Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2541▼ 354 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.78% | — | Microsoft Purview Ediscovery | 7/8/2026 | 7/8/2026 | Improper access control in Microsoft Purview eDiscovery allows an authorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (10) | 0.90% | — | Microsoft Purview Data Governance | 24/7/2026 | 29/7/2026 | Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (10) | 1.1% | — | Microsoft Purview Ediscovery | 23/4/2026 | 17/6/2026 | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Alta (8.6) | 0.97% | — | Microsoft Purview | 19/3/2026 | 17/6/2026 | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (10) | 1.1% | — | Microsoft Purview | 19/3/2026 | 17/6/2026 | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate privileges over a network. | |
| Modificada | Alta (7.2) | 1.0% | — | Microsoft Purview | 18/12/2025 | 17/6/2026 | '.../...//' in Microsoft Purview allows an authorized attacker to execute code over a network. | |
| Analizada | Crítica (9.8) | 0.67% | — | Microsoft Purview Data Governance | 21/8/2025 | 17/6/2026 | Improper access control in Azure Databricks allows an unauthorized attacker to elevate privileges over a network. | |
| Analizada | Crítica (9.9) | 0.76% | — | Microsoft Purview | 18/7/2025 | 17/6/2026 | Permissive list of allowed inputs in Microsoft Purview allows an authorized attacker to elevate privileges over a network. | |
| Analizada | Media (6.5) | 24% | — | Microsoft Purview | 9/1/2025 | 17/6/2026 | A Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview allows an authorized attacker to disclose information over a network. |