Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 224 respecto a la semana anterior
Críticas / altas1384▲ 157 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
37 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.3) | 0.36% | — | Sunnyadn Js-tomlAI | 22/9/2026 | 25/9/2026 | js-toml is a TOML parser for JavaScript. Prior to 1.1.3, load() does not bound nesting or dotted-key depth in the recursive parser at src/load/parser.ts or the interpreter at src/load/interpreter.ts, so deeply nested arrays, deeply nested inline tables, or long dotted keys can exhaust the V8 call stack and throw a raw… | |
| Aplazada | Alta (8.2) | 0.52% | — | Smol-tomlAI | 4/9/2026 | 9/9/2026 | smol-toml is a small, fast, and correct TOML parser and serializer. Prior to 1.7.1, parse() can enter an infinite loop when a value inside an array or inline table is followed by a comment with no trailing newline. In src/util.ts, skipUntil() calls indexOfNewline(), receives -1 at the end of input, and resets the… | |
| Aplazada | Alta (7.5) | 0.61% | — | Toml-nodeAI | 3/9/2026 | 9/9/2026 | toml-node is a TOML parser for Node.js and the browser. Prior to 4.2.0, toml.parse() uses a Peggy 5.1.0 generated recursive-descent parser in lib/parser.js whose peg$parsevalue, peg$parsearray, and peg$parseinline_table_entry functions recurse through nested arrays and inline tables without a depth limit. A remote… | |
| Aplazada | Alta (8.2) | 0.68% | — | Toml-nodeAI | 3/9/2026 | 9/9/2026 | toml-node is a TOML parser for Node.js and the browser. Prior to 4.1.2, toml.parse() in lib/compiler.js can be tricked by a table path such as a.b.y.__proto__.__proto__, allowing traversal from a scalar value into Number.prototype and Object.prototype. The currentPath tracking value uses both arrays and strings, so… | |
| Pendiente de análisis | Media (6.9) | 0.41% | — | BentomlAI | 23/8/2026 | 24/9/2026 | BentoML's outbound connection safeguard (make_safe_connect in _internal/utils/uri.py) blocks private, loopback, and link-local IP addresses but fails to reject the RFC 6598 shared address space (100.64.0.0/10, CGNAT). In versions 1.4.19 through 1.4.39, an unauthenticated attacker can supply URLs pointing to that range… | |
| Aplazada | Media (5.3) | 0.40% | — | Sunnyadn Js-tomlAI | 14/8/2026 | 18/9/2026 | js-toml is a TOML parser for JavaScript, Prior to version 1.1.2, the interpreter checks whether a key already exists in a parser-built container with `if (object[key])` instead of `if (key in object)`. When the prior value is a falsy primitive — `false`, `0`, `0n`, `0.0`, `-0`, or `""` — the duplicate-key branch is… | |
| Aplazada | Crítica (9.8) | 0.82% | — | Toml C99AIToml C17AIModdable XSAI | 24/7/2026 | 27/7/2026 | TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99. The tomlc99 library is no longer maintained, and has an uncontrolled recursion vulnerability publicly reported in the issue tracker. Any caller that passes untrusted TOML to from_toml risks a stack overflow from a… | |
| Analizada | Baja (1.9) | 2.2% | — | Bentoml Openllm | 8/7/2026 | 9/7/2026 | A vulnerability was found in bentoml OpenLLM 0.6.30. This affects the function async_run_command of the file src/openllm/common.py of the component Model Repository Directory Name Handler. Performing a manipulation of the argument cmd results in command injection. Attacking locally is a requirement. The exploit has… | |
| Analizada | Alta (7.5) | 0.64% | — | Sunnyadn Js-toml | 19/6/2026 | 26/6/2026 | js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. Versions up to and including 1.1.0 parse hexadecimal / octal / binary integer literals via a hand-written `parseBigInt` loop that multiplies a `BigInt` accumulator by the radix once per input digit. Each iteration performs a `BigInt *… | |
| Aplazada | Alta (8.1) | 0.47% | — | AtomlabAI | 17/6/2026 | 17/6/2026 | Unauthenticated Local File Inclusion in Atomlab <= 2.4.5 versions. | |
| Analizada | Alta (8.8) | 0.48% | — | Bentoml | 27/5/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.39, a malicious bentofile.yaml containing a newline-injected value in envs[*].name produces unquoted RUN directives in the BentoML-generated Dockerfile. When the victim runs bentoml containerize on… | |
| Analizada | Alta (8.8) | 0.48% | — | Bentoml | 27/5/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.39, src/bentoml/_internal/container/frontend/dockerfile/templates/base_v2.j2 interpolates docker.base_image raw with no escaping, newline filtering, or validation. A malicious bento.yaml with a… | |
