Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2838▼ 146 respecto a la semana anterior
Críticas / altas1377▲ 68 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)255▼ 268 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Alta (8.1) | 0.29% | — | Nelio ContentAI | 3/10/2026 | 3/10/2026 | The Nelio Content – Editorial Calendar & Social Media Auto-Posting plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.5.0 This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers,… | |
| Aplazada | Media (4.3) | 0.25% | — | Nelio ContentAI | 26/6/2026 | 29/6/2026 | Contributor Broken Access Control in Nelio Content <= 4.3.4 versions. | |
| Aplazada | Media (4.9) | 0.19% | — | Neliosoftware Nelio ContentAI | 8/4/2026 | 24/7/2026 | Server-Side Request Forgery (SSRF) vulnerability in Nelio Software Nelio Content nelio-content allows Server Side Request Forgery.This issue affects Nelio Content: from n/a through <= 4.3.1. | |
| Aplazada | Alta (8.5) | 0.36% | — | Neliosoftware Nelio ContentAI | 23/1/2026 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nelio Software Nelio Content nelio-content allows Blind SQL Injection.This issue affects Nelio Content: from n/a through <= 4.2.0. | |
| Aplazada | Media (6.5) | 0.33% | — | Neliosoftware Nelio ContentAI | 27/10/2025 | 17/6/2026 | Missing Authorization vulnerability in Nelio Software Nelio Content nelio-content allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Nelio Content: from n/a through <= 4.0.5. | |
| Aplazada | Media (4.9) | 0.27% | — | Neliosoftware Nelio ContentAI | 2/4/2024 | 17/6/2026 | Server-Side Request Forgery (SSRF) vulnerability in Nelio Software Nelio Content.This issue affects Nelio Content: from n/a through 3.2.0. |