Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2748▲ 37 respecto a la semana anterior
Críticas / altas1479▲ 369 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
–

28 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaCrítica (9.1)0.31%—Passport Saml EncryptedAI10/9/202610/9/2026
passport-saml-encrypted through 0.1.13 contains an XML signature wrapping vulnerability where signature verification and assertion extraction use independent XPath lookups with no cross-validation. Attackers holding any validly signed SAML message can prepend a forged unsigned assertion that gets accepted as the…
AplazadaCrítica (9.3)0.39%—Passport-saml-encryptedAI10/9/202611/9/2026
passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing attackers to bypass authentication by submitting unsigned SAML responses. Attackers can post forged SAML responses with arbitrary NameID and attributes to the assertion consumer service endpoint to…
Pendiente de análisisCrítica (9.3)0.25%—3DS 3dpassportAI3dswymerAI27/8/20268/9/2026
An Improper Authorization vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2026x could allow an attacker to gain access to some user accounts.
AnalizadaAlta (7.1)0.40%—Laravel Passport9/4/202617/6/2026
Laravel Passport provides OAuth2 server support to Laravel. From 13.0.0 to before 13.7.1, there is an Authentication Bypass for client_credentials tokens. the league/oauth2-server library sets the JWT sub claim to the client identifier (since there's no user). The token guard then passes this value to retrieveById()…
AplazadaAlta (8.6)0.37%—Auth0 Passport-wsfed-saml2AI6/5/202517/6/2026
passport-wsfed-saml2 provides passport strategy for both WS-fed and SAML2 protocol. A vulnerability present starting in version 3.0.5 up to and including version 4.6.3 allows an attacker to impersonate any user during SAML authentication by tampering with a valid SAML response. This can be done by adding attributes to…
AplazadaCrítica (9.3)0.42%—Auth0 Passport-wsfed-saml2AI6/5/202517/6/2026
passport-wsfed-saml2 provides passport strategy for both WS-fed and SAML2 protocol. A vulnerability present starting in version 3.0.5 up to and including version 4.6.3 allows an attacker to impersonate any user during SAML authentication by crafting a SAMLResponse. This can be done by using a valid SAML object that…
AplazadaMedia (5.9)0.25%—Universal Passport RXAI3/6/202417/6/2026
Cross-site scripting vulnerability exists in UNIVERSAL PASSPORT RX versions 1.0.0 to 1.0.8, which may allow a remote authenticated attacker with an administrative privilege to execute an arbitrary script on the web browser of the user who is using the product.
AplazadaMedia (6.5)0.29%—Universal Passport RXAI3/6/202417/6/2026
Cross-site scripting vulnerability exists in UNIVERSAL PASSPORT RX versions 1.0.0 to 1.0.7, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is using the product.
ModificadaAlta (7.5)0.50%—N-able Passportal8/2/202417/6/2026
The N-able PassPortal extension before 3.29.2 for Chrome inserts sensitive information into a log file.
ModificadaAlta (8.1)0.68%—Digi RealportDigi Connectport TS 8/16 FirmwareDigi Passport FirmwareDigi Connectport LTS 8/16/32 Firmware+1631/8/202317/6/2026
Digi RealPort Protocol is vulnerable to a replay attack that may allow an attacker to bypass authentication to access connected equipment.
