Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2541▼ 392 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
–

7 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (4.3)0.26%—Rankmath Rank Math SEO PROAI6/3/202617/6/2026
Missing Authorization vulnerability in Rank Math Rank Math SEO PRO allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rank Math SEO PRO: from n/a through 3.0.95.
AnalizadaMedia (6.1)0.23%—Real-time SEO Project Real-time SEO21/7/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Real-time SEO for Drupal allows Cross-Site Scripting (XSS).This issue affects Real-time SEO for Drupal: from 2.0.0 before 2.2.0.
ModificadaMedia (6.1)0.38%—Rankmath SEO PRO28/5/202317/6/2026
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in One Rank Math SEO PRO plugin <= 3.0.35 versions.
ModificadaAlta (7.5)0.83%—Passeo Project Passeo6/12/202217/6/2026
Passeo is an open source python password generator. Versions prior to 1.0.5 rely on the python `random` library for random value selection. The python `random` library warns that it should not be used for security purposes due to its reliance on a non-cryptographically secure random number generator. As a result a…
ModificadaAlta (8.2)1.4%—Phantomjs-seo Project Phantomjs-seo6/10/202017/6/2026
This affects all versions of package phantomjs-seo. It is possible for an attacker to craft a url that will be passed to a PhantomJS instance allowing for an SSRF attack.
ModificadaMedia (6.1)0.91%—Greg's High Performance SEO Project Greg's High Performance SEO20/8/201917/6/2026
The gregs-high-performance-seo plugin before 1.6.2 for WordPress has XSS in the context of an old browser.
ModificadaMedia (4.3)1.6%—Platinum SEO Project Platinum SEO Plugin23/9/201316/6/2026
Cross-site scripting (XSS) vulnerability in platinum_seo_pack.php in the Platinum SEO plugin before 1.3.8 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.