Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2806▲ 5 respecto a la semana anterior
Críticas / altas1465▲ 246 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)77▼ 441 respecto a la semana anterior
–

73 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.5)——Radiustheme Review SchemaAI1/10/20261/10/2026
Missing Authorization vulnerability in Mamunur Rashid Review Schema review-schema allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Review Schema: 3.1.0.
AplazadaMedia (5.3)0.29%—Radiustheme Review SchemaAI30/9/202630/9/2026
Unauthenticated Insecure Direct Object References (IDOR) in Review Schema <= 3.1.0 versions.
AplazadaBaja (3.5)0.14%—ALL IN ONE Schemas Schema AND Structured Data FOR WP AND AMPAI30/9/202630/9/2026
The Schema & Structured Data for WP & AMP WordPress plugin before 1.67 does not perform a capability check when saving several of its fields, nor escape them when outputting them back, allowing users with the editor role and above to inject arbitrary web scripts that execute when a higher privileged user views the…
En análisisAlta (7.5)0.36%—Apache Xmlschema WalkerAI29/9/202629/9/2026
The Apache XmlSchema walker (xmlschema-walker) doesn't detect cycles in type derivation, substitution groups, model groups or attribute groups. A malicious schema with such a cycle can make the walker recurse until the stack overflows, causing a denial of service. Users are recommended to upgrade to version 2.3.3,…
En análisisAlta (7.5)0.36%—Apache XmlschemaAI29/9/202629/9/2026
Apache XmlSchema doesn't limit how deeply schema structures can be nested when it builds its schema model, so a malicious schema can make parsing recurse until the stack overflows. This causes a denial of service. Users are recommended to upgrade to version 2.3.3, which fixes this issue.
En análisisAlta (7.5)0.36%—Apache XmlschemaAI29/9/202629/9/2026
Apache XmlSchema doesn't limit how deeply schema imports and includes can be nested, so a malicious schema can make parsing recurse until the stack overflows. This causes a denial of service. Users are recommended to upgrade to version 2.3.3, which fixes this issue.
AplazadaMedia (5.3)0.62%—Wordlift AI Powered SEO SchemaAI19/9/202621/9/2026
The WordLift – AI powered SEO – Schema plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.54.10 via the JSON-LD REST API endpoints. This is due to the plugin registering the /wordlift/v1/jsonld/ routes (jsonld/{id}, jsonld/http/{item_id},…
AplazadaBaja (2.7)0.30%—WP AMP Schema AND Structured Data FOR WP AND AMPAI16/9/202617/9/2026
The Schema & Structured Data for WP & AMP WordPress plugin before 1.66 does not check that a user is allowed to edit the specific post they request schema generation for, allowing users with the contributor role and above to obtain the content of other users' draft, pending, private and password protected posts.
AplazadaMedia (5.3)0.32%—Schema AND Structured Data FOR WP AND AMPAI16/9/202617/9/2026
The Schema & Structured Data for WP & AMP WordPress plugin before 1.66 does not correctly verify the ownership or the moderation status of a comment before returning its content, allowing unauthenticated users to read the content of comments still awaiting moderation or marked as spam.
AplazadaMedia (5.3)0.26%—Pdfme SchemasAI31/8/202610/9/2026
@pdfme/schemas before 5.5.9 contains a cross-site scripting vulnerability in the SVG schema plugin that renders user-supplied SVG content directly to innerHTML without sanitization. Attackers can inject malicious SVG with embedded scripts, event handlers, or foreignObject elements to execute arbitrary JavaScript in…
AplazadaMedia (5.3)0.31%—Pdfme SchemasAI31/8/202610/9/2026
@pdfme/schemas before 5.5.9 contains a cross-site scripting vulnerability in the Select schema plugin that fails to sanitize option values before interpolating them into HTML via innerHTML. Attackers can supply malicious templates with crafted option values containing HTML and JavaScript to execute arbitrary code in…
AplazadaBaja (2.1)0.20%—Pdfme SchemasAI31/8/202610/9/2026
pdfme schemas before 5.5.10 contains a cross-site scripting vulnerability in the multiVariableText property panel that assigns unsanitized i18n label values to innerHTML. Attackers who control label overrides through options.labels can inject arbitrary JavaScript that executes when users open the Designer and select a…
AnalizadaMedia (6.3)0.20%—Mongodb Odbc DriverMongodb SQL Schema Builder CLI12/8/202629/9/2026
MongoDB Schema Manager and MongoDB Atlas SQL ODBC Driver do not validate the scheme of the authorization and token endpoints returned by an OIDC issuer's discovery document. A user induced to connect to an uncontrolled MongoDB deployment using MONGODB-OIDC authentication may have an uncontrolled URI dispatched to…
AnalizadaMedia (6.8)0.12%—Mongodb SQL Schema Builder CLI12/8/202629/9/2026
MongoDB SQL Schema Builder CLI records its startup configuration to standard output and, when file logging is enabled, to a log file on disk. Certain connection settings were written without redaction, so authentication material supplied by the operator could appear in plaintext in that diagnostic output. A local user…
AplazadaCrítica (9.3)0.46%—FirecrawlAIJson-schema-ref-parserAI10/8/202618/9/2026
Firecrawl turns entire websites into LLM-ready markdown or structured data. Prior to 2.11.32, a critical arbitrary file read vulnerability exists in Firecrawl's extraction functionality due to unsafe schema dereferencing of user-supplied JSON schemas in apps/api/src/lib/extract/helpers/dereference-schema.ts. The…
AplazadaAlta (7.4)0.39%—FastschemaAI10/8/202628/8/2026
A time-of-check/time-of-use (TOCTOU) race condition in fastschema through v0.15.1 allows an unauthenticated remote attacker to bypass the OTP attempt limit on the account recovery flow, enabling brute-force attacks on 6-digit OTP codes.
