Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2698▼ 345 respecto a la semana anterior
Críticas / altas1316▼ 9 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 273 respecto a la semana anterior
–

6 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (5.9)0.18%—Emerson ValvelinkAI11/7/202517/6/2026
Emerson ValveLink products receive input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
AplazadaCrítica (9.3)0.38%—Emerson ValvelinkAI11/7/202517/6/2026
Emerson ValveLink Products store sensitive information in cleartext in memory. The sensitive memory might be saved to disk, stored in a core dump, or remain uncleared if the product crashes, or if the programmer does not properly clear the memory before freeing it.
AplazadaAlta (8.5)0.13%—Emerson ValvelinkAI11/7/202517/6/2026
Emerson ValveLink Products store sensitive information in cleartext within a resource that might be accessible to another control sphere.
AplazadaMedia (5.9)0.19%—Emerson ValvelinkAI11/7/202517/6/2026
Emerson ValveLink products use a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
AplazadaAlta (8.5)0.19%—Emerson ValvelinkAI11/7/202517/6/2026
Emerson ValveLink products do not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
ModificadaAlta (7.8)0.28%—Emerson Valvelink5/3/202017/6/2026
In Emerson ValveLink v12.0.264 to v13.4.118, a vulnerability in the ValveLink software may allow a local, unprivileged, trusted insider to escalate privileges due to insecure configuration parameters.