Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2544▼ 345 respecto a la semana anterior
Críticas / altas1339▲ 68 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
36 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 0.92% | — | Go-openapi SwagAI | 17/9/2026 | 22/9/2026 | go-openapi/swag jsonutils before 0.27.1 contains a stack overflow vulnerability in ordered JSON parsing and serialization due to unbounded recursion with no depth limit. Remote unauthenticated attackers can submit deeply nested JSON documents to services accepting OpenAPI specifications, causing fatal stack overflow… | |
| Aplazada | Baja (2.1) | 0.37% | — | Eyaushev Swagger-testcase-mcpAI | 14/8/2026 | 18/8/2026 | A security flaw has been discovered in eyaushev swagger-testcase-mcp 5babb27c951fb404bc2b25ec80593616e49054e5. This vulnerability affects the function loadSource of the file src/utils/swagger-parser.ts of the component fetch_swagger. Performing a manipulation results in server-side request forgery. The attack is… | |
| Aplazada | Media (4.3) | 0.28% | — | Swagger UIAIWso2 API PublisherAI | 6/8/2026 | 29/9/2026 | The Swagger UI Try-out console within the API Publisher documentation allows an external Swagger API definition URL to be loaded, overriding the existing API definitions within the Publisher portal. By exploiting this vulnerability, malicious actors can deceive users into interacting with these overwritten API… | |
| Aplazada | Alta (8.3) | 0.48% | — | Swagger-typescript-apiAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/schema-routes/schema-routes.ts passes OpenAPI path keys through parseRouteName to templates/default/procedure-call.ejs and templates/modular/procedure-call.ejs without escaping JavaScript template… | |
| Aplazada | Alta (8.3) | 0.48% | — | Swagger-typescript-apiAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/schema-parser/base-schema-parsers/enum.ts passes components.schemas.*.enum[i] values to Ts.StringValue in src/configuration.ts without escaping before templates/base/enum-data-contract.ejs renders… | |
| Aplazada | Media (6.1) | 0.32% | — | Swagger-typescript-api Swagger Typescript APIAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts warmUpRemoteSchemasCache resolves external $ref URLs and fetchRemoteSchemaDocument uses isHttpUrl to fetch any http or https target without private IP, redirect, DNS rebinding,… | |
| Aplazada | Alta (8.3) | 0.48% | — | Swagger-typescript-apiAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/code-gen-process.ts createApiConfig copies servers[0].url into apiConfig.baseUrl, and templates/base/http-clients/fetch-http-client.ejs interpolates apiConfig.baseUrl into the generated HttpClient baseUrl… | |
| Aplazada | Alta (8.3) | 0.48% | — | Swagger-typescript-apiAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, templates/base/http-clients/axios-http-client.ejs interpolates servers[0].url from src/code-gen-process.ts into the HttpClient constructor without escaping, allowing an attacker-controlled OpenAPI spec to… | |
| Aplazada | Alta (7.4) | 0.44% | — | Swagger-typescript-api Swagger Typescript APIAI | 29/7/2026 | 30/7/2026 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts getRemoteRequestHeaders forwards --authorizationToken to every URL fetched by fetchRemoteSchemaDocument while warmUpRemoteSchemasCache resolves external $ref URLs, allowing an… | |
| Analizada | Media (6.5) | 0.53% | — | Smartbear Swagger Petstore | 25/9/2025 | 17/6/2026 | An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/cart, the server returns a 404-error page exposing sensitive information including the Servlet name (default) and server version | |
| Analizada | Media (6.1) | 0.38% | — | Smartbear Swagger Petstore | 25/9/2025 | 17/6/2026 | Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted script to the /api/v3/pet | |
| Analizada | Media (6.5) | 0.43% | — | Smartbear Swagger Petstore | 25/9/2025 | 17/6/2026 | An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via the DELETE endpoint | |
| Aplazada | Media (6.3) | 0.20% | — | Skoda Mib3AIVolkswagen Mib3AI | 28/6/2025 | 17/6/2026 | The MIB3 infotainment unit used in Skoda and Volkswagen vehicles does not incorporate any privilege separation for the proprietary inter-process communication mechanism, leaving attackers with presence in the system an ability to undermine access control restrictions implemented at the operating system level. The… | |
