Skip to content
Toggle Navigation
Kit ISO 27001
Ingeniería y Consultoría
Recursos
ISO 27001
ISO 27001 – GAP Analysis Tool
Ciberseguridad
Vulnerabilidades CVE
Blog
Contacto
Obtener el Toolkit
Toggle Navigation
Kit ISO 27001
Ingeniería y Consultoría
Recursos
ISO 27001
ISO 27001 – GAP Analysis Tool
Ciberseguridad
Vulnerabilidades CVE
Blog
Contacto
Obtener el Toolkit
Vulnerabilidades CVE
Vulnerabilidades CVE
drmunozcl
2025-06-04T18:44:58-04:00
Vulnerabilidades CVE
A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:
Severidad:
Todas
NONE
LOW
MEDIUM
HIGH
CRITICAL
UNKNOWN
CVE:
Aplicar
Borrar filtros
CVE ID
Publicado
Severidad
CVSS
Descripción
CVE-2026-72802
2026-08-12
MEDIUM
5.3
SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the resolveAssetPath endpoint that returns absolute filesystem paths unmodified to CheckAuth-only requests. Attackers can harvest relative asset paths…
CVE-2026-72801
2026-08-12
HIGH
7.5
SiYuan versions before v3.7.4 disclose encrypted-notebook key-derivation material and wrapped data keys through unauthenticated endpoints in publish mode. Attackers can retrieve Argon2id salt, cost parameters, password verifiers, and…
CVE-2026-72800
2026-08-12
MEDIUM
5.8
SiYuan versions before v3.7.4 fail to apply publish-access filtering to the getAttributeViewKeysByID endpoint, allowing authenticated readers to retrieve complete database column schemas including descriptions, select vocabularies, and template…
CVE-2026-72799
2026-08-12
MEDIUM
5.8
SiYuan before v3.7.4 (affected
CVE-2026-72798
2026-08-12
HIGH
8.6
SiYuan versions before v3.7.4 fail to properly filter related-database content in renderAttributeView, allowing anonymous readers to access Relation and Rollup cell contents from hidden or password-protected databases. Attackers…
CVE-2026-72797
2026-08-12
MEDIUM
5.8
SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getEncryptedNotebookStatus endpoint that returns encrypted notebook identifiers, names, and lock states without publish-access filtering. Anonymous readers and…
CVE-2026-72796
2026-08-12
MEDIUM
5.8
SiYuan before v3.7.4 contains an access control bypass vulnerability where static-file routes in the server mux bypass publish-access controls enforced on the REST API. Attackers with publish reader…
CVE-2026-72794
2026-08-12
HIGH
8.6
siyuan versions before v3.7.4 expose the session cookie signing key through the /api/system/getConf endpoint to unauthenticated users in publish mode. Attackers can retrieve the CookieKey value and forge…
CVE-2026-72793
2026-08-12
HIGH
8.6
SiYuan versions before v3.7.4 fail to mask sensitive configuration fields in the /api/system/getConf endpoint, allowing anonymous or publish-reader users to obtain the session-cookie signing key, OS username via…
CVE-2026-72792
2026-08-12
MEDIUM
5.8
SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/tag/getTag endpoint that returns tag labels and occurrence counts from password-protected documents to unauthenticated readers. Attackers can enumerate…
CVE-2026-72790
2026-08-12
MEDIUM
5.8
SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/notebook/getNotebookInfo endpoint that returns notebook metadata without authorization checks. Attackers can read notebook names, document counts, sizes, and…
CVE-2026-72789
2026-08-12
HIGH
8.6
SiYuan before v3.7.4 fails to properly validate publish access for encrypted notebooks, treating them as publicly accessible by default. Anonymous readers can enumerate and retrieve fully decrypted document…
CVE-2026-72788
2026-08-12
MEDIUM
5.8
SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the UILayout filter that fails to properly restrict administrator workspace state from publish readers. Unauthenticated attackers can retrieve…
CVE-2026-68757
2026-08-12
HIGH
7.5
A user with access to a valid SAML response may impersonate another user under specific conditions.
