Vulnerabilidades CVE

A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:

Borrar filtros
CVE ID Publicado Severidad CVSS Descripción
CVE-2026-65806 2026-08-11 MEDIUM 6.5 Missing authorization in Azure CycleCloud allows an authorized attacker to disclose information over a network.
CVE-2026-65783 2026-08-11 HIGH 7.0 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65781 2026-08-11 HIGH 7.0 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65779 2026-08-11 HIGH 7.0 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65778 2026-08-11 HIGH 7.0 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
CVE-2026-65767 2026-08-11 HIGH 8.8 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allows an authorized attacker to perform spoofing over a network.
CVE-2026-65681 2026-08-11 HIGH 7.5 Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.
CVE-2026-65672 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.
CVE-2026-64922 2026-08-11 MEDIUM 4.6 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-64917 2026-08-11 MEDIUM 5.5 Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-64916 2026-08-11 MEDIUM 4.6 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-63521 2026-08-11 MEDIUM 5.5 Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-62901 2026-08-11 HIGH 7.5 Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.
CVE-2026-62898 2026-08-11 HIGH 7.5 Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.
CVE-2026-73219 2026-08-11 N/A 0.0 CVAT is an open source interactive video and image annotation tool for computer vision. From 2.17.0 until 2.72.0, a user with write access to a CVAT job can…
CVE-2026-73218 2026-08-11 N/A 0.0 Cursor is a code editor built for programming with AI. Prior to 3.0.0, Cursor IDE for macOS allows an agent running in Auto-Run Sandbox mode, when Docker Desktop…
CVE-2026-73215 2026-08-11 N/A 0.0 Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.17.0, turnports_allocate_even() in src/apps/relay/turn_ports.c marks the unused odd sibling port as TPS_TAKEN_ODD for an…
CVE-2026-73214 2026-08-11 N/A 0.0 Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.16.0, dtls_server_input_handler() and create_new_connected_udp_socket() in src/apps/relay/dtls_listener.c retain OpenSSL dtls1_reassemble_fragment() state for a 35-byte fragmented…
CVE-2026-73213 2026-08-11 N/A 0.0 Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.16.0, addr_less_eq() in src/client/ns_turn_ioaddr.c uses a component-wise comparison for native IPv6 min-max intervals in…
CVE-2026-73212 2026-08-11 N/A 0.0 Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.1, good_peer_addr() in src/server/ns_turn_server.c uses ioa_addr_in_range() in src/client/ns_turn_ioaddr.c without canonicalizing IPv4-compatible, 6to4, and 64:ff9b::/96…
CVE-2026-73090 2026-08-11 CRITICAL 9.3 PeerTube is an ActivityPub-federated video streaming platform. Prior to 8.2.2, processUpdateActivity and processUpdateVideo accept an ActivityPub Update containing a Video object without verifying that byActor.url is authorized for…
CVE-2026-73082 2026-08-11 N/A 0.0 Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the POST /api/v1/projects/:projectId/mcp-server/validate-agent-mcp-tool endpoint makes an outbound HTTP or SSE request to a user-supplied serverUrl without…
CVE-2026-72785 2026-08-11 MEDIUM 4.3 Craft CMS 5.0.0-RC1 through 5.10.5 contains an incorrect authorization vulnerability. A control-panel user holding only the viewCategories permission (without saveCategories) for a category group can permanently modify that…
CVE-2026-72782 2026-08-11 MEDIUM 6.5 Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1 before 4.18.2 interpolate environment variables and secrets (via ${ENV_VAR} strings in the elementId parameter) into Twig templates before…
CVE-2026-72780 2026-08-11 MEDIUM 6.5 Craft CMS before 5.10.5 fails to persist updated credential counters after WebAuthn assertion validation in the passkey login endpoint. Attackers can replay captured login request bodies containing requestOptions…
CVE-2026-72775 2026-08-11 N/A 0.0 n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the PostgresTrigger node, which interpolates user-supplied identifier parameters (channel, function, and trigger names) into SQL statements…
CVE-2026-72773 2026-08-11 N/A 0.0 n8n before 2.31.5 and 2.32.x before 2.32.1 contain a path-confinement bypass in the @n8n/computer-use file-search (search_files) tool. A crafted search pattern can bypass the base-directory confinement check and…
CVE-2026-73030 2026-08-10 HIGH 8.1 unearth through 0.18.2, fixed in commit 6c78164, contains a path traversal vulnerability in the is_within_directory function that fails to normalize paths before validation, allowing ../ sequences to bypass…