AplazadaMedia (5.4)0.26%—FastschemaAI10/8/202628/8/2026
A stored cross-site scripting (XSS) vulnerability in fastschema through v0.15.1 allows a low-privileged authenticated user to upload an SVG file containing malicious JavaScript by bypassing the MIME type allow-list check.
AplazadaAlta (7.5)0.61%—FastschemaAI10/8/202628/8/2026
A NULL pointer dereference vulnerability in fastschema through v0.15.1 allows an unauthenticated remote attacker to crash the server process with a single HTTP request. The sendOTPEmail function in pkg/auth/local.go dereferences a pointer obtained from an unchecked error path without validating it is non-nil, causing…
AplazadaBaja (2.1)0.46%—Sagold Json-schema-libraryAI17/7/202617/7/2026
A security vulnerability has been detected in sagold json-schema-library 11.5.0/11.5.1. This impacts the function parsePropertyDependencies of the file src/keywords/propertyDependencies.ts. The manipulation leads to improperly controlled modification of object prototype attributes. The attack can be initiated…
AplazadaBaja (2.1)0.46%—Apidevtools Json Schema REF ParserAI9/7/20269/7/2026
A weakness has been identified in apidevtools json-schema-ref-parser up to 15.3.5. This impacts the function Refs.set/Pointer.set in the library lib/pointer.ts. Executing a manipulation can lead to improperly controlled modification of object prototype attributes. The attack can be launched remotely. Upgrading to…
AplazadaCrítica (9.1)0.66%—Five Star Business ProfileAISchemaAI2/7/20262/7/2026
Editor Arbitrary Code Execution in Five Star Business Profile and Schema <= 2.3.19 versions.
AplazadaAlta (8.4)0.13%—Quanos Schema ST4AI17/6/202617/6/2026
Quanos SCHEMA ST4 on-premises contains a local privilege escalation vulnerability in the Client Update Service. The update service runs as NT AUTHORITY\SYSTEM and exposes a .NET Remoting interface over a named pipe without sufficient access controls or authorization. A local authenticated low-privileged user can…
AplazadaAlta (8.4)0.27%—Quanos Schema ST4AI17/6/202617/6/2026
Quanos SCHEMA ST4 on-premises contains a local privilege escalation vulnerability in the Client Update Service due to insecure deserialization in the .NET Remoting service. The service is configured with TypeFilterLevel.Full and is bound to local interfaces only through named pipes. A local authenticated attacker can…
AplazadaCrítica (9.1)0.45%—Schema AND Structured Data FOR WP AND AMPAI10/6/202623/7/2026
The Schema & Structured Data for WP & AMP WordPress plugin before 1.60 does not check user capabilities on its frontend AJAX file-upload handlers and does not validate the actual content of uploaded files against the endpoint's intended media type, allowing unauthenticated users to upload any file type accepted by…
AnalizadaBaja (2.1)0.18%—Opentelemetry Telemetry Schema Files4/6/202622/7/2026
OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.0.17, `go.opentelemetry.io/otel/schema/v1.0` and `go.opentelemetry.io/otel/schema/v1.1` leaks one file descriptor on each successful `ParseFile` call. `ParseFile` opens the schema file and passes it to `Parse` without closing it; repeated…