the learnpress_create_page AJAX action. The LP_Admin_Ajax::create_page() handler only checks the edit_pages capability and a wp_rest nonce (both available to… | |
| Aplazada | Alta (8.6) | 1.1% | — | ImpresscmsAI | 14/8/2026 | 26/8/2026 | ImpressCMS contains an authenticated remote code execution vulnerability in the custom tag module that allows authenticated administrators to execute arbitrary PHP code by storing a malicious payload in a custom tag with PHP type enabled. The application decodes HTML-encoded content via undoHtmlSpecialChars() before… | |
| Aplazada | Media (6.5) | 0.37% | — | Thimpress LearnpressAI | 12/8/2026 | 26/8/2026 | The LearnPress WordPress plugin before 4.4.4 does not verify that a user is enrolled in a course before processing AI-assistant requests against that course's lesson content, allowing any authenticated user such as a subscriber to obtain material from paid courses they have not enrolled in. | |
| Aplazada | Baja (2.2) | 0.24% | — | Thimpress LearnpressAI | 10/8/2026 | 26/8/2026 | The LearnPress WordPress plugin before 4.4.4 does not validate a user-supplied URL before the server fetches it, allowing users with the instructor role to induce the server to issue requests to arbitrary external hosts, a blind and bounded server-side request forgery. | |
| Aplazada | Media (5.3) | 0.16% | — | Thimpress WP Hotel BookingAI | 6/8/2026 | 26/8/2026 | The WP Hotel Booking WordPress plugin before 2.3.2 does not verify that a payment notification corresponds to a payment made to the site's own merchant account, nor that the paid amount matches the booking total, allowing unauthenticated users to have their bookings marked as fully paid without any payment reaching… |