Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2561▼ 316 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.5) | 0.16% | — | IBM Security Verify Identity Access Reverse ProxyAI | 15/9/2026 | 16/9/2026 | IBM Security Verify Identity Access Reverse Proxy in certain configurations may provide weaker than expected cryptographic validation of user supplied data. | |
| Analizada | Media (5.3) | 0.30% | — | Reverse Proxy Header Project Reverse Proxy Header | 30/10/2025 | 17/6/2026 | Improper Validation of Consistency within Input vulnerability in Drupal Reverse Proxy Header allows Manipulating User-Controlled Variables.This issue affects Reverse Proxy Header: from 0.0.0 before 1.1.2. | |
| Modificada | Alta (7.5) | 2.2% | — | Microsoft YET Another Reverse Proxy | 23/6/2023 | 17/6/2026 | Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability | |
| Modificada | Alta (8.8) | 0.45% | — | Jenkins Reverse Proxy Auth | 16/5/2023 | 17/6/2026 | A cross-site request forgery (CSRF) vulnerability in Jenkins Reverse Proxy Auth Plugin 1.7.4 and earlier allows attackers to connect to an attacker-specified LDAP server using attacker-specified credentials. | |
| Modificada | Media (6.5) | 0.69% | — | Jenkins Reverse Proxy Auth | 15/11/2022 | 17/6/2026 | Jenkins Reverse Proxy Auth Plugin 1.7.3 and earlier stores the LDAP manager password unencrypted in the global config.xml file on the Jenkins controller where it can be viewed by attackers with access to the Jenkins controller file system. | |
| Modificada | Alta (7.5) | 3.5% | — | Microsoft YET Another Reverse Proxy | 15/4/2022 | 17/6/2026 | YARP Denial of Service Vulnerability | |
| Modificada | Crítica (9.8) | 1.4% | — | Pexip InfinityPexip Reverse Proxy AND Turn Server | 25/9/2020 | 17/6/2026 | Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN. | |
| Modificada | Baja (3.3) | 0.34% | — | Jenkins Reverse Proxy Auth | 5/4/2018 | 17/6/2026 | An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxySecurityRealm#authContext that allows attackers with local file system access to obtain a list of authorities for logged in users. | |
| Modificada | Media (5) | 2.5% | — | At32 Reverse Proxy | 8/10/2012 | 16/6/2026 | at32 Reverse Proxy 1.060.310 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a long string in an HTTP header field, as demonstrated using the If-Unmodified-Since field. |