Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2744▼ 71 respecto a la semana anterior
Críticas / altas1416▲ 184 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)106▼ 394 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.53% | — | Walrusirc Project Walrusirc | 13/2/2023 | 17/6/2026 | A vulnerability was found in juju2143 WalrusIRC 0.0.2. It has been rated as problematic. This issue affects the function parseLinks of the file public/parser.js. The manipulation of the argument text leads to cross site scripting. The attack may be initiated remotely. Upgrading to version 0.0.3 is able to address this… | |
| Modificada | Alta (7.5) | 2.1% | — | Openrc Project Openrc | 14/10/2021 | 17/6/2026 | checkpath in OpenRC before 0.44.7 uses the direct output of strlen() to allocate strings, which does not account for the '\0' byte at the end of the string. This results in memory corruption. CVE-2021-42341 was introduced in git commit 63db2d99e730547339d1bdd28e8437999c380cae, which was introduced as part of OpenRC… | |
| Modificada | Alta (8.1) | 0.83% | — | Parc Project Parc | 8/8/2021 | 17/6/2026 | An issue was discovered in the parc crate through 2020-11-14 for Rust. LockWeak<T> has an unconditional implementation of Send without trait bounds on T. | |
| Modificada | Media (6.5) | 1.5% | — | RC Project RCRcpro Project Rcpro | 24/6/2021 | 17/6/2026 | An issue was discovered in function addMeByRC in the smart contract implementation for RC, an Ethereum token, allows attackers to transfer an arbitrary amount of tokens to an arbitrary address. | |
| Modificada | Alta (7.5) | 1.5% | — | Marc Project Marc | 29/1/2021 | 17/6/2026 | An issue was discovered in the marc crate before 2.0.0 for Rust. A user-provided Read implementation can gain access to the old contents of newly allocated memory, violating soundness. | |
| Modificada | Media (5.5) | 0.39% | — | Openrc Project Openrc | 27/10/2020 | 17/6/2026 | checkpath in OpenRC through 0.42.1 might allow local users to take ownership of arbitrary files because a non-terminal path component can be a symlink. | |
| Modificada | Alta (7.5) | 1.3% | — | RC Project RCDebian Linux | 21/11/2019 | 17/6/2026 | rc before 1.7.1-5 insecurely creates temporary files. | |
| Modificada | Media (5.3) | 2.4% | — | ARC Project ARC | 7/1/2019 | 17/6/2026 | ARC 5.21q allows directory traversal via a full pathname in an archive file. | |
| Modificada | Alta (7.5) | 1.1% | — | Elearningcoinerc Project Elearningcoinerc | 9/7/2018 | 17/6/2026 | The mintToken function of a smart contract implementation for ELearningCoinERC, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value. |