Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2541▼ 407 respecto a la semana anterior
Críticas / altas1311▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)59▼ 467 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 0.74% | — | Objectcomputing OpenddsAI | 17/9/2026 | 24/9/2026 | OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). Prior to 3.34.0, a network attacker can crash a reachable OpenDDS participant by sending a malformed RTPS UDP submessage whose crafted length or sequence-number state causes… | |
| Pendiente de análisis | Media (6.6) | 0.09% | — | Objectcomputing OpenddsAI | 8/9/2026 | 9/9/2026 | An issue in OpenDDS 3.33.x allows a local attacker to cause a denial of service via the verify function in the SIgnedDocument module | |
| Analizada | Alta (7.5) | 0.35% | — | Objectcomputing Opendds | 23/12/2025 | 17/6/2026 | An integer overflow in the RTPS protocol implementation of OpenDDS DDS before v3.33.0 allows attackers to cause a Denial of Service (DoS) via a crafted message. | |
| Analizada | Media (4.3) | 0.48% | — | Objectcomputing Opendds | 11/4/2024 | 17/6/2026 | An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a denial of service and obtain sensitive information via the max_samples parameter within the DataReaderQoS component. | |
| Modificada | Alta (7.5) | 0.61% | — | Objectcomputing Opendds | 11/2/2024 | 17/6/2026 | In OpenDDS through 3.27, there is a segmentation fault for a DataWriter with a large value of resource_limits.max_samples. NOTE: the vendor's position is that the product is not designed to handle a max_samples value that is too large for the amount of memory on the system. | |
| Modificada | Alta (7.5) | 0.90% | — | Objectcomputing Opendds | 21/7/2023 | 17/6/2026 | OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). OpenDDS crashes while parsing a malformed `PID_PROPERTY_LIST` in a DATA submessage during participant discovery. Attackers can remotely crash OpenDDS processes by sending a DATA submessage containing the… | |
| Modificada | Alta (7.5) | 0.74% | — | Objectcomputing Opendds | 3/2/2023 | 17/6/2026 | OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). OpenDDS applications that are exposed to untrusted RTPS network traffic may crash when parsing badly-formed input. This issue has been patched in version 3.23.1. | |
| Modificada | Alta (7.5) | 2.1% | — | Objectcomputing Opendds | 5/5/2022 | 17/6/2026 | OCI OpenDDS versions prior to 3.18.1 are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic, which may result in a denial-of-service condition. | |
| Modificada | Crítica (9.8) | 2.7% | — | Objectcomputing Opendds | 5/5/2022 | 17/6/2026 | OCI OpenDDS versions prior to 3.18.1 do not handle a length parameter consistent with the actual length of the associated data, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Crítica (9.1) | 1.5% | — | Objectcomputing Opendds | 5/5/2022 | 17/6/2026 | OCI OpenDDS versions prior to 3.18.1 are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic, which may result in a denial-of-service condition and information exposure. |