Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2693▼ 76 respecto a la semana anterior
Críticas / altas1446▲ 304 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
23.851 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Alta (7.1) | — | — | PhprojectAI | 2/10/2026 | 2/10/2026 | Phproject before 1.8.7 contains a missing object-level authorization vulnerability in the REST API issue endpoints (single_get, single_comments, single_comments_post) that allows authenticated API key holders to bypass the security.restrict_access confidentiality control by never invoking the allowAccess()… | |
| Aplazada | Media (6.2) | 0.16% | — | Mobyproject BuildkitAI | 2/10/2026 | 2/10/2026 | The BuildKit WordPress plugin before 1.0.29 does not properly sanitise and escape data submitted by contributor-level users before storing it and later using it in a SQL query, allowing a Contributor to inject SQL that runs against the database once the resulting content is published and viewed by any unauthenticated… | |
| Pendiente de análisis | Crítica (9) | 0.38% | — | 389project 389 DS BaseAI | 1/10/2026 | 2/10/2026 | A flaw was found in 389-ds-base. The server does not discard plaintext bytes already buffered from a client connection when negotiating StartTLS, allowing an on-path attacker to inject a crafted LDAP message that is processed after the TLS upgrade and whose response is delivered to the client in place of the client's… | |
| Pendiente de análisis | Media (4.4) | 0.09% | — | Zephyrproject ZephyrAI | 1/10/2026 | 2/10/2026 | The SMBus driver API exposed smbus_smbalert_remove_cb() and smbus_host_notify_remove_cb() as Zephyr syscalls. Their verifiers in drivers/smbus/smbus_handlers.c validated only the dev argument with K_SYSCALL_OBJ(dev, K_OBJ_DRIVER_SMBUS) and forwarded the caller-supplied struct smbus_callback *cb pointer into… | |
| Aplazada | Media (6.3) | 0.25% | — | Wedevs WP Project ManagerAI | 1/10/2026 | 1/10/2026 | Subscriber Broken Access Control in WP Project Manager <= 4.0.7 versions. | |
| Analizada | Alta (8.7) | 0.30% | — | Pypdf Project Pypdf | 30/9/2026 | 2/10/2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.17.0, a crafted PDF can provide unusually large Roman page-label values that cause pypdf/_page_labels.py to generate excessively large numeral strings when an application retrieves document page labels, consuming large amounts of memory and… | |
| En análisis | Media (5.5) | 0.66% | — | Vllm-project VllmAI | 30/9/2026 | 2/10/2026 | A flaw has been found in vllm-project vLLM up to 0.26.0. This vulnerability affects unknown code of the file rust/src/parser/src/unified/gemma4.rs of the component Gemma4UnifiedParser. Executing a manipulation can lead to denial of service. The attack may be launched remotely. The exploit has been published and may be… | |
| Aplazada | Baja (2.1) | 0.37% | — | Adithyayelloju Restaurant Management SystemAI | 30/9/2026 | 30/9/2026 | A security vulnerability has been detected in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. This impacts an unknown function of the file /admin/ of the component Admin Area. Such manipulation of the argument ID leads to authorization bypass. The attack can be executed… | |
| Aplazada | Media (5.5) | 0.33% | — | Adithyayelloju Restaurant Management SystemAI | 30/9/2026 | 30/9/2026 | A weakness has been identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. This affects the function mysqli_query of the file admin/table_booking.php. This manipulation of the argument Name causes sql injection. Remote exploitation of the attack is possible. The… | |
| Aplazada | Media (5.5) | 0.41% | — | Adithyayelloju Restaurant Management SystemAI | 30/9/2026 | 2/10/2026 | A vulnerability was identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. The affected element is the function mysqli_query of the file User/cancel.php of the component Order Cancellation. The manipulation of the argument ID leads to sql injection. The attack may be… | |
| Aplazada | Media (5.5) | 0.41% | — | Adithyayelloju Restaurant Management SystemAI | 30/9/2026 | 30/9/2026 | A vulnerability was determined in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. Impacted is the function mysqli_query of the file User/ord.php of the component Order Placement. Executing a manipulation of the argument id/name can lead to sql injection. The attack can be… | |
| Aplazada | Media (5.5) | 0.41% | — | Adithyayelloju Restaurant Management SystemAI | 30/9/2026 | 30/9/2026 | A vulnerability was found in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. This issue affects the function mysqli_query of the file admin/delete1.php of the component Unauthenticated Action Script. Performing a manipulation of the argument ID results in sql injection. The… | |
| Pendiente de análisis | Media (6.3) | 0.31% | — | Astrojs NetlifyAI | 30/9/2026 | 30/9/2026 | Astro is a web framework for content-driven websites. From 5.2.0 until 8.2.4, the @astrojs/netlify adapter generates regular expressions for Netlify Image CDN remote-image allowlists without anchoring them to the beginning of the URL. Because Netlify evaluates these expressions with RegExp.test(), an allowed origin… | |
