Habla con un experto

DIRECTORIO CVE · 2026

Vulnerabilidades conocidas

Página 14 de 95. Los registros están ordenados por fecha oficial de publicación, del más reciente al más antiguo.

Registros 1301–1400 de 9.413

Sin clasificar

Linux · Linux

CVE-2026-53371: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 2075bbe8ef03914aa2211035eec45d1d3a5c4ff2 hasta 61df14f306f153bffa2f3c74a94ff5a85c99fa39, 2075bbe8ef03914aa2211035eec45d1d3a5c4ff2 hasta a3e9372203afde2c62576356bb9a17890bc7fd6c, 2075bbe8ef03914aa2211035eec45d1d3a5c4ff2 hasta 654a27f25530d052eeedf086e6c3e2d585c203bd; Linux: 6.18, 0 hasta 6.18, 6.18.30 hasta 6.18.*, 7.0.7 hasta 7.0.*, 7.1 hasta *

Leer análisis →
Sin clasificar

Linux · Linux

CVE-2026-53370: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: ec980e4facef8110f6fce27e5b6344660117f01f hasta aab56b95bee3ff79176b13443cd9d7cfe9747df0, ec980e4facef8110f6fce27e5b6344660117f01f hasta c05e01cef47d9b4969eae2dcf9467e2a555bcb4f, ec980e4facef8110f6fce27e5b6344660117f01f hasta 5ad732a56be46aabf158c16aa0c095291727aaef; Linux: 6.16, 0 hasta 6.16, 6.18.30 hasta 6.18.*, 7.0.7 hasta 7.0.*, 7.1 hasta *

Leer análisis →
Alta

Linux · Linux

CVE-2026-53369: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 832ab4a882dc9b3c0155490d9993642ef545fd22, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 7d1b6adbf90df6c8941090d5646fbeca25ba9770, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 3dede76d525919bb966f9213e131af685de5ff99, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 50dfaf4a027742b4fcdc3e9305e7199ece9bc6a6, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 31605bbe94557bff721eaf041001169d44ac6f98, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 hasta 1873eb81c65d3f849418d7386baa39c439c9fc38; Linux: 2.6.12, 0 hasta 2.6.12, 5.10.258 hasta 5.10.*, 5.15.209 hasta 5.15.*, 6.1.175 hasta 6.1.*, 6.6.140 hasta 6.6.*

Leer análisis →
Alta

Linux · Linux

CVE-2026-53368: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 88bd02c9472a166b706284a34a84f1243322d782 hasta bedb710b63ae1bd617e65d0a8cf6cea1200b3753, 88bd02c9472a166b706284a34a84f1243322d782 hasta b28a83ea4934215b5de906c3ee4fbfbc651573e0, 88bd02c9472a166b706284a34a84f1243322d782 hasta 019f9dda7f66e55eb94cd32e1d3fff5835f73fbc; Linux: 3.18, 0 hasta 3.18, 6.18.30 hasta 6.18.*, 7.0.7 hasta 7.0.*, 7.1 hasta *

Leer análisis →
Sin clasificar

Linux · Linux

CVE-2026-53367: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b hasta e3e722ea88e051ae5361dc540c01ba18f87b5ffd, dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b hasta bce6a32bc888dfebb6a7d4dee454228b71ed8369, dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b hasta f92d542577db878acfd21cc18dab23d03023b217, 21879b76831fab52f6a615c531f86412c8d3c827, 6.17.10 hasta 6.18; Linux: 6.18, 0 hasta 6.18, 6.18.30 hasta 6.18.*, 7.0.7 hasta 7.0.*, 7.1 hasta *

Leer análisis →
Media

WordPress · HubSpot All-In-One Marketing – Forms, Popups, Live Chat

CVE-2026-9656: CWE-200: Exposición de información sensible a un actor no autorizado en HubSpot All-In-One Marketing – Forms, Popups, Live Chat

El registro oficial identifica la vulnerabilidad «CWE-200: Exposición de información sensible a un actor no autorizado» en HubSpot All-In-One Marketing – Forms, Popups, Live Chat. HubSpot All-In-One Marketing – Forms, Popups, Live Chat: 0 hasta 11.3.62

Leer análisis →
Crítica

WordPress · Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit

CVE-2026-15982: CWE-269: Gestión incorrecta de privilegios en Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit

El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit. Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit: 0 hasta 2.8.4

Leer análisis →
Media

WordPress · ChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat Form

CVE-2026-15759: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en ChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat Form

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en ChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat Form. ChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat Form: 0 hasta 3.5.1

