Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
951 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (4.3) | 0.28% | — | Smartadmin APIAIOracle JavaAIVmware Spring BootAI | 15/9/2026 | 22/9/2026 | SmartAdmin API Java17 SpringBoot3 version 3.30.0 contains an improper authorization vulnerability in the /employee/queryAll endpoint. The endpoint does not enforce the required function-level permission or data-scope authorization, allowing an authenticated low-privileged employee to retrieve employee records… | |
| Aplazada | Media (5.3) | 0.39% | — | A2aproject A2a-javaAI | 14/9/2026 | 15/9/2026 | A security vulnerability has been detected in a2aproject a2a-java 1.2.0. The impacted element is the function AuthorizationRequestHandlerDecorator.onListTasks of the file server-common/src/main/java/org/a2aproject/sdk/server/requesthandlers/AuthorizationRequestHandlerDecorator.java. Such manipulation leads to missing… | |
| Aplazada | Media (6.9) | 0.66% | — | A2aproject A2a-javaAI | 14/9/2026 | 15/9/2026 | A weakness has been identified in a2aproject a2a-java 1.2.0. The affected element is the function BasePushNotificationSender.dispatchNotification of the file server-common/src/main/java/org/a2aproject/sdk/server/tasks/BasePushNotificationSender.java of the component Authorization Header Construction. This manipulation… | |
| Pendiente de análisis | Alta (7.5) | 0.79% | — | Datadog Dd-trace-javaAI | 14/9/2026 | 30/9/2026 | dd-trace-java is a Datadog APM client for Java. Prior to 1.62.0, W3C baggage extraction does not enforce DD_TRACE_BAGGAGE_MAX_ITEMS, which defaults to 64, or DD_TRACE_BAGGAGE_MAX_BYTES, which defaults to 8192, although those limits apply during baggage injection. A remote unauthenticated attacker can send a baggage… | |
| Aplazada | Media (5.5) | 0.72% | — | Tootallnate Java-websocketAI | 13/9/2026 | 14/9/2026 | A weakness has been identified in TooTallNate Java-WebSocket up to 1.6.1. The impacted element is the function processFrameContinuousAndNonFin of the file Draft_6455.java of the component Fragmentation Handler. Executing a manipulation can lead to allocation of resources. The attack may be performed from remote. The… | |
| Aplazada | Media (4.8) | 0.37% | — | Linlinjava LitemallAI | 13/9/2026 | 16/9/2026 | A vulnerability has been found in linlinjava litemall 1.4.0/1.5.0/1.6.0/1.7.0/1.8.0. This issue affects the function AdminGoodsService.validate of the file litemall-vue/src/views/items/detail/index.vue of the component Product Detail. Such manipulation of the argument detail leads to cross site scripting. The attack… | |
| Aplazada | Media (4.8) | 0.37% | — | Linlinjava LitemallAI | 13/9/2026 | 14/9/2026 | A flaw has been found in linlinjava litemall 1.5.0/1.6.0/1.7.0/1.8.0. This vulnerability affects the function AdminTopicController.validate of the file litemall-vue/src/views/items/topic/index.vue of the component Admin Topic Handler. This manipulation causes cross site scripting. The attack may be initiated remotely.… | |
| Pendiente de análisis | Alta (8.7) | 0.63% | — | Xerial Snappy-javaAI | 12/9/2026 | 24/9/2026 | snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Snappy.uncompress(ByteBuffer, ByteBuffer) because destination buffer capacity is never validated against decompressed size. Attackers can supply valid compressed data that decompresses larger than the destination buffer, causing writes past… | |
| Aplazada | Media (6.9) | 0.41% | — | Msgpack-javaAI | 12/9/2026 | 23/9/2026 | msgpack-java through 0.9.12 contains an integer overflow vulnerability in MessageUnpacker.skipValue() when processing MAP32 containers with large element counts. Attackers can supply a MAP32 element count at or above 0x40000000 that wraps when doubled, causing the parser cursor to desynchronize and attacker-controlled… | |
| Aplazada | Media (6.9) | 0.57% | — | Msgpack-javaAI | 12/9/2026 | 23/9/2026 | msgpack-java through 0.9.12 contains a stack overflow vulnerability in MessageUnpacker.unpackValue() that recursively deserializes arrays and maps without nesting depth limits. Attackers can craft payloads with deeply nested arrays to exhaust the deserializing thread's stack and trigger StackOverflowError, causing… | |
| Analizada | Media (6.1) | 0.46% | — | Mongodb Java Driver | 10/9/2026 | 16/9/2026 | Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Java Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal identifier. An authenticated user who can influence the identifier passed by an… | |
| Analizada | Alta (8.2) | 0.26% | — | Mongodb Java Driver | 10/9/2026 | 16/9/2026 | A use-after-free in the reactive client-side encryption component of the MongoDB Java Driver can cause native resources to be freed while an affected encrypted operation is still using them when the operation is cancelled. A party able to cause such an operation to be cancelled may cause the hosting application… | |
