Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2531▼ 362 respecto a la semana anterior
Críticas / altas1338▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
22 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.4) | 0.51% | — | Obsidian WEB MCPAI | 17/9/2026 | 30/9/2026 | Obsidian Web MCP is a secure remote MCP server for Obsidian vaults. Prior to 0.2.0, /oauth/authorize issues an authorization code without a login, consent, or session check, and /oauth/token can exchange that code for the static VAULT_MCP_TOKEN without authenticating a client. An unauthenticated remote caller who can… | |
| Aplazada | Media (6.9) | 0.19% | — | McpvaultAIObsidianAI | 15/9/2026 | 30/9/2026 | MCPVault is a lightweight Model Context Protocol server for safe access to files in an Obsidian vault. Prior to 0.11.5, PathFilter in src/pathfilter.ts uses root-anchored deny-list patterns, so nested .git, .obsidian, and node_modules path segments do not match the restriction and pass both isAllowed() and… | |
| Aplazada | Baja (1.9) | 0.17% | — | Bazylhorsey Obsidian-mcp-serverAI | 9/8/2026 | 12/8/2026 | A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0.0. This affects the function readCanvas/writeCanvas of the file src/services/CanvasService.ts. Such manipulation leads to path traversal. An attack has to be approached locally. The project was informed of the problem early through an issue report… | |
| Pendiente de análisis | Alta (7.7) | 0.40% | — | Plesk ObsidianAI | 7/8/2026 | 3/9/2026 | An SQL injection vulnerability in Plesk Obsidian up to 18.0.80 for Linux and Windows allows an authenticated user to read arbitrary data from the panel database. | |
| Aplazada | Crítica (9.1) | 0.53% | — | Relay ServerAIObsidianAI | 12/5/2026 | 17/6/2026 | Relay adds real-time collaboration to Obsidian. Relay Server versions 0.9.0 through 0.9.6 contain an authentication bypass in the multi-document WebSocket endpoints. When authentication is configured, WebSocket connections without a token query parameter were incorrectly treated as having full server permissions. An… | |
| Modificada | Alta (7.5) | 0.61% | — | Webpros Plesk Obsidian | 8/1/2026 | 15/7/2026 | Plesk Obsidian versions 8.0.1 through 18.0.73 are vulnerable to a Denial of Service (DoS) condition. The vulnerability exists in the get_password.php endpoint, where a crafted request containing a malicious payload can cause the affected web interface to continuously reload, rendering the service unavailable to… | |
| Aplazada | Alta (8.2) | 0.38% | — | Obsidian SchedulerAI | 29/9/2025 | 17/6/2026 | A security vulnerability was identified in Obsidian Scheduler's REST API 5.0.0 thru 6.3.0. If an account is locked out due to not enrolling in MFA (e.g. after the 7-day enforcement window), the REST API still allows the use of Basic Authentication to authenticate and perform administrative actions. In particular, the… | |
| Aplazada | Media (5.1) | 0.10% | — | Obsidian Github Copilot PluginAI | 5/9/2025 | 17/6/2026 | Obsidian GitHub Copilot Plugin versions prior to 1.1.7 store Github API token in cleartext form. As a result, an attacker may perform unauthorized operations on the linked Github account. | |
| Aplazada | Crítica (9.8) | 0.51% | — | Plesk ObsidianAI | 19/8/2025 | 17/6/2026 | In Plesk Obsidian 18.0.70, _isAdminPasswordValid uses an == comparison. Thus, if the correct password is "0e" followed by any digit string, then an attacker can login with any other string that evaluates to 0.0 (such as the 0e0 string). This occurs in admin/plib/LoginManager.php. | |
| Aplazada | Media (5.8) | 0.40% | — | Plesk ObsidianAI | 3/7/2025 | 17/6/2026 | In Plesk Obsidian 18.0.69, unauthenticated requests to /login_up.php can reveal an AWS accessKeyId, secretAccessKey, region, and endpoint. | |
| Analizada | Crítica (9.8) | 0.24% | — | Obsidiandynamics Anode | 24/5/2025 | 17/6/2026 | In the anode crate 0.1.0 for Rust, data races can occur in unlock in SpinLock. | |
| Analizada | Media (6.1) | 0.50% | — | Lynchjames Obsidian Mind MAP | 29/2/2024 | 17/6/2026 | Obsidian Mind Map v1.1.0 allows attackers to execute arbitrary code via a crafted payload injected into an uploaded document. | |
| Modificada | Alta (7.1) | 0.36% | — | Obsidian | 19/8/2023 | 17/6/2026 | Improper path handling in Obsidian desktop before 1.2.8 on Windows, Linux and macOS allows a crafted webpage to access local files and exfiltrate them to remote web servers via "app://local/<absolute-path>". This vulnerability can be exploited if a user opens a malicious markdown file in Obsidian, or copies text from… | |
| Modificada | Alta (8.2) | 0.47% | — | Obsidian | 20/5/2023 | 17/6/2026 | Obsidian before 1.2.2 allows calls to unintended APIs (for microphone access, camera access, and desktop notification) via an embedded web page. | |
| Modificada | Alta (7.5) | 1.8% | — | Obsidian | 1/5/2023 | 17/6/2026 | An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notifications, record user audio and other unspecified impacts via embedded website on the canvas page. | |
| Modificada | Media (6.1) | 2.3% | — | Plesk Obsidian | 22/1/2023 | 17/6/2026 | A Host Header Injection issue on the Login page of Plesk Obsidian through 18.0.49 allows attackers to redirect users to malicious websites via a Host request header. NOTE: the vendor's position is "the ability to use arbitrary domain names to access the panel is an intended feature." | |
| Modificada | Media (6.5) | 0.35% | — | Plesk Obsidian | 10/11/2022 | 17/6/2026 | Plesk Obsidian allows a CSRF attack, e.g., via the /api/v2/cli/commands REST API to change an Admin password. NOTE: Obsidian is a specific version of the Plesk product: version numbers were used through version 12, and then the convention was changed so that versions are identified by names ("Obsidian"), not numbers. | |
| Modificada | Crítica (9.8) | 20% | — | Obsidian | 25/7/2022 | 17/6/2026 | Obsidian 0.14.x and 0.15.x before 0.15.5 allows obsidian://hook-get-address remote code execution because window.open is used without checking the URL. | |
| Modificada | Alta (7.8) | 1.2% | — | Obsidian Dataview | 4/11/2021 | 17/6/2026 | Obsidian Dataview through 0.4.12-hotfix1 allows eval injection. The evalInContext function in executes user input, which allows an attacker to craft malicious Markdown files that will execute arbitrary code once opened. NOTE: 0.4.13 provides a mitigation for some use cases. | |
| Modificada | Media (6.1) | 1.1% | — | Plesk Obsidian | 10/9/2021 | 17/6/2026 | The feature to preview a website in Plesk Obsidian 18.0.0 through 18.0.32 on Linux is vulnerable to reflected XSS via the /plesk-site-preview/ PATH, aka PFSI-62467. The attacker could execute JavaScript code in the victim's browser by using the link to preview sites hosted on the server. Authentication is not required… | |
| Modificada | Crítica (9.8) | 1.2% | — | Obsidian | 7/8/2021 | 17/6/2026 | Obsidian before 0.12.12 does not require user confirmation for non-http/https URLs. | |
| Modificada | Media (6.1) | 1.0% | — | Plesk Obsidian | 3/8/2020 | 17/6/2026 | A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter. |