Leer análisis →
Media

WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer

CVE-2026-15457: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en Kirki – Freeform Page Builder, Website Builder & Customizer

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.0.13

Leer análisis →
Alta

WordPress · Kali Forms — Contact Form & Drag-and-Drop Builder

CVE-2026-15395: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Kali Forms — Contact Form & Drag-and-Drop Builder

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Kali Forms — Contact Form & Drag-and-Drop Builder. Kali Forms — Contact Form & Drag-and-Drop Builder: 0 hasta 2.4.18

Leer análisis →
Alta

WordPress · Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress

CVE-2026-13352: CWE-434: vulnerabilidad de seguridad en Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress

El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress. Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress: 0 hasta 4.16.18

Leer análisis →
Media

WordPress · WooCommerce Placetopay Gateway Belice / WooCommerce Placetopay Gateway Ecuador / WooCommerce Placetopay Gateway Colombia

CVE-2026-11324: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en WooCommerce Placetopay Gateway Belice / WooCommerce Placetopay Gateway Ecuador / WooCommerce Placetopay Gateway Colombia

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WooCommerce Placetopay Gateway Belice / WooCommerce Placetopay Gateway Ecuador / WooCommerce Placetopay Gateway Colombia. WooCommerce Placetopay Gateway Belice: 0 hasta 3.2.2; WooCommerce Placetopay Gateway Ecuador: 0 hasta 3.2.2; WooCommerce Placetopay Gateway Colombia: 0 hasta 3.2.2; WooCommerce Placetopay Gateway Uruguay: 0 hasta 3.2.2; WooCommerce Placetopay Gateway: 0 hasta 3.2.2; WooCommerce Placetopay Gateway Honduras: 0 hasta 3.2.2

Leer análisis →
Media

Microsoft Office · Microsoft SharePoint Enterprise Server 2016 / Microsoft SharePoint Server 2019 / Microsoft SharePoint Server Subscription Edition

CVE-2026-62826: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Microsoft SharePoint Enterprise Server 2016 / Microsoft SharePoint Server 2019 / Microsoft SharePoint Server Subscription Edition

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Microsoft SharePoint Enterprise Server 2016 / Microsoft SharePoint Server 2019 / Microsoft SharePoint Server Subscription Edition. Microsoft SharePoint Enterprise Server 2016: 16.0.0 hasta 16.0.5561.1001; Microsoft SharePoint Server 2019: 16.0.0 hasta 16.0.10417.20175; Microsoft SharePoint Server Subscription Edition: 16.0.0 hasta 16.0.19725.20434

Leer análisis →
Alta

Windows · Windows 10 Version 21H2 / Windows 10 Version 22H2 / Windows 11 Version 24H2

CVE-2026-58598: CWE-362: Ejecución concurrente con sincronización incorrecta (Race Condition) en Windows 10 Version 21H2 / Windows 10 Version 22H2 / Windows 11 Version 24H2

El registro oficial identifica la vulnerabilidad «CWE-362: Ejecución concurrente con sincronización incorrecta (Race Condition)» en Windows 10 Version 21H2 / Windows 10 Version 22H2 / Windows 11 Version 24H2. Windows 10 Version 21H2: 10.0.19044.0 hasta 10.0.19044.7548; Windows 10 Version 22H2: 10.0.19045.0 hasta 10.0.19045.7548; Windows 11 Version 24H2: 10.0.26100.0 hasta 10.0.26100.8875; Windows 11 Version 25H2: 10.0.26200.0 hasta 10.0.26200.8875; Windows 11 version 26H1: 10.0.28000.0 hasta 10.0.28000.2525

Leer análisis →
Alta

Linux · Linux

CVE-2026-53366: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 8eb77cc73977d88787b37c92831b1c242e035396 hasta 5c6375bced6147ec2e460ee3b653f4860d5ecdc2, 8eb77cc73977d88787b37c92831b1c242e035396 hasta ce494707a9c07f27c219ca67f3e138061f53d9b3, 8eb77cc73977d88787b37c92831b1c242e035396 hasta a9c24eda24bd15f432e37824e6fc440977cb241c, 8eb77cc73977d88787b37c92831b1c242e035396 hasta 77798d7be6ef71e72fb6fc8a2901bf74ebc9706f, 8eb77cc73977d88787b37c92831b1c242e035396 hasta c04d9ece23deb9e26c19f9ca215e98b3295aa1bb, 8eb77cc73977d88787b37c92831b1c242e035396 hasta eca856950f7cb1a221e02b99d758409f2c5cec42; Linux: 6.0, 0 hasta 6.0, 6.1.178 hasta 6.1.*, 6.6.144 hasta 6.6.*, 6.12.95 hasta 6.12.*, 6.18.38 hasta 6.18.*