CVE-2026-72910 2026-08-10 HIGH 7.1 ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.112.0 and 16.22.0, the merge_account, pause_job_for_doc, trigger_job_for_doc, change_release_date, and update_cost_center functions across erpnext/accounts/doctype/account/account.py, erpnext/accounts/doctype/process_payment_reconciliation/process_payment_reconciliation.py, erpnext/accounts/doctype/purchase_invoice/purchase_invoice.py,…
CVE-2026-72906 2026-08-10 MEDIUM 4.3 ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, the send_auto_email function in erpnext/accounts/doctype/process_statement_of_accounts/process_statement_of_accounts.py lacks a Process Statement Of Accounts permission…
CVE-2026-72770 2026-08-11 N/A 0.0 n8n versions before 1.123.67 contain a path traversal vulnerability in the Git node's fetch, pull, and push-tags operations that allows authenticated users to bypass repository-path containment checks. Attackers…
CVE-2026-72768 2026-08-11 N/A 0.0 n8n versions before 2.32.1 contain a server-side request forgery protection bypass vulnerability in the MCP Client node that allows authenticated users to bypass SSRF protections. Attackers can craft…
CVE-2026-72765 2026-08-11 N/A 0.0 n8n before 2.31.5 and before 2.32.1 contain a sandbox escape vulnerability in expression evaluation. An authenticated user with permission to create or modify workflows can craft expressions using…
CVE-2026-72763 2026-08-11 N/A 0.0 n8n before 1.123.67, 2.31.5, and 2.32.1 validates credential-access only for a node's top-level credentials and not for credentials referenced inside an Execute Sub-workflow node's inline workflow JSON. A…
CVE-2026-72749 2026-08-11 N/A 0.0 n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution vulnerability in the Edit Fields (Set) node. The node assigns output fields via a dot-notation path setter without…
CVE-2026-72747 2026-08-11 HIGH 7.2 AVideo fails to sanitize the phone field during user registration, allowing unauthenticated attackers to inject malicious JavaScript that persists in the database. When administrators visit the users management…
CVE-2026-72712 2026-08-11 MEDIUM 6.5 Nmap versions up to and including 7.99 contains a denial of service vulnerability that allows remote attackers to crash the application by sending a crafted packet containing a…
CVE-2026-72744 2026-08-11 MEDIUM 6.2 Nuxt versions >= 4.4.7 and < 4.5.1, and >= 3.21.7 and < 3.21.10, contain an information disclosure vulnerability in the development server's Chrome DevTools workspace endpoint (GET /.well-known/appspecific/com.chrome.devtools.json).…
CVE-2026-72693 2026-08-11 HIGH 7.8 `openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage,…
CVE-2026-71398 2026-08-11 CRITICAL 10.0 Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could…
CVE-2026-71390 2026-08-11 MEDIUM 4.0 CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security…
CVE-2026-71965 2026-08-10 HIGH 8.8 CyberPanel 2.4.3, fixed in commit eca0c3c, contains an authenticated remote code execution vulnerability in the remote backup feature that allows authenticated attackers to gain root-level SSH access by…
CVE-2026-69223 2026-08-11 N/A 0.0 Apache Allura's webhooks are vulnerable to Server-Side Request Forgery (SSRF). This issue affects Apache Allura: before 1.19.1. Users are recommended to upgrade to version 1.19.1, which fixes the issue.
CVE-2026-6426 2026-08-10 MEDIUM 4.4 A type mismatch vulnerability was found in QEMU's vhost inflight migration VMState handling. The destination buffer size is stored as a uint64_t but read by the VMS_VBUFFER load…
CVE-2026-69113 2026-08-11 MEDIUM 5.4 Cap v0.3.1 contains a broken access control vulnerability in the POST /api/video/comment endpoint that allows authenticated users to post comments on any private video without permission by supplying…
CVE-2026-69102 2026-08-11 CRITICAL 9.8 MaxKey contains an unauthorized access vulnerability due to a hard-coded JWT signing secret in application-maxkey.properties that allows unauthenticated attackers to forge valid JWT tokens and authenticate as any…
CVE-2026-69109 2026-08-11 HIGH 7.5 A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.3). The affected application is vulnerable to a path traversal vulnerability due to lack of…
CVE-2026-69118 2026-08-10 HIGH 8.8 Cachet through 2.4.1 contains a server-side template injection vulnerability in incident template rendering that allows authenticated users to execute arbitrary PHP code. Attackers can create malicious incident templates…
CVE-2026-63622 2026-08-10 HIGH 7.8 A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploit a symlink-following vulnerability in the `virFileChownFiles()` function. By…
CVE-2026-59693 2026-08-11 MEDIUM 4.3 A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.233.16-7862), Desigo PXC3 (All versions < V01.21.233.16-7862), Desigo PXC4 (All versions < V02.21.194.36-2715), Desigo PXC5.E003 (All versions…
« Anterior Página 59 de 4840 Siguiente »