Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2623▼ 224 respecto a la semana anterior
Críticas / altas1384▲ 157 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
–

110 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (8.8)0.28%—Wpeverest ALL IN ONE Files UploadAI30/9/202630/9/2026
The All in One Files Upload WordPress plugin before 2.0.17 adds SVG to the site's allowed upload types and does not sanitise uploaded files or verify the authenticity of its public upload requests, allowing unauthenticated users to store files containing active content which run in the site's origin when a victim…
AplazadaCrítica (9.8)0.56%—Wpeverest Everest FormsAI11/9/202611/9/2026
Unauthenticated PHP Object Injection in Everest Forms <= 3.6.0 versions.
AplazadaMedia (5.3)0.41%—Wpeverest Everest FormsAI28/8/202628/8/2026
The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL values from `$_POST` data for upload fields without domain restriction, which are…
AplazadaMedia (4.3)0.47%—Wpeverest Everest FormsAI16/8/202620/8/2026
The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder with AI plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.5.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for…
AplazadaCrítica (9.3)0.40%—Everest BackupAI13/8/202614/8/2026
Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.
AplazadaAlta (7.2)0.50%—Everest ToolkitAI1/8/202626/8/2026
The Everest Toolkit WordPress plugin through 1.2.3 does not validate the type of files uploaded during demo-content import (the WordPress file-type test is disabled), allowing high-privilege users (Administrator by default, including non-super-admin site administrators on multisite) to upload executable PHP files to…
AplazadaMedia (6.5)0.30%—Wpeverest Everest FormsAI9/7/20269/7/2026
The Everest Forms WordPress plugin before 3.5.0 does not correctly restrict access to several REST API endpoints belonging to its onboarding assistant: the capability check is only applied when an attacker-controllable request header holds a specific value, so it can be bypassed by omitting or changing that header.…
AplazadaAlta (7.5)0.43%—Wpeverest Everest FormsAI9/7/20269/7/2026
The Everest Forms WordPress plugin before 3.5.0 does not reliably delete temporary CSV files generated during email-notification processing and leaves them publicly accessible in the uploads directory, allowing unauthenticated attackers to retrieve other users' form submission records via predictable, enumerable…
AplazadaAlta (7.1)0.25%—Wpeverest Everest FormsAI26/6/202626/6/2026
Unauthenticated Cross Site Scripting (XSS) in Everest Forms <= 3.4.8 versions.
AplazadaMedia (5.3)0.39%—Wpeverest User RegistrationAI28/5/202617/6/2026
The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.1.5. This is due to missing ownership validation on a…
AplazadaMedia (4.3)0.26%—Wpeverest Everest FormsAI28/5/202617/6/2026
The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder plugin for WordPress is vulnerable to unauthorized email sending due to a missing capability check on the send_test_email() function in all versions up to, and including, 3.4.7. This makes it possible for authenticated attackers, with…
AplazadaAlta (7.1)0.25%—Wpeverest User RegistrationAI29/4/202617/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Registration user-registration allows Reflected XSS.This issue affects User Registration: from n/a through <= 5.1.5.
AplazadaAlta (8.1)0.95%—Wpeverest Everest FormsAI20/4/202617/6/2026
The Everest Forms plugin for WordPress is vulnerable to Arbitrary File Read and Deletion in all versions up to, and including, 3.4.4. This is due to the plugin trusting attacker-controlled old_files data from public form submissions as legitimate server-side upload state, and converting attacker-supplied URLs into…
AplazadaCrítica (9.8)3.0%—Wpeverest Everest FormsAI8/4/202625/7/2026
The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.4.3 via deserialization of untrusted input from form entry metadata. This is due to the html-admin-page-entries-view.php file calling PHP's native unserialize() on stored entry meta values without…
AplazadaCrítica (9.8)4.4%—Everest Forms PROAI31/3/202617/6/2026
The Everest Forms Pro plugin for WordPress is vulnerable to Remote Code Execution via PHP Code Injection in all versions up to, and including, 1.9.12. This is due to the Calculation Addon's process_filter() function concatenating user-submitted form field values into a PHP code string without proper escaping before…
AnalizadaMedia (5.2)0.20%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to version 2026.02.0, even immediately after CSMS performs a RemoteStop (StopTransaction), the EVSE can return to `PrepareCharging` via the EV's BCB toggle, allowing session restart. This breaks the irreversibility of remote stop and can bypass operational/billing/safety…
AnalizadaMedia (5.2)0.19%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to version 2026.02.0, during RemoteStop processing, a delayed authorization response restores `authorized` back to true, defeating the `stop_transaction()` call condition on PowerOff events. As a result, the transaction can remain open even after a remote stop. Version…
AnalizadaMedia (6.5)0.29%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to C++ UB (potential memory corruption). This is triggered by an MQTT `everest_external/nodered/{connector}/cmd/switch_three_phases_while_charging` message and results in `Charger::shared_context` / `internal_context`…
AnalizadaMedia (6.5)0.31%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to version 2026.02.0, when WithdrawAuthorization is processed before the TransactionStarted event, AuthHandler determines `transaction_active=false` and only calls `withdraw_authorization_callback`. This path ultimately calls `Charger::deauthorize()`, but no actual stop…
AnalizadaMedia (5.5)0.33%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to version 2026.02.0, ISO15118_chargerImpl::handle_session_setup uses v2g_ctx after it has been freed when ISO15118 initialization fails (e.g., no IPv6 link-local address). The EVSE process can be crashed remotely by an attacker with MQTT access who issues a…
AnalizadaMedia (5.5)0.34%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_update_energy_transfer_modes copies a variable-length list into a fixed-size array of length 6 without bounds checking. With schema validation disabled by default, oversized MQTT Cmd payloads can trigger…
AnalizadaMedia (5.5)0.34%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_session_setup copies a variable-length payment_options list into a fixed-size array of length 2 without bounds checking. With schema validation disabled by default, oversized MQTT Cmd payloads can trigger…
AnalizadaMedia (4.2)0.15%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race (C++ UB) triggered by an A 1-phase ↔ 3-phase switch request (`ac_switch_three_phases_while_charging`) during charging/waiting executes concurrently with the state machine loop. Version 2026.02.0 contains a patch.
AnalizadaMedia (5.3)0.18%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to use-after-free. This is triggered by EV plug-in/unplug and RFID/RemoteStart/OCPP authorization events (or delayed authorization response). Version 2026.2.0 contains a patch.
AnalizadaAlta (7)0.22%—Linuxfoundation Everest26/3/202617/6/2026
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::map<std::queue>` corruption. The trigger is CSMS GetLog/UpdateFirmware request (network) with an EVSE fault event (physical). This results in TSAN reports concurrent access (data race) to `event_queue`.…