Habla con un experto

DIRECTORIO CVE · 2026

Vulnerabilidades conocidas

Página 44 de 163. Los registros están ordenados por fecha oficial de publicación, del más reciente al más antiguo.

Registros 4301–4400 de 16.277

Media

WordPress · WPZOOM Forms – Contact Form Plugin for Gutenberg

CVE-2026-66639: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en WPZOOM Forms – Contact Form Plugin for Gutenberg

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WPZOOM Forms – Contact Form Plugin for Gutenberg. WPZOOM Forms – Contact Form Plugin for Gutenberg: n/a hasta 2.0.4

Leer análisis
Alta

Microsoft Office · Linux

CVE-2026-74579: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta 3ee7b3f813b11f28cd6efdf7f24d64b5a7fd4dc7, a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta 8720df4504e0ed1781a702f65251bd47b3534d5e, a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta 363c3a84a946d53e5e121c9f47c7c2b7d228c46b, a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta b19b5d2e042c294e2cc1c908dc598f9d64015396, a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta a375d8ace807767f29f276b681b6324c74929b1d, a5d45bc0dc50f9dd83703510e9804d813a9cac32 hasta 16b553c46e347bc9de9946c4960654d5884a86de; Linux: 5.10, 0 hasta 5.10, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.151 hasta 6.6.*

Leer análisis
Media

WordPress · The School Management – Education & Learning ERP

CVE-2026-9767: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en The School Management – Education & Learning ERP

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en The School Management – Education & Learning ERP. The School Management – Education & Learning ERP: 0 hasta 5.4

Leer análisis
Alta

Linux · Linux

CVE-2026-74578: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta bf09b0be8e851f050e98da702d247c14d81b591a, e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta 73dd3bf704ca6c20639de70c08e9a10bee904a95, e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta f1a87ca0843d74482402a206ea2dfb315ee9acbd, e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta 7b91e51d0eb7cbb07f7f086f9176bd93dbbc85dd, e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta 60eafc7b08c6689ea3ad39eff8d97aefc8a087c7, e870456d8e7c8d57c059ea479b5aadbb55ff4c3a hasta d7860b682da55433b5da0591b0e4c1982ecd2689; Linux: 4.14, 0 hasta 4.14, 5.10.261 hasta 5.10.*, 5.15.212 hasta 5.15.*, 6.1.178 hasta 6.1.*, 6.6.145 hasta 6.6.*

Leer análisis
Alta

WordPress · Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress

CVE-2026-2497: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress. Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress: 0 hasta 4.7.9

Leer análisis
Media

WordPress · SureDash – Community, Courses & Member Dashboard

CVE-2026-18402: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en SureDash – Community, Courses & Member Dashboard

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en SureDash – Community, Courses & Member Dashboard. SureDash – Community, Courses & Member Dashboard: 0 hasta 1.10.3

Leer análisis
Media

WordPress · Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress

CVE-2026-18385: CWE-94: Control incorrecto de la generación de código (Code Injection) en Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress

El registro oficial identifica la vulnerabilidad «CWE-94: Control incorrecto de la generación de código (Code Injection)» en Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress. Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress: 0 hasta 4.16.19

Leer análisis
Media

WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer

CVE-2026-17604: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en Kirki – Freeform Page Builder, Website Builder & Customizer

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.1.1

Leer análisis
Media

WordPress · Smash Balloon Social Post Feed – Simple Social Feeds for WordPress

CVE-2026-16775: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Smash Balloon Social Post Feed – Simple Social Feeds for WordPress

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Smash Balloon Social Post Feed – Simple Social Feeds for WordPress. Smash Balloon Social Post Feed – Simple Social Feeds for WordPress: 0 hasta 4.9.0

Leer análisis