Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 295 respecto a la semana anterior
Críticas / altas1347▲ 81 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
401.485 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Alta (7.2) | 0.24% | — | Realcookiebanner Real Cookie BannerAI | 3/10/2026 | 3/10/2026 | The Real Cookie Banner: GDPR & ePrivacy Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment in all versions up to, and including, 5.3.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web… | |
| Recibida | Media (6.1) | 0.22% | — | Ewww Image OptimizerAI | 3/10/2026 | 3/10/2026 | The EWWW Image Optimizer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via REQUEST_URI Parameter Key in all versions up to, and including, 8.7.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in… | |
| Recibida | Media (6.4) | 0.20% | — | Wpdeveloper EmbedpressAI | 3/10/2026 | 3/10/2026 | The EmbedPress – PDF Embedder, 3D PDF FlipBook, Google Reviews, YouTube Videos, Upload & Embed PDF documents plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'slidesShow' Block Attribute in all versions up to, and including, 4.6.6 due to insufficient input sanitization and output escaping. This… | |
| Recibida | Media (6.1) | 0.22% | — | ProfilepressAI | 3/10/2026 | 3/10/2026 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via ppress_billing_address Filename Parameter in all versions up to, and including, 4.17.4 due to insufficient input… | |
| Recibida | Media (6.1) | 0.21% | — | Thimpress LearnpressAI | 3/10/2026 | 3/10/2026 | The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Reflected DOM-Based Cross-Site Scripting via the 'orderby' parameter in all versions up to, and including, 4.4.7 due to insufficient input sanitization and output escaping. This makes it possible for… | |
| Recibida | Alta (8.8) | 0.63% | — | ProfilepressAI | 3/10/2026 | 3/10/2026 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.17.4 via the get_user_profile_structure. This makes it possible for authenticated… | |
| Recibida | Alta (7.2) | 0.25% | — | Ultimatemember Ultimate MemberAI | 3/10/2026 | 3/10/2026 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'form_id' parameter in all versions up to, and including, 2.13.1 due to insufficient input sanitization and output escaping. This… | |
| Recibida | Media (6.5) | 0.27% | — | Fastlinemedia Beaver BuilderAI | 3/10/2026 | 3/10/2026 | The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable to blind SQL Injection via 'fields[][value]' Parameter in all versions up to, and including, 2.11.0.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL… | |
| Recibida | Media (6.5) | 0.27% | — | SupportcandyAI | 3/10/2026 | 3/10/2026 | The SupportCandy – AI Customer Support Ticket System & Live Chatbot Agent plugin for WordPress is vulnerable to time-based SQL Injection via the 'sort_by' parameter in all versions up to, and including, 3.5.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing… | |
| Recibida | Media (6.4) | 0.20% | — | SupportcandyAI | 3/10/2026 | 3/10/2026 | The SupportCandy – AI Customer Support Ticket System & Live Chatbot Agent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'name' parameter in all versions up to, and including, 3.5.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated… | |
| Recibida | Alta (7.5) | 0.40% | — | Ultimatemember Ultimate MemberAI | 3/10/2026 | 3/10/2026 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.13.1 This is due to the plugin not properly verifying that a user is authorized to perform an action.… | |
| Recibida | Media (6.1) | 0.21% | — | Ivorysearch Ivory SearchAI | 3/10/2026 | 3/10/2026 | The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and including, 5.5.18 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web… | |
| Recibida | Media (5.4) | 0.24% | — | JEG KIT FOR ElementorAI | 3/10/2026 | 3/10/2026 | The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment in all versions up to, and including, 3.2.19 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated… | |
