Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2635▼ 214 respecto a la semana anterior
Críticas / altas1385▲ 153 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
165 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Crítica (9.1) | 0.29% | — | Meta Horizon OSAI | 30/9/2026 | 1/10/2026 | Prior to v74.0.0.878.1682 of Meta Horizon OS, MediaSyncJobReceiver could be induced to send a privileged PendingIntent including a com.oculus.vrshell CallerIdentity to an arbitrary application listening via NotificationListenerService. That would allow the application to impersonate the com.oculus.vrshell package, as… | |
| Pendiente de análisis | Alta (8.8) | 0.29% | — | Meta Horizon OSAI | 30/9/2026 | 1/10/2026 | Prior to v66.0.0.733.524 of Meta Horizon OS, OVRMediaService could be induced to send a privileged PendingIntent including a com.oculus.horizon CallerIdentity to an arbitrary application registering for com.oculus.systemactivities.SCREENSHOT via a broadcast receiver. That would allow the application to impersonate the… | |
| Analizada | Crítica (9.9) | 0.78% | — | Microsoft Azure Horizondb | 17/9/2026 | 25/9/2026 | Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a network. | |
| Pendiente de análisis | Media (6.5) | 0.36% | — | Opennms MeridianAIOpennms HorizonAI | 10/9/2026 | 18/9/2026 | A SQL injection vulnerability exists in the JasperReports-based reporting feature of multiple versions of OpenNMS Meridian and Horizon. A low-privileged authenticated user (ROLE_USER) can run the shipped, default-enabled online reports "Maintenance contracts expired" (AssetManagementMaintExpired) and "Maintenance… | |
| Pendiente de análisis | Media (5.9) | 0.21% | — | Opennms MeridianAIOpennms HorizonAI | 10/9/2026 | 18/9/2026 | An XML External Entity (XXE) vulnerability exists in the XML collector of multiple versions of OpenNMS Meridian and Horizon. When OpenNMS collects XML from a source whose response is attacker-controlled (for example a compromised monitored host or an HTTP man-in-the-middle position), the collector's XML parser… | |
| Pendiente de análisis | Alta (8.2) | 0.51% | — | Opennms HorizonAI | 10/9/2026 | 18/9/2026 | A missing authorization vulnerability in OpenNMS Horizon allows configuration changes without authentication. The Spring Security policy for the /api/v2 REST API defines authorization rules for every HTTP method except PATCH, so the shipped @PATCH configuration endpoints for event configuration and SNMP data… | |
| Aplazada | Media (6.1) | 0.14% | — | Radcom Horizon Security AnalyzerAI | 8/9/2026 | 8/9/2026 | Improper Privilege Management vulnerability in Horizon Security Analyzer (formerly AlgoSec Firewall Analyzer) on Linux, 64 bit allows Privilege Escalation and Parameter Injection. A local user with access to the command line may escalate their privileges by abusing the parameters of a command that is approved in the… | |
| Pendiente de análisis | Media (4.3) | 0.25% | — | Opennms MeridianAIOpennms HorizonAI | 13/8/2026 | 8/9/2026 | An incorrect authorization check in the v2 Alarm REST API in OpenNMS Meridian and Horizon allows a low-privileged authenticated user (ROLE_REST) to acknowledge, escalate, or clear alarms recorded as an arbitrary username, and, when also assigned ROLE_READONLY, to modify alarm state despite the read-only restriction. A… | |
| Pendiente de análisis | Media (5.4) | 0.29% | — | Opennms MeridianAIOpennms HorizonAI | 13/8/2026 | 8/9/2026 | A JEXL expression sandbox bypass exists in multiple versions of OpenNMS Meridian and Horizon. A low-privileged authenticated user can submit a crafted expression to the Measurements REST API that escapes the sandbox and loads arbitrary Java classes on the server. This can potentially allow an attacker to gain access… | |
| Analizada | Media (6.8) | 0.46% | — | Openstack Horizon | 17/6/2026 | 22/9/2026 | OpenStack Horizon before 25.7.4 produces scripts for OpenStack RC file downloading that may have a crafted project name with shell metacharacters. NOTE: some parties consider this a security hardening opportunity to address certain types of user error, not a vulnerability. | |
| Analizada | Crítica (9.8) | 0.92% | — | Microsoft Azure Horizondb | 4/6/2026 | 23/7/2026 | Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network. | |
