Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2541▼ 392 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (4.3) | 0.26% | — | Rankmath Rank Math SEO PROAI | 6/3/2026 | 17/6/2026 | Missing Authorization vulnerability in Rank Math Rank Math SEO PRO allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rank Math SEO PRO: from n/a through 3.0.95. | |
| Analizada | Media (6.1) | 0.23% | — | Real-time SEO Project Real-time SEO | 21/7/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Real-time SEO for Drupal allows Cross-Site Scripting (XSS).This issue affects Real-time SEO for Drupal: from 2.0.0 before 2.2.0. | |
| Modificada | Media (6.1) | 0.38% | — | Rankmath SEO PRO | 28/5/2023 | 17/6/2026 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in One Rank Math SEO PRO plugin <= 3.0.35 versions. | |
| Modificada | Alta (7.5) | 0.83% | — | Passeo Project Passeo | 6/12/2022 | 17/6/2026 | Passeo is an open source python password generator. Versions prior to 1.0.5 rely on the python `random` library for random value selection. The python `random` library warns that it should not be used for security purposes due to its reliance on a non-cryptographically secure random number generator. As a result a… | |
| Modificada | Alta (8.2) | 1.4% | — | Phantomjs-seo Project Phantomjs-seo | 6/10/2020 | 17/6/2026 | This affects all versions of package phantomjs-seo. It is possible for an attacker to craft a url that will be passed to a PhantomJS instance allowing for an SSRF attack. | |
| Modificada | Media (6.1) | 0.91% | — | Greg's High Performance SEO Project Greg's High Performance SEO | 20/8/2019 | 17/6/2026 | The gregs-high-performance-seo plugin before 1.6.2 for WordPress has XSS in the context of an old browser. | |
| Modificada | Media (4.3) | 1.6% | — | Platinum SEO Project Platinum SEO Plugin | 23/9/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in platinum_seo_pack.php in the Platinum SEO plugin before 1.3.8 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. |