Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2663▼ 380 respecto a la semana anterior
Críticas / altas1289▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
12 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.8) | 0.25% | — | Yordam Library Automation SystemAI | 14/5/2026 | 30/9/2026 | Improper Control of Generation of Code ('Code Injection') vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Remote Code Inclusion. This issue affects Library Automation System: from v.19.5 before v.22.1. | |
| Aplazada | Alta (8.8) | 0.22% | — | Yordam Library Automation SystemAI | 14/5/2026 | 30/9/2026 | Incorrect Authorization vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Library Automation System: from v.19.5 before v.22.1. | |
| Aplazada | Alta (8.8) | 0.30% | — | Yordam Library Automation SystemAI | 14/5/2026 | 30/9/2026 | Authorization bypass through User-Controlled key vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploitation of Trusted Identifiers. This issue affects Library Automation System: from v.21.6 before v.22.1. | |
| Aplazada | Crítica (9.8) | 0.35% | — | Yordam Informatics Yordam Library Automation SystemAI | 17/9/2025 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yordam Informatics Yordam Library Automation System allows SQL Injection. This issue affects Yordam Library Automation System: from 21.5 & 21.6 before 21.7. | |
| Modificada | Media (6.1) | 0.24% | — | Yordam Library Automation System | 2/5/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yordam Informatics Library Automation System allows Reflected XSS. This issue affects Library Automation System: before 21.6. | |
| Aplazada | Media (6.9) | 0.38% | — | Yordam Information Technology Yordam Library Automation SystemAI | 18/9/2024 | 17/6/2026 | Improper Restriction of Excessive Authentication Attempts vulnerability in Yordam Information Technology Yordam Library Automation System allows Interface Manipulation. This issue affects Yordam Library Automation System: before 20.1. | |
| Modificada | Media (5.4) | 0.36% | — | Yordam Library Automation System | 2/3/2023 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation vulnerability in Yordam Information Technologies Library Automation System allows Stored XSS. This issue affects Library Automation System: before 19.2. | |
| Modificada | Media (6.5) | 0.59% | — | Yordam Library Automation System | 2/3/2023 | 17/6/2026 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collect Data as Provided by Users. This issue affects Library Automation System: before 19.2. | |
| Modificada | Media (6.5) | 0.59% | — | Yordam Library Automation System | 2/3/2023 | 17/6/2026 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collect Data as Provided by Users. This issue affects Library Automation System: before 19.2. | |
| Modificada | Media (6.1) | 0.39% | — | Yordam Library Automation System | 27/10/2022 | 17/6/2026 | Yordam Library Information Document Automation product before version 19.02 has an unauthenticated reflected XSS vulnerability. | |
| Modificada | Alta (7.5) | 0.55% | — | Yordam Library Automation System | 27/10/2022 | 17/6/2026 | Yordam Library Information Document Automation product before version 19.02 has an unauthenticated Information disclosure vulnerability. | |
| Modificada | Media (6.1) | 0.44% | — | Yordam Library Automation System | 22/9/2022 | 17/6/2026 | University Library Automation System developed by Yordam Bilgi Teknolojileri before version 19.2 has an unauthenticated Reflected XSS vulnerability. This has been fixed in the version 19.2 |