Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2750▲ 27 respecto a la semana anterior
Críticas / altas1468▲ 334 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
12 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.5) | 0.37% | — | FleetAILinuxfoundation OsqueryAI | 26/8/2026 | 9/9/2026 | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the Apple MDM commands listing endpoint (GET /api/v1/fleet/mdm/apple/commands) allowed an authenticated user with the lowest-privilege Observer role to extract sensitive values from joined database tables,… | |
| Aplazada | Media (6.5) | 0.37% | — | FleetAILinuxfoundation OsqueryAI | 26/8/2026 | 9/9/2026 | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the labels host-listing endpoint (GET /api/v1/fleet/labels/{id}/hosts) allowed an authenticated user with the lowest-privilege Observer role to extract host enrollment secrets through a sort-order oracle. The… | |
| Aplazada | Alta (7) | 0.15% | — | Linuxfoundation OsqueryAI | 10/7/2026 | 14/7/2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker can cause a heap buffer out-of-bounds write if there is a query of the authenticode table targeting a maliciously crafted binary, due to publisher information… | |
| Aplazada | Alta (7) | 0.15% | — | Linuxfoundation OsqueryAI | 10/7/2026 | 14/7/2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker can cause a heap buffer out-of-bounds write if there is a query of the processes table targeting a maliciously crafted process, due to unchecked PEB string lengths… | |
| Aplazada | Media (4.4) | 0.13% | — | Linuxfoundation OsqueryAI | 10/7/2026 | 10/7/2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unprivileged attacker can read the contents of an osquery file carve until the carve completes and the temporary files are deleted because in-progress carve directories are not created with private… | |
| Aplazada | Crítica (9.3) | 0.67% | — | Fleetdm FleetAILinuxfoundation OsqueryAI | 6/3/2025 | 17/6/2026 | fleetdm/fleet is an open source device management, built on osquery. In vulnerable versions of Fleet, an attacker could craft a specially-formed SAML response to forge authentication assertions, provision a new administrative user account if Just-In-Time (JIT) provisioning is enabled, or create new accounts tied to… | |
| Aplazada | Alta (7.3) | 0.21% | — | Kolide LauncherAIKolide AgentAIOsquerydAI | 3/12/2024 | 17/6/2026 | The Kolide Agent (aka: Launcher) is the lightweight agent designed to work with Kolide's service. An implementation bug in the Kolide Agent (known as `launcher`) allows for local privilege escalation to the SYSTEM user on Windows 10 and 11. The bug was introduced in version 1.5.3 when launcher started storing upgraded… | |
| Modificada | Media (5.2) | 0.95% | — | Linuxfoundation Osquery | 16/12/2020 | 17/6/2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. In osquery before version 4.6.0, by using sqlite's ATTACH verb, someone with administrative access to osquery can cause reads and writes to arbitrary sqlite databases on disk. This _does_ allow arbitrary files to be… | |
| Modificada | Alta (8.2) | 0.59% | — | Linuxfoundation Osquery | 10/7/2020 | 17/6/2026 | osquery before version 4.4.0 enables a privilege escalation vulnerability. If a Window system is configured with a PATH that contains a user-writable directory then a local user may write a zlib1.dll DLL, which osquery will attempt to load. Since osquery runs with elevated privileges this enables local escalation.… | |
| Modificada | Crítica (9.1) | 1.6% | — | Linuxfoundation Osquery | 13/3/2020 | 17/6/2026 | Incorrect validation of the TLS SNI hostname in osquery versions after 2.9.0 and before 4.2.0 could allow an attacker to MITM osquery traffic in the absence of a configured root chain of trust. | |
| Modificada | Alta (8.1) | 1.7% | — | Linuxfoundation Osquery | 3/6/2019 | 17/6/2026 | In some configurations an attacker can inject a new executable path into the extensions.load file for osquery and hard link a parent folder of a malicious binary to a folder with known 'safe' permissions. Under those circumstances osquery will load said malicious executable with SYSTEM permissions. The solution is to… | |
| Modificada | Alta (7.8) | 0.49% | — | Linuxfoundation Osquery | 31/12/2018 | 17/6/2026 | An issue was discovered in osquery. A maliciously crafted Universal/fat binary can evade third-party code signing checks. By not completing full inspection of the Universal/fat binary, the user of the third-party tool will believe that the code is signed by Apple, but the malicious unsigned code will execute. This… |