CVE-2026-63299
2026-08-12
CRITICAL
9.9
An authorization bypass vulnerability in LXD allows an authenticated user to bypass project-level disk and volume limits. Two related code paths fail to verify resource limits during volume…
CVE-2026-62420
2026-08-12
CRITICAL
9.9
An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass target project security restrictions during cross-project instance migrations. When moving an instance cross-project to a different…
CVE-2026-48553
2026-08-12
HIGH
7.5
Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 are vulnerable to authenticated remote code execution via custom-variable macro injection through the Nagios Remote Data Processor (NRDP). When…
CVE-2026-19657
2026-08-12
MEDIUM
6.1
ScadaLTS 2.7.8.1 reflects user-supplied input into an HTML response without sanitization. An unauthenticated attacker who lures a victim into visiting a crafted URL can execute arbitrary JavaScript in the…
CVE-2026-19656
2026-08-12
CRITICAL
9.9
ScadaLTS 2.7.8.1 exposes a server-side method that lacks authorization checks, allowing any authenticated user (including one holding only low-privilege, read-only permissions) to execute arbitrary operating system commands on the…
CVE-2026-19566
2026-08-12
HIGH
7.5
Net::CIDR::Set versions before 0.23 for Perl allow memory exhaustion and malformed set ranges via unbounded IPv6 prefix lengths. The _encode method accepts any prefix length matching `(0|[1-9][0-9]*)` and…
CVE-2026-19559
2026-08-11
HIGH
8.8
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium…
CVE-2026-18391
2026-08-12
CRITICAL
9.8
The WooCommerce Subscriptions WordPress plugin before 9.1.0 does not validate user input before unserializing it on stores with High-Performance Order Storage enabled, leading to a PHP Object Injection…
CVE-2026-18366
2026-08-12
CRITICAL
9.8
The Events Manager WordPress plugin before 7.4.1 does not properly scope its capability mapping, discarding the access control decisions WordPress already made for unrelated privileged actions, which allows…
CVE-2026-18048
2026-08-12
HIGH
7.5
The WP Photo Album Plus WordPress plugin before 9.2.07.002 does not validate a client-controlled value used to build a file path in one of its public endpoint actions,…
CVE-2026-16737
2026-08-12
MEDIUM
5.3
The WP Travel Engine WordPress plugin before 6.8.5 does not perform authorization or ownership checks when loading a caller-supplied booking identifier in one of its unauthenticated cart actions,…
CVE-2026-16538
2026-08-12
CRITICAL
9.1
The Wallet for WooCommerce WordPress plugin before 1.6.10 does not verify the amount actually collected for a wallet top-up before crediting the wallet, allowing customers to top up…
CVE-2026-16294
2026-08-12
HIGH
7.1
The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.17.1 does not validate one of its Podcast Episode URL settings before performing a server-side request with it, allowing…
CVE-2026-16051
2026-08-12
CRITICAL
9.8
The wpmudev-updates WordPress plugin before 5.0.1 does not verify the integrity of the packages installed through its remote management interface, nor protect those requests against replay, allowing an…
CVE-2026-15388
2026-08-12
MEDIUM
4.3
The Cookie Consent WordPress plugin before 0.0.10 does not correctly enforce its intended administrator-only capability check on its consent-settings REST routes, so they fall back to an authentication-only…
CVE-2026-15039
2026-08-12
CRITICAL
9.8
The giftware WordPress plugin before 4.2.10 does not validate the type of uploaded files in one of its upload paths, allowing unauthenticated users to upload arbitrary files, including…
CVE-2026-14925
2026-08-12
HIGH
7.5
The Import WP WordPress plugin before 2.14.23 does not perform any authorization check on one of its export-file download handlers, allowing unauthenticated attackers to download export files generated…
CVE-2026-14859
2026-08-12
MEDIUM
4.3
The WP Crowdfunding WordPress plugin before 2.2.1 does not check the campaign-submission capability in one of its AJAX actions, allowing any authenticated users such as Subscribers to create…
CVE-2026-14858
2026-08-12
MEDIUM
4.3
The WP Crowdfunding WordPress plugin before 2.2.1 does not verify order ownership before returning order details, allowing any authenticated users such as Subscribers to read the personal data…
CVE-2026-13613
2026-08-12
HIGH
8.8
The KiviCare WordPress plugin before 4.5.2 does not properly sanitise and escape user-supplied parameters before using them in a SQL query, allowing authenticated users with a clinic staff-level…
CVE-2026-13171
2026-08-12
HIGH
8.2
The Eventin WordPress plugin before 4.1.20 does not perform an authorization check on its waiting-list registration handler, allowing unauthenticated users to create WordPress user accounts for arbitrary email…
CVE-2026-13168
2026-08-12
MEDIUM
6.5
The Eventin WordPress plugin before 4.1.20 does not properly restrict access to stored customer records, allowing users with contributor-level access and above to read other customers' personal data…
CVE-2026-12976
2026-08-12
MEDIUM
6.5
The LearnPress WordPress plugin before 4.4.4 does not verify that a user is enrolled in a course before processing AI-assistant requests against that course's lesson content, allowing any…
CVE-2025-59320
2026-08-12
MEDIUM
4.6
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets in a serialized format within unused disk sectors. An unauthenticated attacker with physical access to the system…
CVE-2025-59319
2026-08-12
HIGH
7.2
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the integrity of the intended boot partition and selects the first partition index matching a hardcoded type…
CVE-2026-73301
2026-08-12
MEDIUM
4.3
Budibase is an open-source low-code platform. Prior to 3.39.25, the GET /api/global/groups endpoint in packages/worker/src/api/routes/global/groups.ts omitted auth.builderOrAdmin, allowing an authenticated BASIC role user to enumerate tenant groups, role…
CVE-2026-69107
2026-08-12
MEDIUM
5.9
An unauthenticated user may access restricted artifacts in JFrog Artifactory under specific conditions.
CVE-2026-68759
2026-08-12
HIGH
7.2
A holder of a valid integration credential may impersonate other users under specific conditions.
CVE-2026-68760
2026-08-12
MEDIUM
5.3
An unauthenticated user may bypass authentication under specific cache conditions.
CVE-2026-68758
2026-08-12
MEDIUM
6.5
A low-privileged authenticated user may access restricted support information under specific conditions.
CVE-2026-66384
2026-08-12
MEDIUM
5.3
An authenticated user may write data outside the intended Docker cache path under specific remote-repository conditions.
CVE-2026-67286
2026-08-12
N/A
0.0
Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creation and file write in SP Page Builder < 6.8.0 - An unauthenticated attacker can create arbitrary directories and files…
CVE-2026-66382
2026-08-12
MEDIUM
4.3
An authenticated user may write files outside the intended Artifactory work directory under specific conditions.
CVE-2026-66381
2026-08-12
MEDIUM
5.3
A repository reader with cache-deploy permission may access content outside a configured upstream path under specific conditions.
CVE-2026-66016
2026-08-12
MEDIUM
6.7
Under specific self-hosted Helm configurations, generated TLS private keys may be retained in rendered manifests accessible to highly privileged local users.
CVE-2026-66375
2026-08-12
HIGH
8.1
A low-privilege authenticated user may permanently remove protected internal metadata across repositories under specific conditions.
« Anterior
Página 42 de 4839
Siguiente »
Page load link
Go to Top