Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2585▼ 302 respecto a la semana anterior
Críticas / altas1355▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
66 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 0.58% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt before 1.4.9 fails to validate KDF cost parameters in encrypted file metadata and keystore headers, allowing attackers to trigger unbounded memory allocation. Attackers can craft malicious encrypted files declaring arbitrarily large Argon2, scrypt, or balloon KDF parameters to exhaust system memory and… | |
| Analizada | Media (6.9) | 0.18% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt before 1.4.9 fails to validate the memory_cost parameter from identity file protection blocks, allowing attackers to trigger out-of-memory conditions during key derivation. Attackers with write access to local identity stores can craft malicious identity files with excessive memory_cost values that… | |
| Analizada | Crítica (9.3) | 0.44% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt before 1.4.9 executes untrusted third-party plugins with insufficient controls: the plugin signature policy defaulted to WARN, so an unsigned/unverifiable non-built-in plugin was compiled and executed in the host process at import time, before the runtime sandbox is installed. The only default gate was… | |
| Analizada | Crítica (9.3) | 0.12% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt (pip package openssl-encrypt) before 1.4.9 contains two weaknesses in the portable USB drive feature, whose threat model treats the removable drive as untrusted (attacker with physical write access). USBDriveCreator._verify_integrity_file only validates files listed in the manifest, so files added to… | |
| Analizada | Alta (8.7) | 0.26% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt (pip: openssl-encrypt) versions before 1.4.9 contain a path traversal flaw in PluginSandbox._is_safe_path, which authorized file access using a bare string-prefix match. A sandboxed plugin without the READ_FILES permission could read or write another plugin's directory that merely shares a name prefix… | |
| Analizada | Alta (8.7) | 0.26% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8 do not redact the keyserver bearer token passed as the positional argument to 'keyserver set-token' in the --debug argv dump, because sanitize_argv_for_debug fails to sanitize it. As a result the token is printed in cleartext to stderr under --debug (even… | |
| Analizada | Crítica (9.3) | 0.20% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt (pip: openssl-encrypt) versions <= 1.4.8 use suffix-tolerant fingerprint matching in enroll_trust_key when binding a plugin-signing trust anchor. An operator who confirms a short (forgeable, ~32-bit) GPG key id could unknowingly enroll an attacker's colliding key as a trusted anchor, which then vouches… | |
| Analizada | Crítica (9.3) | 0.18% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt before 1.4.9 fails to prevent namespace collisions between own identities and contacts in IdentityStore, allowing attackers to create shadowed contact entries invisible until the corresponding own identity is deleted. When the own identity is deleted, the shadowed contact becomes visible and resolves… | |
| Analizada | Alta (8.7) | 0.44% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl-encrypt before 1.4.9 fails to redact the file password in its --debug argv dump when the password is supplied via bundled short-option spellings (e.g. -apHunter2) or abbreviated long-option spellings (e.g. --passw). The sanitizer only recognized exact option names, --option=value forms, and tokens starting… | |
| Analizada | Alta (8.7) | 0.27% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt versions before 1.4.9 contain a weak key derivation vulnerability in the D-Bus CryptoService.EncryptFile handler that uses unstretched SHA-256 instead of Argon2id. Attackers can perform offline password guessing against encrypted files roughly six to seven orders of magnitude faster than documented… | |
| Analizada | Alta (8.7) | 0.22% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 fail to validate encryption status of embedded post-quantum private keys in file metadata. Attackers can craft files with unencrypted embedded PQC keys that decrypt under any password, bypassing authentication and producing attacker-chosen plaintext with false integrity… | |
| Analizada | Crítica (9.3) | 0.19% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json, allowing attackers to substitute public keys in identity stores. Attackers can replace legitimate public keys with their own while maintaining the claimed fingerprint, enabling silent key substitution… | |