| Pendiente de análisis | Alta (8.8) | 0.54% | — | Amazon Deep Java LibraryAI | 10/9/2026 | 10/9/2026 | An integer overflow in the tensor buffer validation component in Amazon Deep Java Library (DJL) from 0.13.0 through 0.36.0 on all platforms might allow a remote unauthenticated actor to obtain information from adjacent process memory or cause a denial of service via a crafted tensor payload. To remediate this issue,… | |
| Aplazada | Crítica (9.2) | 0.34% | — | Eclipse Ditto Javascript Client NodeAIEclipse Ditto Javascript Client Node 1AI | 8/9/2026 | 9/9/2026 | In Eclipse Ditto's Node.js JavaScript client, all released versions of @eclipse-ditto/ditto-javascript-client-node from 2.0.0 to 3.9.0 and of its predecessor package @eclipse-ditto/ditto-javascript-client-node_1.0 from 1.0.0 to 2.1.0, the WebSocket transport hard-codes rejectUnauthorized: false when creating the… | |
| Pendiente de análisis | Crítica (9) | 0.61% | — | SAP GUI FOR JavaAI | 8/9/2026 | 9/9/2026 | SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a connected backend system. A low-privileged attacker could exploit this weakness by manipulating a connected backend system to trigger affected functionality. This could allow arbitrary command execution on the… | |
| Aplazada | Media (5.5) | 0.70% | — | Java-json-tools Jackson-coreutilsAI | 8/9/2026 | 28/9/2026 | A security flaw has been discovered in java-json-tools jackson-coreutils 2.0. This vulnerability affects the function TreePointer.tokensFromInput of the file src/main/java/com/github/fge/jackson/jsonpointer/TreePointer.java of the component JSON Pointer parser. The manipulation results in allocation of resources. The… | |
| Aplazada | Media (5.5) | 0.70% | — | Java-json-tools Jackson-coreutilsAI | 8/9/2026 | 28/9/2026 | A vulnerability was found in java-json-tools jackson-coreutils 2.0. Affected by this vulnerability is the function BigDecimal.toPlainString of the file src/main/java/com/github/fge/jackson/JacksonUtils.java. Performing a manipulation results in resource consumption. The attack may be initiated remotely. The exploit… | |
| Aplazada | Media (5.5) | 0.66% | — | Java-json-tools Jackson-coreutilsAI | 7/9/2026 | 8/9/2026 | A vulnerability was found in java-json-tools jackson-coreutils 2.0. Affected by this issue is the function JsonLoader.fromURL of the file src/main/java/com/github/fge/jackson/JsonLoader.java of the component URL Validation. The manipulation results in server-side request forgery. It is possible to launch the attack… | |
| Aplazada | Media (5.5) | 0.70% | — | Java-json-tools Json PatchAI | 7/9/2026 | 9/9/2026 | A vulnerability has been found in java-json-tools json-patch up to 1.13. Affected by this vulnerability is the function JsonPatch.apply of the file src/main/java/com/github/fge/jsonpatch/JsonPatch.java of the component Patch Operation Handler. The manipulation leads to resource consumption. It is possible to initiate… | |
| Pendiente de análisis | Alta (8.7) | 0.58% | — | Amazon Ion-javaAI | 4/9/2026 | 8/9/2026 | Improper handling of highly compressed data in Amazon ion-java before 1.12.1 might allow remote attackers to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression due to insufficient coverage of the GZIP auto-decompression opt-out introduced for… | |
| Pendiente de análisis | Alta (8.7) | 0.62% | — | Nginx JavascriptAI | 2/9/2026 | 2/9/2026 | A vulnerability exists in NGINX JavaScript where a malformed HTTP response received by ngx.fetch() can crash an NGINX worker when trusted JavaScript reads Response.statusText. Exploitation requires control or influence over the fetched HTTP response. Impact: This vulnerability may allow remote attackers to cause a… | |
| Pendiente de análisis | Media (6.5) | 0.37% | — | Oracle Java SEAI | 26/8/2026 | 28/8/2026 | Vulnerability in Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 7u511. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE. Successful attacks of this vulnerability can result in unauthorized… | |
| Pendiente de análisis | Crítica (9.1) | 0.23% | — | Drupal Photoswipe - Responsive Javascript Modal Image GalleryAI | 25/8/2026 | 28/8/2026 | Missing Authorization vulnerability in Drupal PhotoSwipe - Responsive JavaScript Modal Image Gallery allows Forceful Browsing. This issue affects PhotoSwipe - Responsive JavaScript Modal Image Gallery versions: from 0.0.0 to 3.2.0. | |
| Aplazada | Alta (7.5) | 0.69% | — | Jknack Handlebars.javaAIJknack Handlebars-springmvcAI | 20/8/2026 | 18/9/2026 | Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader without the path-containment validation used by other URL-based loaders. In… | |
| Aplazada | Media (5.7) | 0.24% | — | Eclipse Openjava9AI | 19/8/2026 | 1/9/2026 | In Eclipse OpenJ9 versions up to 0.60, a crafted .class file with deeply nested annotations causes a segmentation fault. |