Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2532▼ 361 respecto a la semana anterior
Críticas / altas1338▲ 69 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
629 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.9) | 0.14% | — | Watchdog AntivirusAIMicrosoft WindowsAI | 20/9/2026 | 22/9/2026 | Missing Authorization in the IOCTL handlers of the wsdkd.sys kernel drivers in Watchdog WatchDog Antivirus 1.8.640 (driver versions 1.3.0.0 and earlier) on Microsoft Windows allows local, low-privileged attackers to delete arbitrary files with SYSTEM privileges, bypassing NTFS access controls and potentially disabling… | |
| Aplazada | Alta (7.1) | 0.32% | — | Claude-skill-antivirusAI | 2/9/2026 | 23/9/2026 | claude-skill-antivirus fails to analyze executable files when scanning local skill directories, reading only SKILL.md while ignoring Python source, bytecode, and other artifacts in the scripts directory. Attackers can distribute skills with malicious code in non-manifest files that receive a SAFE verdict with 100/100… | |
| Aplazada | Alta (7.1) | 0.16% | — | V-secure Jingyun AntivirusAI | 7/8/2026 | 12/8/2026 | A vulnerability has been found in V-Secure Jingyun Antivirus 2.4.2.39. The affected element is an unknown function in the library ZyArk.sys of the component Kernel Driver. The manipulation leads to improper access controls. The attack needs to be performed locally. The exploit has been disclosed to the public and may… | |
| Aplazada | Alta (7.1) | 0.16% | — | Jiangmin AntivirusAI | 7/8/2026 | 12/8/2026 | A flaw has been found in Jiangmin Antivirus 21. Impacted is the function MessageNotifyCallback in the library kvcore.sys of the component Minifilter Port. Executing a manipulation can lead to improper access controls. The attack needs to be launched locally. The exploit has been published and may be used. The vendor… | |
| Pendiente de análisis | Alta (8.5) | 0.18% | — | Avast AntivirusAI | 19/6/2026 | 30/9/2026 | AVAST Antivirus 25.11 contains an unquoted service path vulnerability in the SecureLine service that allows local non-privileged users to execute code with elevated SYSTEM privileges. Attackers can exploit the unquoted binary path in the service configuration to inject malicious executables that execute with… | |
| Aplazada | Alta (7.8) | 0.18% | — | Avira AntivirusAI | 12/6/2026 | 23/7/2026 | Heap buffer out-of-bounds write vulnerability in Avira Antivirus engine when scanning a malformed POSIX tar archive may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.27.12. | |
| Aplazada | Alta (7.8) | 0.12% | — | Avira AntivirusAI | 12/6/2026 | 23/7/2026 | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.76. | |
| Aplazada | Alta (7.8) | 0.12% | — | Avira AntivirusAI | 12/6/2026 | 23/7/2026 | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.98. | |
| Aplazada | Alta (7.8) | 0.12% | — | Avira AntivirusAI | 12/6/2026 | 23/7/2026 | Heap buffer out-of-bounds write vulnerability due to integer overflow in Avira Antivirus engine when scanning a malformed MS-DOS executable file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Stack overflow vulnerability in Avast Antivirus when scanning a malformed Office Open XML file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition builds… | |
| Aplazada | Media (5.5) | 0.11% | — | Avira AntivirusAI | 12/6/2026 | 30/9/2026 | Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64. | |
| Aplazada | Alta (7.8) | 0.13% | — | Avira AntivirusAI | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56. | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed zip file containing XML may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Stack overflow vulnerability due to uncontrolled recursion in Avast Antivirus when scanning a malformed PDF file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file with .NET metadata may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition… | |
| Aplazada | Media (5.5) | 0.11% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Uncontrolled recursion vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition builds… | |
| Aplazada | Alta (7.8) | 0.15% | — | Avast AntivirusAIAVG AntivirusAINorton AntivirusAIAvast ONEAI+1 | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds write vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and… | |
| Aplazada | Alta (7.8) | 0.13% | — | Avira AntivirusAI | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56. | |
| Aplazada | Alta (7.8) | 0.13% | — | Avira AntivirusAI | 12/6/2026 | 30/9/2026 | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.68. | |
| Aplazada | Alta (8.5) | 0.12% | — | Sheed AntivirusAI | 4/4/2026 | 21/7/2026 | sheed AntiVirus 2.3 contains an unquoted service path vulnerability in the ShavProt service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can insert a malicious executable in the unquoted path and trigger service restart or system reboot to execute code with… | |
| Analizada | Alta (8.5) | 0.72% | — | Netgate Amiti Antivirus | 4/4/2026 | 21/7/2026 | Netgate AMITI Antivirus build 23.0.305 contains an unquoted service path vulnerability in the AmitiAvSrv and AmitiAntivirusHealth services that allows local attackers to escalate privileges. Attackers can place a malicious executable in the unquoted service path and trigger service restart or system reboot to execute… | |
| Aplazada | Alta (8.5) | 0.37% | — | Amiti AntivirusAI | 5/2/2026 | 17/6/2026 | Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service configurations. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges by placing executable files in specific directory locations. | |
| Aplazada | Alta (8.5) | 0.15% | — | Santivirus ICAI | 27/1/2026 | 17/6/2026 | SAntivirus IC 10.0.21.61 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted executable path to inject malicious files in the service binary path, enabling privilege escalation to… |