Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6) | 0.36% | — | Microsoft Azure Service Fabric | 8/7/2025 | 17/6/2026 | Improper link resolution before file access ('link following') in Service Fabric allows an authorized attacker to elevate privileges locally. | |
| Analizada | Media (4.3) | 0.30% | — | Jenkins Azure Service Fabric | 22/1/2025 | 17/6/2026 | A missing permission check in Jenkins Azure Service Fabric Plugin 1.6 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of Azure credentials stored in Jenkins. | |
| Analizada | Media (4.3) | 0.22% | — | Jenkins Azure Service Fabric | 22/1/2025 | 17/6/2026 | A cross-site request forgery (CSRF) vulnerability in Jenkins Azure Service Fabric Plugin 1.6 and earlier allows attackers to connect to a Service Fabric URL using attacker-specified credentials IDs obtained through another method. | |
| Analizada | Media (6.6) | 1.1% | — | Microsoft Azure Service Fabric | 8/10/2024 | 17/6/2026 | Azure Service Fabric for Linux Remote Code Execution Vulnerability | |
| Modificada | Media (6.5) | 0.69% | — | Microsoft Azure Service Fabric | 11/7/2023 | 17/6/2026 | Azure Service Fabric on Windows Information Disclosure Vulnerability | |
| Modificada | Media (4.7) | 12% | — | Microsoft Azure Service Fabric | 14/3/2023 | 17/6/2026 | Service Fabric Explorer Spoofing Vulnerability | |
| Modificada | Alta (7) | 0.61% | — | Microsoft Azure Service Fabric | 10/1/2023 | 17/6/2026 | Azure Service Fabric Container Elevation of Privilege Vulnerability | |
| Modificada | Media (4.8) | 18% | — | Microsoft Azure Service Fabric | 11/10/2022 | 17/6/2026 | Service Fabric Explorer Spoofing Vulnerability | |
| Modificada | Media (6.7) | 1.1% | — | Microsoft Service Fabric | 15/6/2022 | 17/6/2026 | Executive Summary An Elevation of Privilege (EOP) vulnerability has been identified within Service Fabric clusters that run Docker containers. Exploitation of this EOP vulnerability requires an attacker to gain remote code execution within a container. All Service Fabric and Docker versions are impacted. | |
| Modificada | Media (6.8) | 1.4% | — | Microsoft Azure Container InstancesMicrosoft Azure Container RegistryMicrosoft Azure Kubernetes ServiceMicrosoft Azure Service Fabric+1 | 11/3/2021 | 19/8/2026 | Azure Virtual Machine Information Disclosure Vulnerability | |
| Modificada | Crítica (9.8) | 2.9% | — | Microsoft Service Fabric | 12/3/2020 | 17/6/2026 | An elevation of privilege vulnerability exists in Service Fabric File Store Service under certain conditions, aka 'Service Fabric Elevation of Privilege'. |