Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2531▼ 362 respecto a la semana anterior
Críticas / altas1338▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
79 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.5) | 0.54% | — | Getgrav Dom-sanitizerAI | 1/10/2026 | 1/10/2026 | A vulnerability has been found in rhukster dom-sanitizer up to 1.0.15. The affected element is the function url of the file src/DOMSanitizer.php of the component SVG Sanitization. Such manipulation leads to incomplete blacklist. It is possible to launch the attack remotely. The exploit has been disclosed to the public… | |
| Aplazada | Baja (2) | 0.36% | — | Rhukster DOM SanitizerAI | 1/10/2026 | 1/10/2026 | A flaw has been found in rhukster dom-sanitizer up to 1.0.15. Impacted is the function DOMSanitizer::isDangerousUrl of the file src/DOMSanitizer.php of the component URL Validation. This manipulation causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been published and may be… | |
| Aplazada | Media (4.7) | 0.27% | — | DomsanitizerAI | 28/9/2026 | 30/9/2026 | DOMSanitizer is a DOM/SVG/MathML Sanitizer for PHP 7.3+. Prior to version 1.0.15, the isDangerousUrl() method is responsible for rejecting dangerous URL values in the href and xlink:href attributes. The weakness is that "javascript:" is rejected as a scheme, while "data:" is rejected only when the literal substring… | |
| Aplazada | Media (5.4) | 0.30% | — | Sanitize-htmlAIApostrophecmsAI | 1/9/2026 | 9/9/2026 | ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer with a clear API. From version 1.9.0 until version 2.17.7, packages/sanitize-html/index.js validates an animation value attribute as one flat URL and does not recognize that attributeName selecting… | |
| Aplazada | Alta (7.5) | 0.49% | — | Owasp Json-sanitizerAI | 28/8/2026 | 9/9/2026 | An issue in the JsonSanitizer.sanitize() component of OWASP json-sanitizer v1.2.3 allows attackers to cause a Denial of Service (DoS) via a crafted input. | |
| Pendiente de análisis | Media (5.1) | 0.55% | — | Rails Html SanitizerAI | 13/8/2026 | 18/9/2026 | rails-html-sanitizer is responsible for sanitizing HTML fragments in Rails applications. From 1.0.3 until 1.7.1, Rails::HTML::PermitScrubber restricted SVG reference elements in SVG_ALLOW_LOCAL_HREF only when they used xlink:href, even though browsers also accept the plain href attribute. Applications with non-default… | |
| Modificada | Alta (8.2) | 0.80% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | Inefficient Algorithmic Complexity vulnerability in the traversal engine in rrrene html_sanitize_ex allows an unauthenticated remote attacker to exhaust server CPU and memory via a flat run of sibling elements in sanitized HTML. The list clause of HtmlSanitizeEx.Traverser.traverse/2 recurses on the tail of a sibling… | |
| Modificada | Alta (8.2) | 0.80% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | Inefficient Regular Expression Complexity vulnerability in the CSS scrubber in rrrene html_sanitize_ex allows an unauthenticated remote attacker to exhaust server CPU via a long CSS declaration in sanitized HTML. The declaration regex in HtmlSanitizeEx.Scrubber.CSS.scrub/1 matches the property name with an unbounded… | |
| Modificada | Baja (2.3) | 0.45% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in the CSS scrubber in rrrene html_sanitize_ex allows an unauthenticated remote attacker to inject CSS at-rules, including an import of a remote stylesheet, into a page served to other users.… | |
| Modificada | Baja (2.3) | 0.51% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | Inclusion of Functionality from Untrusted Control Sphere vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows a remote attacker to load a document of their choosing into a trusted page via the data attribute of an <object> element in sanitized HTML. object is the one URI-bearing element in… | |
| Modificada | Baja (2.3) | 0.57% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows a remote attacker to force visitors of a page to navigate to a site of the attacker's choosing via a <meta http-equiv="refresh"> element in sanitized HTML. HtmlSanitizeEx.html5/1 keeps… | |
| Modificada | Media (4.8) | 0.40% | — | Rrrene Htmlsanitizeex | 6/8/2026 | 19/8/2026 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows an unauthenticated remote attacker to retarget a form already on the rendering page and receive whatever the victim submits, including credentials, via the form and formaction attributes on an… | |
