Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 35 respecto a la semana anterior
Críticas / altas1418▲ 79 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (6.5) | 0.33% | — | SimdjsonAI | 24/9/2026 | 29/9/2026 | simdjson 4.6.1 contains a one-byte out-of-bounds read vulnerability in dom::parser::parse_unpadded(). A specially crafted truncated JSON document whose final structural token closes a nested array or object can cause json_iterator::walk_document() to access buf[len] after the input buffer has been exhausted. This… | |
| Aplazada | Media (6.9) | 0.45% | — | SimdjsonAI | 14/5/2026 | 17/6/2026 | An integer overflow vulnerability in the simdjson document-builder API allows incorrect buffer size calculations in "string_builder::escape_and_append()" when processing very large input strings on platforms with limited "size_t" width (e.g., 32-bit builds). The overflow can cause insufficient buffer allocation,… | |
| Aplazada | Alta (7.5) | 0.68% | — | Json SimdAI | 8/9/2025 | 17/6/2026 | JSON::SIMD before version 1.07 and earlier for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact. | |
| Analizada | Crítica (9.8) | 0.97% | — | Ermig1979 Simd | 2/4/2024 | 17/6/2026 | A vulnerability was found in ermig1979 Simd up to 6.0.134. It has been declared as critical. This vulnerability affects the function ReadUnsigned of the file src/Simd/SimdMemoryStream.h. The manipulation leads to heap-based buffer overflow. The exploit has been disclosed to the public and may be used. VDB-259054 is… | |
| Modificada | Alta (7.5) | 1.4% | — | Simdjson Project Simdjson | 26/8/2019 | 17/6/2026 | An issue was discovered in the simd-json crate before 0.1.15 for Rust. There is an out-of-bounds read and an incorrect crossing of a page boundary. | |
| Modificada | Media (6.1) | 1.5% | — | Mycolorway Simditor | 13/5/2019 | 17/6/2026 | Simditor through 2.3.21 allows DOM XSS via an onload attribute within a malformed SVG element. | |
| Modificada | Media (6.5) | 1.5% | — | Simdcomp Project Simdcomp | 1/10/2018 | 17/6/2026 | SIMDComp before 0.1.1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) because it can read (and then discard) extra bytes. NOTE: this issue exists because of an incomplete fix for CVE-2018-17427. | |
| Modificada | Media (6.5) | 1.5% | — | Simdcomp Project Simdcomp | 1/10/2018 | 17/6/2026 | SIMDComp before 0.1.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) because it can read (and then discard) extra bytes. | |
| Modificada | Media (6.1) | 0.69% | — | Mycolorway Simditor | 31/1/2018 | 17/6/2026 | Simditor v2.3.11 allows XSS via crafted use of svg/onload=alert in a TEXTAREA element, as demonstrated by Firefox 54.0.1. |