Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2585▼ 302 respecto a la semana anterior
Críticas / altas1355▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.1) | 5.4% | — | Influxdb OSSAI | 21/11/2024 | 17/6/2026 | InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not… | |
| Modificada | Crítica (9.8) | 2.5% | — | Influxdata Influxdb | 2/9/2022 | 9/7/2026 | influxData influxDB before v1.8.10 contains no authentication mechanism or controls, allowing unauthenticated attackers to execute arbitrary commands. NOTE: the CVE ID assignment is disputed because the vendor's documentation states "If InfluxDB is being deployed on a publicly accessible endpoint, we strongly… | |
| Modificada | Crítica (9.8) | 31% | — | Influxdata InfluxdbDebian Linux | 19/11/2020 | 17/6/2026 | InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.go because a JWT token may have an empty SharedSecret (aka shared secret). | |
| Modificada | Media (4.8) | 0.73% | — | Influxdata Influxdb | 2/3/2020 | 17/6/2026 | InfluxDB 0.9.5 has Reflected XSS in the Write Data module. | |
| Modificada | Alta (8.8) | 1.7% | — | Eficode Influxdb | 31/5/2019 | 17/6/2026 | Jenkins InfluxDB Plugin 1.21 and earlier stored credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system. |