Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2624▼ 236 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
23 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.3) | 0.30% | — | Mauriceboe TrekAI | 24/9/2026 | 28/9/2026 | TREK is a collaborative travel planner. Prior to 3.4.0, the checkSsrf logic in server/src/utils/ssrfGuard.ts does not recognize NAT64, 6to4, or Teredo IPv6 transition addresses that encode an IPv4 destination. An authenticated user who controls a DNS record can supply a URL whose AAAA result is a transition address… | |
| Aplazada | Media (4.3) | 0.20% | — | Mauriceboe TrekAI | 24/9/2026 | 25/9/2026 | TREK is a collaborative travel planner. Prior to 3.3.0, the get_trip_summary tool in server/src/mcp/tools/trips.ts is registered for scoped OAuth MCP tokens without requiring trips:read and returns core trip summary data regardless of the delegated scopes. A token granted only an unrelated capability, such as… | |
| Aplazada | Media (5.3) | 0.23% | — | Mauriceboe TrekAI | 24/9/2026 | 29/9/2026 | TREK is a collaborative travel planner. Prior to 3.3.0, getSharedTripData in server/src/services/shareService.ts returns days, assignments, dayNotes, and places through GET /api/shared/:token even when the trip owner disables share_map. The client hides the map, but the public JSON response still includes the… | |
| Aplazada | Alta (8.1) | 0.31% | — | Mauriceboe TrekAI | 24/9/2026 | 25/9/2026 | TREK is a collaborative travel planner. Prior to 3.3.0, TREK allows an authenticated user to store an attacker-controlled llm_base_url through the settings API when the LLM_PARSING feature is enabled. Write permission to the target trip instance is required to trigger the vulnerable AI-assisted import path. The value… | |
| Aplazada | Alta (7.1) | 0.38% | — | Mauriceboe TrekAI | 24/9/2026 | 25/9/2026 | TREK is a collaborative travel planner. Prior to 3.3.0, the DELETE /api/trips/:tripId/collab/notes/:noteId/files/:fileId endpoint authorizes an authenticated user against the attacker-controlled tripId but deleteNoteFile in server/src/services/collabService.ts resolves the target only by note and file identifiers… | |
| Aplazada | Media (5.1) | 0.34% | — | Yamap - Social Trekking GPS APPAI | 14/9/2026 | 16/9/2026 | The Android application "YAMAP -Social Trekking GPS App" contains an improper access control vulnerability in its WebView implementation. The in-app browser may cause information leakage from the app or redirect users to unintended websites. | |
| Aplazada | Media (6.3) | 0.46% | — | Mauriceboe TrekAI | 25/8/2026 | 26/8/2026 | A weakness has been identified in liketrek TREK up to 3.0.22. This impacts the function validateShareTokenForAsset of the component Journey Photo Proxy. Executing a manipulation can lead to incorrect authorization. The attack can be launched remotely. This attack is characterized by high complexity. The exploitability… | |
| Aplazada | Media (6.3) | 0.58% | — | Mauriceboe TrekAI | 25/8/2026 | 26/8/2026 | A security flaw has been discovered in liketrek TREK up to 3.0.22. This affects an unknown function of the file server/src/nest/journey/journey-public.controller.ts of the component Public Journey Photo Proxy. Performing a manipulation results in path traversal. The attack can be initiated remotely. The attack's… | |
| Aplazada | Media (6.3) | 0.58% | — | Mauriceboe TrekAI | 25/8/2026 | 27/8/2026 | A vulnerability was identified in liketrek TREK up to 3.0.22. The impacted element is the function findOrCreateUser of the file server/src/services/oidcService.ts of the component OIDC Service. Such manipulation leads to improper authentication. It is possible to launch the attack remotely. The attack requires a high… | |
| Aplazada | Media (5.3) | 0.33% | — | Mauriceboe TrekAI | 25/8/2026 | 26/8/2026 | A vulnerability was determined in liketrek TREK up to 3.0.22. The affected element is the function journeyService.updateEntry of the file server/src/nest/journey/journey.controller.t of the component Journey Entry Update. This manipulation causes sql injection. It is possible to initiate the attack remotely. Upgrading… | |
| Aplazada | Media (5.3) | 0.51% | — | Mauriceboe TrekAI | 25/8/2026 | 28/9/2026 | A vulnerability was found in liketrek TREK up to 3.0.22. Impacted is the function loginUser of the file server/src/services/authService.ts of the component Pre-2FA mfa_token Handler. The manipulation results in improper authentication. The attack may be performed from remote. Upgrading to version 3.1.0 is recommended… | |
