Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2629▼ 216 respecto a la semana anterior
Críticas / altas1378▲ 154 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.3) | 0.16% | — | Ansible PosixAI | 10/6/2026 | 9/9/2026 | A local privilege escalation vulnerability was found in the ansible.posix authorized_key module. The module's keyfile() function uses os.chown() instead of os.lchown() and opens files without O_NOFOLLOW when managing SSH authorized keys. An unprivileged local user can pre-stage symbolic links in their ~/.ssh directory… | |
| Aplazada | Crítica (9.8) | 0.51% | — | Posix 2008AI | 9/12/2024 | 17/6/2026 | The POSIX::2008 package before 0.24 for Perl has a potential _execve50c env buffer overflow. | |
| Modificada | Alta (7.5) | 1.0% | — | Posix Project Posix | 10/6/2022 | 17/6/2026 | This affects all versions of package posix. When invoking the toString method, it will fallback to 0x0 value, as the value of toString is not invokable (not a function), and then it will crash with type-check. | |
| Modificada | Media (5.6) | 0.44% | — | Austin Group Posix | 31/12/2005 | 16/6/2026 | Multiple buffer overflows in the POSIX readdir_r function, as used in multiple packages, allow local users to cause a denial of service and possibly execute arbitrary code via (1) a symlink attack that exploits a race condition between opendir and pathcon calls and changes the filesystem to one with a larger maximum… | |
| Modificada | Baja (3.6) | 0.29% | — | Bill ABT Next Generation Posix Threading | 31/12/2002 | 16/6/2026 | Next Generation POSIX Threading (NGPT) 1.9.0 uses a filesystem-based shared memory entry, which allows local users to cause a denial of service or in threaded processes or spoof files via unknown methods. | |
| Modificada | Alta (10) | 1.9% | — | Microsoft Windows NTAIPosixAI | 1/1/1999 | 16/6/2026 | The OS/2 or POSIX subsystem in NT is enabled. |