Leer análisis →
Media

WordPress · Easy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQ

CVE-2026-15652: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Easy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQ

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Easy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQ. Easy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQ: 0 hasta 3.1.6

Leer análisis →
Media

WordPress · SysBasics Customize My Account for WooCommerce – Live My Account Customizer

CVE-2026-15324: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en SysBasics Customize My Account for WooCommerce – Live My Account Customizer

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en SysBasics Customize My Account for WooCommerce – Live My Account Customizer. SysBasics Customize My Account for WooCommerce – Live My Account Customizer: 0 hasta 4.4.14

Leer análisis →
Media

WordPress · Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces

CVE-2026-15306: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces. Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces: 0 hasta 7.6.1

Leer análisis →
Alta

WordPress · WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell

CVE-2026-15103: CWE-269: Gestión incorrecta de privilegios en WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell

El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell. WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell: 0 hasta 3.12.8

Leer análisis →
Media

WordPress · WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes)

CVE-2026-15099: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes)

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes). WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes): 0 hasta 1.10.2

Leer análisis →
Media

WordPress · Tutor LMS – eLearning and online course solution

CVE-2026-15022: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Tutor LMS – eLearning and online course solution

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Tutor LMS – eLearning and online course solution. Tutor LMS – eLearning and online course solution: 0 hasta 4.0.0

Leer análisis →
Alta

WordPress · Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin

CVE-2026-15008: CWE-502: Deserialización de datos no confiables en Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin

El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin. Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin: 0 hasta 7.3.1.4

Leer análisis →
Media

WordPress · GiveWP – Donation Plugin and Fundraising Platform

CVE-2026-14987: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en GiveWP – Donation Plugin and Fundraising Platform

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en GiveWP – Donation Plugin and Fundraising Platform. GiveWP – Donation Plugin and Fundraising Platform: 0 hasta 4.16.3

Leer análisis →
Media

WordPress · Booking for Appointments and Events Calendar – Amelia

CVE-2026-14782: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Booking for Appointments and Events Calendar – Amelia

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Booking for Appointments and Events Calendar – Amelia. Booking for Appointments and Events Calendar – Amelia: 0 hasta 2.4.3

Leer análisis →
Media

WordPress · Quiz and Survey Master (QSM) – Quiz Maker & Survey Maker

CVE-2026-13767: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Quiz and Survey Master (QSM) – Quiz Maker & Survey Maker

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Quiz and Survey Master (QSM) – Quiz Maker & Survey Maker. Quiz and Survey Master (QSM) – Quiz Maker & Survey Maker: 0 hasta 11.2.0

Leer análisis →
Media

WordPress · Tickera – Sell Tickets & Manage Events

CVE-2026-13755: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Tickera – Sell Tickets & Manage Events

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Tickera – Sell Tickets & Manage Events. Tickera – Sell Tickets & Manage Events: 0 hasta 3.6.0.0

Leer análisis →
Media

WordPress · MxChat – AI Chatbot & Content Generation for WordPress

CVE-2026-13005: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en MxChat – AI Chatbot & Content Generation for WordPress

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en MxChat – AI Chatbot & Content Generation for WordPress. MxChat – AI Chatbot & Content Generation for WordPress: 0 hasta 3.2.10

Leer análisis →
Media

WordPress · MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions

CVE-2026-12941: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions. MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions: 0 hasta 5.0.9

Leer análisis →
Alta

WordPress · Advance Product Search- Voice & Ajax Search for WooCommerce

CVE-2026-12753: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Advance Product Search- Voice & Ajax Search for WooCommerce

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Advance Product Search- Voice & Ajax Search for WooCommerce. Advance Product Search- Voice & Ajax Search for WooCommerce: 0 hasta 1.4.4

Leer análisis →
Media

WordPress · Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages

CVE-2026-12409: CWE-352: vulnerabilidad de seguridad en Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages

El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages. Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages: 0 hasta 1.5.3.6

Leer análisis →
Media

NGINX · NGINX Agent / NGINX Instance Manager

CVE-2026-60062: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en NGINX Agent / NGINX Instance Manager

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en NGINX Agent / NGINX Instance Manager. NGINX Agent: 3.0.0 hasta *, 2.0.0 hasta 2.47.0; NGINX Instance Manager: 2.22.0 hasta 2.22.2, 2.17.1 hasta *

Leer análisis →