Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2684▼ 80 respecto a la semana anterior
Críticas / altas1442▲ 302 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.7) | 0.11% | — | Xilinx RUN TimeAI | 24/11/2025 | 17/6/2026 | Insufficient validation within Xilinx Run Time framework could allow a local attacker to escalate privileges from user space to kernel space, potentially compromising confidentiality, integrity, and/or availability. | |
| Aplazada | Alta (7.3) | 0.18% | — | Xilinx RUN TimeAI | 24/11/2025 | 17/6/2026 | Inadequate lock protection within Xilinx Run time may allow a local attacker to trigger a Use-After-Free condition potentially resulting in loss of confidentiality or availability | |
| Aplazada | Alta (7.3) | 0.13% | — | Xilinx RUN Time EnvironmentAI | 24/11/2025 | 17/6/2026 | A buffer overflow with Xilinx Run Time Environment may allow a local attacker to read or corrupt data from the advanced extensible interface (AXI), potentially resulting in loss of confidentiality, integrity, and/or availability. | |
| Modificada | Crítica (9.8) | 1.3% | — | Thalesgroup Sentinel LDK Run-time Environment | 16/6/2021 | 17/6/2026 | The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947. | |
| Modificada | Crítica (9.8) | 2.6% | — | Objective Open Cbor Run-time Project Objective Open Cbor Run-time | 17/9/2020 | 17/6/2026 | A memory corruption vulnerability in Objective Open CBOR Run-time (oocborrt) in versions before 2020-08-12 could allow an attacker to execute code via crafted Concise Binary Object Representation (CBOR) input to the cbor2json decoder. An uncaught error while decoding CBOR Major Type 3 text strings leads to the use of… | |
| Modificada | Media (6.5) | 1.7% | — | Redhat Jboss Fuse Service WorksRedhat Jboss Overlord RUN Time Governance | 22/4/2014 | 17/6/2026 | JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java code via an MVFLEX Expression Language (MVEL) expression. NOTE: some of these details are obtained from third party information. | |
| Modificada | Media (4.3) | 1.3% | — | 7T IgssSafenet-inc Sentinel Hasp Run-timeSafenet-inc Sentinel Hasp SDK | 17/12/2011 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in the Admin Control Center in Sentinel HASP Run-time Environment 5.95 and earlier in SafeNet Sentinel HASP (formerly Aladdin HASP SRM) run-time installer before 6.x and SDK before 5.11, as used in 7 Technologies (7T) IGSS 7 and other products, when Firefox 2.0 is used, allows… |