Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2744▼ 71 respecto a la semana anterior
Críticas / altas1416▲ 184 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)106▼ 394 respecto a la semana anterior
–

9 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)0.53%—Walrusirc Project Walrusirc13/2/202317/6/2026
A vulnerability was found in juju2143 WalrusIRC 0.0.2. It has been rated as problematic. This issue affects the function parseLinks of the file public/parser.js. The manipulation of the argument text leads to cross site scripting. The attack may be initiated remotely. Upgrading to version 0.0.3 is able to address this…
ModificadaAlta (7.5)2.1%—Openrc Project Openrc14/10/202117/6/2026
checkpath in OpenRC before 0.44.7 uses the direct output of strlen() to allocate strings, which does not account for the '\0' byte at the end of the string. This results in memory corruption. CVE-2021-42341 was introduced in git commit 63db2d99e730547339d1bdd28e8437999c380cae, which was introduced as part of OpenRC…
ModificadaAlta (8.1)0.83%—Parc Project Parc8/8/202117/6/2026
An issue was discovered in the parc crate through 2020-11-14 for Rust. LockWeak<T> has an unconditional implementation of Send without trait bounds on T.
ModificadaMedia (6.5)1.5%—RC Project RCRcpro Project Rcpro24/6/202117/6/2026
An issue was discovered in function addMeByRC in the smart contract implementation for RC, an Ethereum token, allows attackers to transfer an arbitrary amount of tokens to an arbitrary address.
ModificadaAlta (7.5)1.5%—Marc Project Marc29/1/202117/6/2026
An issue was discovered in the marc crate before 2.0.0 for Rust. A user-provided Read implementation can gain access to the old contents of newly allocated memory, violating soundness.
ModificadaMedia (5.5)0.39%—Openrc Project Openrc27/10/202017/6/2026
checkpath in OpenRC through 0.42.1 might allow local users to take ownership of arbitrary files because a non-terminal path component can be a symlink.
ModificadaAlta (7.5)1.3%—RC Project RCDebian Linux21/11/201917/6/2026
rc before 1.7.1-5 insecurely creates temporary files.
ModificadaMedia (5.3)2.4%—ARC Project ARC7/1/201917/6/2026
ARC 5.21q allows directory traversal via a full pathname in an archive file.
ModificadaAlta (7.5)1.1%—Elearningcoinerc Project Elearningcoinerc9/7/201817/6/2026
The mintToken function of a smart contract implementation for ELearningCoinERC, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.