| Aplazada | Media (4.3) | 0.34% | — | Mauriceboe TrekAI | 20/8/2026 | 18/9/2026 | TREK is a collaborative travel planner. Prior to 3.1.3, TREK file upload, update, and link actions accept attacker-controlled reservation_id, place_id, and assignment_id values without using findForeignLinkTarget() to verify that the referenced object belongs to the file's trip. An authenticated user with file-edit… | |
| Aplazada | Media (6.5) | 0.41% | — | Mauriceboe TrekAI | 20/8/2026 | 18/9/2026 | TREK is a collaborative travel planner. From 3.0.0 until 3.1.0, the GET /api/journeys/:id/share-link route in server/src/routes/journey.ts returns the result of getJourneyShareLink() from server/src/services/journeyShareService.ts without checking whether the authenticated requester can access the journey. Any… | |
| Aplazada | Media (5.3) | 0.43% | — | Mauriceboe TrekAI | 20/8/2026 | 18/9/2026 | TREK is a collaborative travel planner. Prior to 3.1.0, TREK validates only the initial URL before native redirect following in importGoogleList() and importNaverList() in server/src/services/placeService.ts and resolveGoogleMapsUrl() in server/src/services/mapsService.ts. The affected sinks call checkSsrf() from… | |
| Aplazada | Baja (2) | 0.58% | — | Mauriceboe TrekAI | 20/8/2026 | 18/9/2026 | TREK is a collaborative travel planner. Prior to 3.1.0, when the Journey add-on is enabled, TREK interpolates the unescaped activeSuggestion.title value into journey.frontpage.suggestionText through client/src/i18n/TranslationContext.tsx and renders the result with dangerouslySetInnerHTML in… | |
| Aplazada | Baja (1.9) | 1.1% | — | Nighttrek Ollama-mcpAI | 9/8/2026 | 12/8/2026 | A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a475b619093a2d13c13dbc9. This affects an unknown part of the file src/index.ts. This manipulation of the argument name/modelfile/source/destination causes command injection. The attack can only be executed locally. This product is using a rolling… | |
| Aplazada | Baja (1.9) | 1.1% | — | Nighttrek Supabase-mcpAI | 9/8/2026 | 12/8/2026 | A vulnerability was detected in NightTrek Supabase-MCP cc994ab2d2a36b0af6ee7c7f3e6ce8e08cda2170/db03237d92f7dc2f0da0d70a87dba84ebcde5b66. Affected by this issue is some unknown functionality of the component generate_types. The manipulation of the argument schema results in command injection. The attack needs to be… | |
| Aplazada | Media (5.3) | 0.34% | — | Mauriceboe TrekAI | 28/5/2026 | 21/7/2026 | TREK is a collaborative travel planner. Prior to 3.0.18, early return on missing user during login flow allowed an attacker to enumerate valid user accounts via response timing discrepancy. When an email address existed in the database, the backend performed a bcrypt password comparison before returning a 401… | |
| Analizada | Media (6.5) | 0.36% | — | Mauriceboe Trek | 10/4/2026 | 17/6/2026 | TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the Immich trip photo management routes. This vulnerability is fixed in 2.7.2. | |
| Analizada | Media (5.3) | 0.40% | — | Mauriceboe Trek | 10/4/2026 | 17/6/2026 | TREK is a collaborative travel planner. Prior to 2.7.2, TREK served uploaded photos without requiring authentication. This vulnerability is fixed in 2.7.2. | |
| Modificada | Media (4.7) | 0.41% | — | Travelable Trek Management Solution Project Travelable Trek Management Solution | 24/7/2023 | 17/6/2026 | A vulnerability was found in Travelmate Travelable Trek Management Solution 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Comment Box Handler. The manipulation of the argument comment leads to cross site scripting. The attack may be launched remotely. The… | |
| Modificada | Media (6.8) | 9.4% | — | Moto-treks COM Mtfireeagle | 4/5/2010 | 16/6/2026 | Directory traversal vulnerability in the MT Fire Eagle (com_mtfireeagle) component 1.2 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. | |
| Modificada | Alta (9.3) | 6.5% | — | Netrek Vanilla Server | 3/3/2007 | 16/6/2026 | Format string vulnerability in the new_warning function in ntserv/warning.c for Netrek Vanilla Server 2.12.0, when EVENTLOG is enabled, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the message handling. |