| Analizada | Media (5.5) | 0.20% | — | Bentoml | 22/5/2026 | 23/7/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. In versions 1.4.38 and prior, the build packaging workflow follows attacker-controlled symlinks inside the build context and copies the referenced file contents into the generated Bento artifact. If a victim… | |
| Analizada | Crítica (9.6) | 0.48% | — | Bentoml | 6/4/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.38, the Dockerfile generation function generate_containerfile() in src/bentoml/_internal/container/generate.py uses an unsandboxed jinja2.Environment with the jinja2.ext.do extension to render… | |
| Analizada | Alta (7.8) | 0.26% | — | Bentoml | 6/4/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.38, the cloud deployment path in src/bentoml/_internal/cloud/deployment.py was not included in the fix for CVE-2026-33744. Line 1648 interpolates system_packages directly into a shell command using… | |
| Analizada | Alta (7.8) | 0.25% | — | Bentoml | 27/3/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.37, the `docker.system_packages` field in `bentofile.yaml` accepts arbitrary strings that are interpolated directly into Dockerfile `RUN` commands without sanitization. Since `system_packages` is… | |
| Analizada | Alta (8.6) | 0.21% | — | Bentoml | 3/3/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.36, the safe_extract_tarfile() function validates that each tar member's path is within the destination directory, but for symlink members it only validates the symlink's own path, not the symlink's… | |
| Analizada | Media (6.5) | 0.50% | — | Bentoml | 26/1/2026 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to version 1.4.34, BentoML's `bentofile.yaml` configuration allows path traversal attacks through multiple file path fields (`description`, `docker.setup_script`, `docker.dockerfile_template`,… | |
| Aplazada | Alta (7.3) | 0.33% | — | Deno STD TomlAI | 14/8/2025 | 17/6/2026 | @std/toml is the Deno Standard Library. Prior to version 1.0.9, an attacker can pollute the prototype chain in Node.js runtime and Browser when parsing untrusted TOML data, thus achieving Prototype Pollution (PP) vulnerability. This is because the library is merging an untrusted object with an empty object, which by… | |
| Analizada | Alta (7.9) | 0.50% | — | Sunnyadn Js-toml | 5/8/2025 | 17/6/2026 | js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. In versions below 1.0.2, a prototype pollution vulnerability in js-toml allows a remote attacker to add or modify properties of the global Object.prototype by parsing a maliciously crafted TOML input. This is fixed in version 1.0.2. | |
| Analizada | Crítica (9.9) | 16% | — | Bentoml | 29/7/2025 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. In versions 1.4.0 until 1.4.19, the file upload processing system contains an SSRF vulnerability that allows unauthenticated remote attackers to force the server to make arbitrary HTTP requests. The vulnerability… | |
| Analizada | Crítica (9.8) | 52% | — | Bentoml | 9/4/2025 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.8, there was an insecure deserialization in BentoML's runner server. By setting specific headers and parameters in the POST request, it is possible to execute any unauthorized arbitrary code on the… | |
| Analizada | Crítica (9.8) | 41% | — | Bentoml | 4/4/2025 | 17/6/2026 | BentoML is a Python library for building online serving systems optimized for AI apps and model inference. A Remote Code Execution (RCE) vulnerability caused by insecure deserialization has been identified in the latest version (v1.4.2) of BentoML. It allows any unauthenticated user to execute arbitrary code on the… | |
| Aplazada | Crítica (9.8) | 0.93% | — | BentomlAI | 20/3/2025 | 17/6/2026 | A deserialization vulnerability exists in BentoML's runner server in bentoml/bentoml versions <=1.3.4.post1. By setting specific parameters, an attacker can execute unauthorized arbitrary code on the server, causing severe harm. The vulnerability is triggered when the args-number parameter is greater than 1, leading… | |
| Aplazada | Alta (7.5) | 0.71% | — | BentomlAI | 20/3/2025 | 17/6/2026 | BentoML version v1.3.4post1 is vulnerable to a Denial of Service (DoS) attack. The vulnerability can be exploited by appending characters, such as dashes (-), to the end of a multipart boundary in an HTTP request. This causes the server to continuously process each character, leading to excessive resource consumption… |