| Aplazada | Alta (8) | 0.55% | — | Volkswagen Mib3AI | 28/6/2025 | 17/6/2026 | A specific flaw exists within the Bluetooth stack of the MIB3 unit. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow when receiving fragmented HCI packets on a channel. An attacker can leverage this vulnerability to bypass the MTU check on a channel… | |
| Aplazada | Media (6.7) | 0.21% | — | Volkswagen Mib3AI | 28/6/2025 | 17/6/2026 | There is no memory isolation between CPU cores of the MIB3 infotainment. This fact allows an attacker with access to the main operating system to compromise the CPU core responsible for CAN message processing. The vulnerability was originally discovered in Skoda Superb III car with MIB3 infotainment unit OEM part… | |
| Aplazada | Media (5.2) | 0.32% | — | Volkswagen Mib3AI | 28/6/2025 | 17/6/2026 | A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attacker with physical access to the MIB3 ECU to bypass firmware signature verification and run arbitrary code in the infotainment system at boot process. | |
| Aplazada | Baja (3.3) | 0.22% | — | Volkswagen Mib3AI | 28/6/2025 | 17/6/2026 | An integer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access to the vehicle to cause a denial-of-service of the infotainment system. | |
| Analizada | Media (5.4) | 0.22% | — | Vinayjain Embed Swagger UI | 30/1/2025 | 17/6/2026 | The Embed Swagger UI plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpsgui' shortcode in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with… | |
| Modificada | Media (6.1) | 0.56% | — | Http-swagger Project Http-swagger | 29/2/2024 | 17/6/2026 | http-swagger before 1.2.6 allows XSS via PUT requests, because a file that has been uploaded (via httpSwagger.WrapHandler and *webdav.memFile) can subsequently be accessed via a GET request. NOTE: this is independently fixable with respect to CVE-2022-24863, because (if a solution continued to allow PUT requests)… | |
| Modificada | Media (5.3) | 2.3% | — | Smartbear Swagger UI | 15/1/2024 | 17/6/2026 | fastify-swagger-ui is a Fastify plugin for serving Swagger UI. Prior to 2.1.0, the default configuration of `@fastify/swagger-ui` without `baseDir` set will lead to all files in the module's directory being exposed via http routes served by the module. The vulnerability is fixed in v2.1.0. Setting the `baseDir` option… | |
| Modificada | Media (6.3) | 0.39% | — | Volkswagen Id.3 Firmware | 10/11/2023 | 17/6/2026 | Attacker can perform a Denial of Service attack to crash the ICAS 3 IVI ECU in a Volkswagen ID.3 (and other vehicles of the VW Group with the same hardware) and spoof volume setting commands to irreversibly turn on audio volume to maximum via REST API calls. | |
| Modificada | Alta (7.5) | 1.3% | — | Rswag Project Rswag | 14/7/2023 | 17/6/2026 | rswag before 2.10.1 allows remote attackers to read arbitrary JSON and YAML files via directory traversal, because rswag-api can expose a file that is not the OpenAPI (or Swagger) specification file of a project. | |
| Modificada | Alta (7.5) | 0.30% | — | Shopware Swagpaypal | 3/2/2023 | 17/6/2026 | SwagPayPal is a PayPal integration for shopware/platform. If JavaScript-based PayPal checkout methods are used (PayPal Plus, Smart Payment Buttons, SEPA, Pay Later, Venmo, Credit card), the amount and item list sent to PayPal may not be identical to the one in the created order. The problem has been fixed with version… | |
| Modificada | Crítica (9.3) | 1.3% | — | Purestorage Pure Swagger | 11/7/2022 | 17/6/2026 | The PureStorage-OpenConnect/swagger repository through 1.1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely. | |
| Modificada | Alta (7.5) | 2.4% | — | Http-swagger Project Http-swagger | 18/4/2022 | 17/6/2026 | http-swagger is an open source wrapper to automatically generate RESTful API documentation with Swagger 2.0. In versions of http-swagger prior to 1.2.6 an attacker may perform a denial of service attack consisting of memory exhaustion on the host system. The cause of the memory exhaustion is down to improper handling… |