| Recibida | Media (5.1) | 0.26% | — | FormbricksAI | 3/10/2026 | 5/10/2026 | Formbricks before 5.4.4 and 6 before 6.0.1 allows stored XSS. The survey-level Custom Head Scripts feature did not enforce the documented Manage permission boundary. A workspace member holding only readWrite permission could configure Custom Head Scripts on a survey, an operation the documentation restricts to the… | |
| Recibida | Baja (1.8) | 0.12% | — | ImagemagickAI | 3/10/2026 | 5/10/2026 | ImageMagick before 7.1.2-32 and 6.9.13-57 contains a policy bypass vulnerability in LoadPolicyCache that silently skips security policy rules when policy.xml uses an alternate DOCTYPE. A valid DOCTYPE not ending in ']>' makes the parser consume the rest of the file, so no policy rules are applied and restricted… | |
| Recibida | Media (5.1) | 0.14% | — | OpenapvAI | 2/10/2026 | 2/10/2026 | OpenAPV before 1.1.1.0 has a read_bitstream heap-based buffer overflow. | |
| Recibida | Crítica (9.4) | 0.33% | — | C4illin ConvertxAI | 2/10/2026 | 2/10/2026 | In ConvertX before 0.19.0, converters/calibre.ts does not block recipe files, and instead passes them to the ebook-convert program from Calibre. This affects executable code in a .recipe or .downloaded_recipe file. | |
| Recibida | Media (6.9) | 0.33% | — | KenerAI | 2/10/2026 | 5/10/2026 | Kener 4.0.0 before 4.1.6 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve hidden or inactive monitor data by querying dashboard API handlers lacking visibility filters. Attackers can supply a known or guessed monitor tag to endpoints such as monitor-bar and… | |
| Recibida | Media (5.3) | 0.20% | — | Uvdesk Support Center BundleAI | 2/10/2026 | 2/10/2026 | UVdesk support-center-bundle before 1.1.3.3 contains an insecure direct object reference vulnerability in the rateTicket action of Controller/Ticket.php that allows authenticated customers to rate other customers' tickets. Attackers can supply arbitrary ticket IDs, which are loaded without an ownership check, to… | |
| Recibida | Media (5.1) | 0.17% | — | ShopclassAI | 2/10/2026 | 5/10/2026 | Shopclass before 6.2.0 contains a stored cross-site scripting vulnerability that allows self-registered non-admin users to inject scripts into item listing descriptions when frontend TinyMCE is enabled. Attackers can submit malicious JavaScript, which ItemActions.php saves without tag stripping, causing it to execute… | |
| Aplazada | Alta (7.1) | 0.35% | — | FormworkAI | 2/10/2026 | 5/10/2026 | Formwork before 2.3.13 contains a path traversal vulnerability in BackupController that allows authenticated panel users to read or delete arbitrary files. Attackers with backup download or delete permission can supply a base64-encoded backslash-separated traversal payload that bypasses PHP basename on Linux to access… | |
| Recibida | Media (5.3) | 0.19% | — | Showdownjs ShowdownAI | 2/10/2026 | 5/10/2026 | Showdown through 2.1.0 contains a cross-site scripting vulnerability in the makehtml link and image subparsers, which fail to escape double quotes in destination URLs placed into href and src attributes. Attackers can craft markdown links or images containing a double quote followed by onerror or onmouseover handlers… | |
| Recibida | Alta (8.2) | 0.29% | — | Backdropcms Backdrop CMSAI | 2/10/2026 | 5/10/2026 | Backdrop CMS before 1.35.1 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve configuration export archives left on the server after transfer. Attackers can download compressed archives generated by users with configuration export permission to obtain the full site… | |
| Recibida | Media (5.1) | 0.17% | — | Idurar ERP CRMAI | 2/10/2026 | 2/10/2026 | IDURAR ERP CRM through 4.1.1 contains a stored cross-site scripting vulnerability that allows authenticated users to inject scripts by uploading unsanitized SVG files. Attackers can upload JavaScript-laden SVGs via the profile update or settings upload endpoints, which execute in victims' browsers when served from the… | |
| Recibida | Media (5.4) | 0.08% | — | Litespeedtech OpenlitespeedAI | 2/10/2026 | 5/10/2026 | OpenLiteSpeed before 1.9.3 contains a local privilege escalation vulnerability in admin/misc/lsup.sh that runs unverified update packages from a nobody-writable directory as root. Attackers controlling the nobody web process can replace the package in /usr/local/lsws/autoupdate/ before extraction, so its install.sh… |