| Analizada | Crítica (9.3) | 0.43% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 use a denylist to identify trusted built-in plugins, allowing unsigned plugins in top-level plugins/ directories and unknown subdirectories to bypass signature verification. Attackers can place malicious unsigned plugins following documented installation paths to achieve arbitrary… | |
| Analizada | Crítica (9.3) | 0.35% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 contain a signature verification vulnerability in gpg_runner.verify_detached that accepts revoked and expired keys by only checking VALIDSIG status without inspecting REVKEYSIG, EXPKEYSIG, or gpg exit codes. Attackers holding compromised-then-revoked signing keys or expired… | |
| Analizada | Alta (8.7) | 0.51% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt versions before 1.4.9 fail to properly validate key derivation function costs in crafted files, allowing attackers to trigger unbounded memory and CPU exhaustion during pre-authentication processing. Attackers can supply malicious files with excessive KDF parameters to exhaust system resources and… | |
| Analizada | Crítica (9.3) | 0.43% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 contain a shell injection vulnerability in the info command's reconstructed CLI block that interpolates untrusted metadata fields without quoting. Attackers can craft metadata values like pepper_name containing shell commands that execute when users copy the printed CLI block into… | |
| Analizada | Crítica (9.3) | 0.25% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 fail to sanitize terminal control characters in file metadata printed by the info command. Attackers can craft malicious files containing escape sequences to repaint terminal output and forge verification information displayed to users. | |
| Analizada | Crítica (9.3) | 0.25% | — | Jahlives Openssl Encrypt | 27/8/2026 | 1/9/2026 | openssl_encrypt versions before 1.4.9 fail to escape attacker-controlled key_id values printed to stderr during decrypt auto-detection. Attackers can craft encrypted files with malicious key_id containing escape sequences to repaint terminal output and forge authenticity verification blocks. | |
| Analizada | Crítica (9.3) | 0.25% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl-encrypt (pip package, versions <= 1.4.8) fails to sanitize filenames read from untrusted drive data (outside the AES-GCM authenticated manifest) before printing them in the verify-usb command's output. An attacker can plant filenames containing terminal cursor-movement and erase-line control bytes that repaint… | |
| Analizada | Alta (8.7) | 0.49% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt before 1.4.9 fails to validate the total field from QR JSON payloads before materializing ranges. Attackers can supply crafted QR images with extremely large total values to trigger unbounded memory allocation and cause denial of service through out-of-memory conditions. | |
| Analizada | Alta (8.7) | 0.27% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt versions before 1.4.9 fail to validate server URLs in login and register_with_email functions, accepting unencrypted http:// URLs and unconfigured hosts. Attackers on the network path can intercept cleartext credentials including client_id, passwords, and JWTs to achieve full keyserver account takeover. | |
| Analizada | Alta (8.7) | 0.71% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl-encrypt (pip package) before 1.4.9 contains a symlink-following flaw in its verify-usb v2 added-file allowlist scan. The scan enumerated the drive with rglob(), which in CPython does not descend into symlinked directories and treats the symlink as an ordinary directory, while O_NOFOLLOW on the hash side binds… | |
| Analizada | Alta (8.7) | 0.27% | — | Jahlives Openssl Encrypt | 27/8/2026 | 3/9/2026 | openssl_encrypt versions before 1.4.9 derive the remote-pepper wrap key using unsalted HKDF-SHA256 or bare SHA-256 of the password, allowing identical keys across all users and files. Attackers with access to wrapped pepper blobs can precompute a single dictionary table and perform fleet-wide offline password guessing… | |
| Analizada | Alta (8.7) | 0.27% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt versions before 1.4.9 store an unkeyed SHA-256 hash of the plaintext in the cleartext file header metadata. Attackers can read this hash without the password to confirm guessed plaintexts offline or fingerprint identical plaintexts across separately-encrypted files. | |
| Analizada | Media (6.9) | 0.14% | — | Jahlives Openssl Encrypt | 27/8/2026 | 2/9/2026 | openssl_encrypt 1.4.x before 1.4.9 contains an optional D-Bus crypto service whose org.freedesktop.DBus.Properties.Set method performs neither a polkit authorization check nor value validation. Any local user on the system bus can call Set without authorization and set MaxConcurrentOperations (to 0/negative, causing… |