| Aplazada | Media (5.5) | 0.30% | — | Horizon921 McpilotAI | 1/6/2026 | 22/7/2026 | A security flaw has been discovered in horizon921 mcpilot 0.1.0. The impacted element is an unknown function of the file client/src/app/api/mcp/call/route.ts of the component MCP API Call Endpoint. The manipulation of the argument serverBaseUrl results in server-side request forgery. The attack can be launched… | |
| Analizada | Media (5.3) | 0.60% | — | Openstack Horizon | 5/5/2026 | 10/9/2026 | An issue was discovered in OpenStack Horizon 25.6 and 25.7 before 25.7.3. There is a write operation to the session storage backend before authentication and thus storage can be exhausted by unauthenticated requests. This is a regression of the CVE-2014-8124 fix. | |
| Aplazada | Alta (8.1) | 0.52% | — | Ancorathem HorizonAI | 5/3/2026 | 17/6/2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Horizon horizon allows PHP Local File Inclusion.This issue affects Horizon: from n/a through <= 1.1. | |
| Aplazada | Media (6.5) | 0.19% | — | Subhansanjaya Carousel Horizontal Posts Content SliderAI | 22/1/2026 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in subhansanjaya Carousel Horizontal Posts Content Slider carousel-horizontal-posts-content-slider allows DOM-Based XSS.This issue affects Carousel Horizontal Posts Content Slider: from n/a through <= 3.3.2. | |
| Aplazada | Alta (7.1) | 0.13% | — | Extendyourweb Horizontal SliderAI | 22/9/2025 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in extendyourweb HORIZONTAL SLIDER horizontal-slider allows Stored XSS.This issue affects HORIZONTAL SLIDER: from n/a through <= 2.4. | |
| Aplazada | Media (6.6) | 0.11% | — | Zoom Workplace VDI PluginAIVmware HorizonAI | 9/9/2025 | 17/6/2026 | Race condition in the Zoom Workplace VDI Plugin macOS Universal installer for VMware Horizon before version 6.4.10 (or before 6.2.15 and 6.3.12 in their respective tracks) may allow an authenticated user to conduct a disclosure of information via network access. | |
| Aplazada | Media (6.9) | 0.24% | — | Opennms HorizonAIOpennms MeridianAI | 26/6/2025 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenNMS Horizon and Meridian applications allows SQL Injection. Users should upgrade to Meridian 2024.2.6 or newer, or Horizon 33.16 or newer. Meridian and Horizon installation instructions state that they are… | |
| Aplazada | Media (6.9) | 0.24% | — | Opennms HorizonAIOpennms MeridianAI | 26/6/2025 | 17/6/2026 | Multiple stored XSS were found on different nodes with unsanitized parameters in OpenMNS Horizon 33.0.8 and versions earlier than 33.1.6 on multiple platforms that allow an attacker to store on database and then inject HTML and/or Javascript on the page. The solution is to upgrade to Horizon 33.1.6, 33.1.7 or Meridian… | |
| Analizada | Alta (7) | 0.35% | — | Horizondatasys Rollback RX PRO | 22/4/2025 | 17/6/2026 | In Rollback Rx Professional 12.8.0.0, the driver file shieldm.sys allows local users to cause a denial of service because of a null pointer dereference from IOCtl 0x96202000. | |
| Aplazada | Alta (7.8) | 0.15% | — | Omnissa Horizon Client FOR WindowsAI | 16/4/2025 | 17/6/2026 | Omnissa Horizon Client for Windows contains an LPE Vulnerability. A malicious actor with local access where Horizon Client for Windows is installed may be able to elevate privileges. | |
| Aplazada | Alta (7.5) | 0.36% | — | Sirsidynix Horizon Information PortalAI | 25/3/2025 | 17/6/2026 | SQL Injection can occur in the SirsiDynix Horizon Information Portal (IPAC20) through 3.25_9382; however, a patch is available from the vendor. This is in ipac.jsp in a SELECT WHERE statement, in a part of the uri= variable in the second part of the full= inner variable. | |
| Aplazada | Alta (7.8) | 0.17% | — | Omnissa Horizon Client MacosAI | 4/2/2025 | 17/6/2026 | Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a flaw in the installation process. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileges to root on the system where the Horizon Client for macOS is installed. | |
| Aplazada | Alta (7.8) | 0.19% | — | Omnissa Horizon Client FOR MacosAI | 4/2/2025 | 17/6/2026 | Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileges to root on the system where the Horizon Client for macOS is installed. | |
| Aplazada | Media (6.5) | 0.37% | — | Jobair JB Horizontal Scroller News TickerAI | 16/1/2025 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jobair JB Horizontal Scroller News Ticker jb-horizontal-scroller-news-ticker allows DOM-Based XSS.This issue affects JB Horizontal Scroller News Ticker: from n/a through <= 1.0. |