| Aplazada | Media (5.4) | 0.23% | — | ApostrophecmsAISanitize-htmlAI | 12/6/2026 | 17/6/2026 | ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer with a clear API. Versions of sanitize-html prior to 2.17.5 use `allowedSchemesAppliedToAttributes` (default: `['href', 'src', 'cite']`) to gate the `naughtyHref()` function that blocks dangerous URI… | |
| Aplazada | Crítica (9.3) | 0.69% | — | ApostrophecmsAISanitize-htmlAI | 12/6/2026 | 10/9/2026 | ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer with a clear API. Under the default configuration, versions of `sanitize-html` prior to 2.17.4 can turn attacker-controlled content inside a disallowed `xmp` element into live HTML or JavaScript. This… | |
| Aplazada | Media (5.1) | 0.44% | — | Typo3 Html-sanitizerAI | 8/6/2026 | 23/7/2026 | Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2. | |
| Aplazada | Baja (2.1) | 0.44% | — | Typo3 Html-sanitizerAI | 8/6/2026 | 23/7/2026 | When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sanitizer but accepted by browsers as valid end tags, allowing subsequent content to escape sanitization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer… | |
| Aplazada | Media (4.7) | 0.44% | — | DomsanitizerAI | 17/4/2026 | 17/6/2026 | DOMSanitizer is a DOM/SVG/MathML Sanitizer for PHP 7.3+. Prior to version 1.0.10, DOMSanitizer::sanitize() allows <style> elements in SVG content but never inspects their text content. CSS url() references and @import rules pass through unfiltered, causing the browser to issue HTTP requests to attacker-controlled… | |
| Analizada | Media (6.1) | 0.28% | — | ApostrophecmsApostrophecms Sanitize-html | 15/4/2026 | 17/6/2026 | ApostropheCMS is an open-source Node.js content management system. A regression introduced in commit 49d0bb7, included in versions 2.17.1 of the ApostropheCMS-maintained sanitize-html package bypasses allowedTags enforcement for text inside nonTextTagsArray elements (textarea and option). ApostropheCMS version 4.28.0… | |
| Aplazada | Baja (2.1) | 0.32% | — | Itsourcecode Sanitize OR Validate This InputAI | 6/4/2026 | 24/7/2026 | A flaw has been found in itsourcecode sanitize or validate this input 1.0. This impacts an unknown function of the file /borrowedequip.php of the component Parameter Handler. This manipulation of the argument emp_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been published… | |
| Analizada | Alta (8.2) | 0.42% | — | Express XSS Sanitizer Project Express XSS Sanitizer | 27/3/2026 | 17/6/2026 | Express XSS Sanitizer is Express 4.x and 5.x middleware which sanitizes user input data (in req.body, req.query, req.headers and req.params) to prevent Cross Site Scripting (XSS) attack. A vulnerability has been identified in versions prior to 2.0.2 where restrictive sanitization configurations are silently ignored.… | |
| Aplazada | Baja (2.1) | 0.32% | — | Itsourcecode Sanitize OR Validate This InputAI | 24/3/2026 | 17/6/2026 | A vulnerability was determined in itsourcecode sanitize or validate this input 1.0. This issue affects some unknown processing of the file /admin/subjects.php of the component Parameter Handler. This manipulation of the argument subject_code causes sql injection. The attack is possible to be carried out remotely. The… | |
| Analizada | Media (6.3) | 0.40% | — | Htmlsanitizer Project Htmlsanitizer | 4/2/2026 | 17/6/2026 | HtmlSanitizer is a .NET library for cleaning HTML fragments and documents from constructs that can lead to XSS attacks. Prior to versions 9.0.892 and 9.1.893-beta, if the template tag is allowed, its contents are not sanitized. The template tag is a special tag that does not usually render its contents, unless the… | |
| Analizada | Alta (8.6) | 0.25% | — | Owasp Java Html Sanitizer | 26/11/2025 | 17/6/2026 | OWASP Java HTML Sanitizer is a configureable HTML Sanitizer written in Java, allowing inclusion of HTML authored by third-parties in web applications while protecting against XSS. In version 20240325.1, OWASP java html sanitizer is vulnerable to XSS if HtmlPolicyBuilder allows noscript and style tags with allowTextIn… | |
| Aplazada | Media (5.3) | 0.45% | — | Express-xss-sanitizerAI | 14/9/2025 | 17/6/2026 | The express-xss-sanitizer (aka Express XSS Sanitizer) package through 2.0.0 for Node.js has an unbounded recursion depth in sanitize in lib/sanitize.js for a JSON request body. | |
| Analizada | Media (6.1) | 0.27% | — | Apostrophecms Sanitize-html | 8/9/2025 | 17/6/2026 | 'sanitize-html' prior to version 1.0.3 is vulnerable to Cross-site Scripting (XSS). The function 'naughtyHref' doesn't properly validate the hyperreference (`href`) attribute in anchor tags (`<a>`), allowing bypasses that contain different casings, whitespace characters, or hexadecimal encodings. |