| Pendiente de análisis | Media (6.3) | 0.37% | — | Palletsprojects WerkzeugAI | 29/9/2026 | 30/9/2026 | Werkzeug is a comprehensive WSGI web application library. Prior to 3.1.9, the safe_join function used by send_from_directory can allow a NUL: special-device path because safe_join checks the Windows device name without first removing an empty NTFS ADS marker. The trigger is that an application runs on Windows with… | |
| Pendiente de análisis | Media (5.9) | 0.25% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | parse_write_op() in subsys/net/lib/lwm2m/lwm2m_message_handling.c handles inbound CoAP WRITE/CREATE requests that carry a Block1 option. For the first block of a transfer it called init_block_ctx() and then immediately stored the peer-selected block size with block_ctx->ctx.block_size = block_size before inspecting… | |
| Pendiente de análisis | Media (6.5) | 0.18% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | The native BSD-socket layer recorded a pending asynchronous socket error by type-punning it into struct net_context's void user_data field (ctx->user_data = INT_TO_POINTER(-status) in zsock_accepted_cb(), zsock_received_cb(), zsock_connected_cb() and zsock_close_ctx() in subsys/net/lib/sockets/sockets_inet.c), reading… | |
| Pendiente de análisis | Baja (3.7) | 0.22% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | The CoAP link-format helper match_path_uri() in subsys/net/lib/coap/coap_link_format.c compares a registered resource path against the URI carried in a Uri-Query href= option. That URI is not NUL terminated, but the inner character loop advanced its index k once per path character without ever testing it against the… | |
| Pendiente de análisis | Media (6.3) | 0.10% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | ieee802154_send() in subsys/net/l2/ieee802154/ieee802154.c copies the outgoing packet into a single fixed 125-byte transmit buffer (tx_frame_buf_pool, sized IEEE802154_MTU). In builds with CONFIG_NET_L2_IEEE802154_FRAGMENT enabled (the default whenever CONFIG_NET_6LO is set), the branch taken when 6LoWPAN… | |
| Pendiente de análisis | Alta (7.8) | 0.12% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | The ADC API requires each driver to reject a sampling sequence whose destination buffer is too small: the buffer_size field of struct adc_sequence in include/zephyr/drivers/adc.h documents that "the driver must ensure that samples are not written beyond the limit and it must return an error if the buffer turns out to… | |
| Pendiente de análisis | Alta (7.8) | 0.12% | — | NXP Mcux Lpadc DriverAIZephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | The ADC API requires each driver to reject a sampling sequence whose destination buffer is too small: the buffer_size field of struct adc_sequence in include/zephyr/drivers/adc.h documents that "the driver must ensure that samples are not written beyond the limit and it must return an error if the buffer turns out to… | |
| Pendiente de análisis | Alta (7.8) | 0.11% | — | Zephyrproject ZephyrAI | 28/9/2026 | 30/9/2026 | The userspace verifier z_vrfy_rtio_sqe_copy_in_get_handles() in subsys/rtio/rtio_syscalls.c (subsys/rtio/rtio_handlers.c before v4.3.0) validated the RTIO object handle and the sqes input array, but not the handle out-parameter. On the first loop iteration it executed *handle = sqe, storing the kernel address of the… | |
| Aplazada | Baja (2.1) | 0.20% | — | Code-projects Matrimonial SystemAI | 28/9/2026 | 28/9/2026 | A vulnerability was determined in code-projects Matrimonial System 1.0. The affected element is the function processprofile_form of the file /create_profile of the component Profile Creation Endpoint. This manipulation of the argument fname causes sql injection. The attack is possible to be carried out remotely. The… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 28/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file updateresultdetails.php. Such manipulation of the argument editid leads to sql injection. The attack can be launched remotely. The exploit… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 28/9/2026 | 1/10/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file makeresult.php. This manipulation of the argument makeid causes sql injection. The attack can be initiated remotely. The exploit has been made available… | |
| Aplazada | Baja (2) | 0.15% | — | Devaslanphp Project ManagementAI | 28/9/2026 | 1/10/2026 | A vulnerability has been found in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/v2.0.0-beta1. Affected is the function updateJiraProjects of the file /jira-import of the component Jira Import. The manipulation of the argument host/username/token leads to server-side request forgery. It is possible to initiate… |