Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2541▼ 407 respecto a la semana anterior
Críticas / altas1311▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)59▼ 467 respecto a la semana anterior
100 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.1) | 0.31% | — | Saltosystem Proaccess SpaceAI | 16/7/2026 | 17/7/2026 | SALTO ProAccess Space software using the tenancy feature / logical partition is vulnerable to a privilege escalation attack that could allow an authorized attacker to access any space managed by the affected product. | |
| Aplazada | Crítica (9.1) | 0.51% | — | Crypt SaltedhashAI | 20/5/2026 | 20/7/2026 | Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography. | |
| Aplazada | Alta (7.5) | 0.49% | — | Crypt SaltedhashAI | 20/5/2026 | 23/7/2026 | Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks. These versions use Perl's built-in eq comparison. Discrepencies in timing could be used to guess the underlying hash. | |
| Aplazada | Media (5.1) | 0.44% | — | SaltcornAI | 7/5/2026 | 17/6/2026 | Saltcorn is an extensible, open source, no-code database application builder. Prior to versions 1.4.6, 1.5.6, and 1.6.0-beta.5, Saltcorn validates the post-login dest parameter with a string check that only blocks :/ and //. Because all WHATWG-compliant browsers normalise backslashes (\) to forward slashes (/) for… | |
| Analizada | Crítica (9.9) | 0.44% | — | Saltcorn | 24/4/2026 | 17/6/2026 | Saltcorn is an extensible, open source, no-code database application builder. Prior to 1.4.6, 1.5.6, and 1.6.0-beta.5, a SQL injection vulnerability in Saltcorn’s mobile-sync routes allows any authenticated low-privilege user with read access to at least one table to inject arbitrary SQL through sync parameters. This… | |
| Analizada | Alta (8.2) | 0.43% | — | Saltcorn | 10/4/2026 | 17/6/2026 | Saltcorn is an extensible, open source, no-code database application builder. Prior to 1.4.5, 1.5.5, and 1.6.0-beta.4, the POST /sync/offline_changes endpoint allows an unauthenticated attacker to create arbitrary directories and write a changes.json file with attacker-controlled JSON content anywhere on the server… | |
| Aplazada | Alta (7.5) | 0.46% | — | Saltstack SaltAI | 30/1/2026 | 17/6/2026 | Salt contains an authentication protocol version downgrade weakness that can allow a malicious minion to bypass newer authentication/security features by using an older request payload format, enabling minion impersonation and circumventing protections introduced in response to prior issues. | |
| Aplazada | Alta (7.3) | 0.20% | — | Saltstack SaltAIJuniper JunosAI | 30/1/2026 | 17/6/2026 | Salt's junos execution module contained an unsafe YAML decode/load usage. A specially crafted YAML payload processed by the junos module could lead to unintended code execution under the context of the Salt process. | |
| Aplazada | Crítica (9.2) | 0.26% | — | Siemens ComosAISiemens JT Bi-directional Translator FOR StepAISiemens NXAISiemens Simcenter 3DAI+5 | 9/12/2025 | 30/9/2026 | A vulnerability has been identified in COMOS V10.6 (All versions < V10.6.1), COMOS V10.6 (All versions < V10.6.1), JT Bi-Directional Translator for STEP (All versions), NX V2412 (All versions < V2412.8900 with Cloud Entitlement (bundled as NX X)), NX V2506 (All versions < V2506.6000 with Cloud Entitlement (bundled as… | |
| Aplazada | Baja (2.9) | 0.40% | — | Saltbo ZpanAI | 11/7/2025 | 17/6/2026 | A vulnerability was found in saltbo zpan up to 1.6.5/1.7.0-beta2. It has been rated as problematic. This issue affects the function NewToken of the file zpan/internal/app/service/token.go of the component JSON Web Token Handler. The manipulation with the input 123 leads to use of hard-coded password. The attack may be… | |
| Analizada | Alta (7.5) | 1.0% | — | Saltstack Salt | 13/6/2025 | 17/6/2026 | Directory traversal vulnerability in recv_file method allows arbitrary files to be written to the master cache directory. | |
| Aplazada | Media (5.6) | 0.14% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Worker process denial of service through file read operation. .A vulnerability exists in the Master's “pub_ret” method which is exposed to all minions. The un-sanitized input value “jid” is used to construct a path which is then opened for reading. An attacker could exploit this vulnerabilities by attempting to read… | |
| Aplazada | Media (5.6) | 0.18% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | File contents overwrite the VirtKey class is called when “on-demand pillar” data is requested and uses un-validated input to create paths to the “pki directory”. The functionality is used to auto-accept Minion authentication keys based on a pre-placed “authorization file” at a specific location and is present in the… | |
| Aplazada | Alta (8.1) | 0.18% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Arbitrary event injection on Salt Master. The master's "_minion_event" method can be used by and authorized minion to send arbitrary events onto the master's event bus. | |
| Aplazada | Media (4.2) | 0.29% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Directory traversal attack in minion file cache creation. The master's default cache is vulnerable to a directory traversal attack. Which could be leveraged to write or overwrite 'cache' files outside of the cache directory. | |
| Aplazada | Media (6.7) | 0.18% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | An attacker with access to a minion key can exploit the 'on demand' pillar functionality with a specially crafted git url which could cause and arbitrary command to be run on the master with the same privileges as the master process. | |
| Aplazada | Alta (8.1) | 0.17% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Minion event bus authorization bypass. An attacker with access to a minion key can craft a message which may be able to execute a job on other minions (>= 3007.0). | |
| Aplazada | Media (6.4) | 0.15% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate by the module. This is not pki authentication, as the caller does not need access to the corresponding private key for the authentication attempt to be… | |
| Aplazada | Baja (2.7) | 0.26% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Salt's request server is vulnerable to replay attacks when not using a TLS encrypted transport. | |
| Aplazada | Baja (2.7) | 0.26% | — | Saltstack SaltAI | 13/6/2025 | 17/6/2026 | Multiple methods in the salt master skip minion token validation. Therefore a misbehaving minion can impersonate another minion. | |
| Aplazada | Alta (8.1) | 0.79% | — | Loftocean TinysaltAIPHPAI | 10/6/2025 | 17/6/2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in LoftOcean TinySalt tinysalt allows PHP Local File Inclusion.This issue affects TinySalt: from n/a through < 3.10.0. | |
| Aplazada | Media (5.3) | 0.47% | — | Perl Crypt SaltAI | 2/4/2025 | 17/6/2026 | Crypt::Salt for Perl version 0.01 uses insecure rand() function when generating salts for cryptographic purposes. | |
| Aplazada | Crítica (9.8) | 0.77% | — | CozystayAITinysaltAI | 19/3/2025 | 17/6/2026 | The CozyStay and TinySalt plugins for WordPress are vulnerable to PHP Object Injection in all versions up to, and including, 1.7.0, and in all versions up to, and including 3.9.0, respectively, via deserialization of untrusted input in the 'ajax_handler' function. This makes it possible for unauthenticated attackers… | |
| Aplazada | Alta (8.7) | 0.19% | — | Gallagher Command CentreAISaltoAI | 10/3/2025 | 17/6/2026 | Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof the SALTO server. This issue affects all versions of Gallagher Command Centre prior to 9.20.1043. | |
| Aplazada | Media (6.7) | 0.19% | — | Saltstack SaltAI | 14/11/2024 | 17/6/2026 | The Salt-SSH pre-flight option copies the script to the target at a predictable path, which allows an attacker to force Salt-SSH to run their script. If an attacker has access to the target VM and knows the path to the pre-flight script before it runs they can ensure Salt-SSH runs their script with the privileges of… |