ModificadaMedia (6.5)0.38%—Fastify Passport21/4/202317/6/2026
@fastify/passport is a port of passport authentication library for the Fastify ecosystem. The CSRF (Cross-Site Request Forger) protection enforced by the `@fastify/csrf-protection` library, when combined with `@fastify/passport` in affected versions, can be bypassed by network and same-site attackers.…
ModificadaAlta (8.1)0.75%—Fastify Passport21/4/202317/6/2026
@fastify/passport is a port of passport authentication library for the Fastify ecosystem. Applications using `@fastify/passport` in affected versions for user authentication, in combination with `@fastify/session` as the underlying session management mechanism, are vulnerable to session fixation attacks from network…
ModificadaAlta (7.5)0.77%—Auth0 Passport-wsfed-saml213/12/202217/6/2026
Passport-wsfed-saml2 is a ws-federation protocol and SAML2 tokens authentication provider for Passport. In versions prior to 4.6.3, a remote attacker may be able to bypass WSFed authentication on a website using passport-wsfed-saml2. A successful attack requires that the attacker is in possession of an arbitrary IDP…
ModificadaAlta (8.1)3.4%—Passport-saml Project Passport-saml12/10/202217/6/2026
Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library. A remote attacker may be able to bypass SAML authentication on a website using passport-saml. A successful attack requires that the attacker is in possession of an arbitrary IDP signed XML element. Depending on the…
ModificadaMedia (4.8)1.1%—Passport Project Passport1/7/202217/6/2026
This affects the package passport before 0.6.0. When a user logs in or logs out, the session is regenerated instead of being closed.
ModificadaAlta (7.5)1.8%—Digi Passport Firmware6/4/202217/6/2026
Digi Passport Firmware through 1.5.1,1 is affected by a buffer overflow. An attacker can supply a string in the page parameter for reboot.asp endpoint, allowing him to force an overflow when the string is concatenated to the HTML body.
ModificadaAlta (7.5)2.1%—Digi Passport Firmware6/4/202217/6/2026
Digi Passport Firmware through 1.5.1,1 is affected by a buffer overflow in the function for building the Location header string when an unauthenticated user is redirected to the authentication page.
ModificadaCrítica (9.8)0.69%—Digi RealportDigi Connectport TS 8/16 FirmwareDigi Connectport LTS 8/16/32 FirmwareDigi Passport Integrated Console Server Firmware+158/10/202117/6/2026
In Digi RealPort through 4.10.490, authentication relies on a challenge-response mechanism that gives access to the server password, making the protection ineffective. An attacker may send an unauthenticated request to the server. The server will reply with a weakly-hashed version of the server's access password. The…
ModificadaAlta (8.1)0.89%—Digi RealportDigi Connectport TS 8/16 FirmwareDigi Connectport LTS 8/16/32 FirmwareDigi Passport Integrated Console Server Firmware+148/10/202117/6/2026
An issue was discovered in Digi RealPort through 4.8.488.0. The 'encrypted' mode is vulnerable to man-in-the-middle attacks and does not perform authentication.
ModificadaCrítica (9.8)1.6%—Digi RealportDigi Connectport TS 8/16 FirmwareDigi Connectport LTS 8/16/32 FirmwareDigi Passport Integrated Console Server Firmware+148/10/202117/6/2026
An issue was discovered in Digi RealPort for Windows through 4.8.488.0. A buffer overflow exists in the handling of ADDP discovery response messages. This could result in arbitrary code execution.
ModificadaMedia (5.3)1.3%—Passportjs Passport-oauth227/9/202117/6/2026
The passport-oauth2 package before 1.6.1 for Node.js mishandles the error condition of failure to obtain an access token. This is exploitable in certain use cases where an OAuth identity provider uses an HTTP 200 status code for authentication-failure error reports, and an application grants authorization upon simply…
ModificadaAlta (7.5)1.3%—Passport-saml Project Passport-saml27/8/202117/6/2026
Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library. Prior to version 3.1.0, a malicious SAML payload can require transforms that consume significant system resources to process, thereby resulting in reduced or denied service. This would be an effective way to perform a…
ModificadaAlta (7.3)0.56%—Auth0 Passport-sharepoint25/7/201917/6/2026
Auth0 Passport-SharePoint before 0.4.0 does not validate the JWT signature of an Access Token before processing. This allows attackers to forge tokens and bypass authentication and authorization mechanisms.
ModificadaAlta (7.8)0.27%—Envoy Passport21/3/201917/6/2026
Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, caused by the storing of hardcoded OAuth Creds in plaintext. An attacker could exploit this vulnerability to obtain sensitive information.
ModificadaMedia (5.5)0.21%—Envoy Passport21/3/201917/6/2026
Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, caused by the storing of unencrypted data in logs. An attacker could exploit this vulnerability to obtain two API keys, a token and other sensitive information.