// threat_intelligence_dashboard
Dashboard de Amenazas
Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)
▶ ¿Cómo se calcula el nivel de amenaza global?
El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:
- 🟢 BAJA — 0 CVEs nuevos en el feed reciente
- 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
- 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
- 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados
Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.
15
CVEs añadidos este mes
1622
Total KEV catalogados
10
Vendors afectados
// cves_añadidos_este_mes
| CVE | Producto | Criticidad | Añadido |
|---|---|---|---|
| CVE-2026-48907 | Widget Factory Joomla Content Editor | — | 2026-06-16 |
| CVE-2026-54420 | LiteSpeed cPanel Plugin | ALTA | 2026-06-15 |
| CVE-2026-20262 | Cisco Catalyst SD-WAN Manager | MEDIA | 2026-06-15 |
| CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools | CRÍTICA | 2026-06-12 |
| CVE-2026-10520 | Ivanti Sentry | CRÍTICA | 2026-06-11 |
| CVE-2026-11645 | Google Chromium V8 | ALTA | 2026-06-09 |
| CVE-2026-7473 | Arista Extensible Operating System | MEDIA | 2026-06-09 |
| CVE-2026-20245 | Cisco Catalyst SD-WAN Manager | ALTA | 2026-06-09 |
| CVE-2026-42271 | BerriAI LiteLLM | ALTA | 2026-06-08 |
| CVE-2026-50751 | Check Point Security Gateway | CRÍTICA | 2026-06-08 |
// top_vendors_afectados
16
9
6
4
4
3
2
2
2
2
// catalogo_kev_completo
| CVE ID | Producto | CVSS |
|---|---|---|
| CVE-2024-11182 | MDaemon Email Server | MEDIA |
| CVE-2025-4428 | Ivanti Endpoint Manager Mobile (EPMM) | ALTA |
| CVE-2025-4427 | Ivanti Endpoint Manager Mobile (EPMM) | MEDIA |
| CVE-2025-42999 | SAP NetWeaver | CRÍTICA |
| CVE-2024-12987 | DrayTek Vigor Routers | ALTA |
| CVE-2025-32756 | Fortinet Multiple Products | CRÍTICA |
| CVE-2025-32709 | Microsoft Windows | ALTA |
| CVE-2025-30397 | Microsoft Windows | ALTA |
| CVE-2025-32706 | Microsoft Windows | ALTA |
| CVE-2025-32701 | Microsoft Windows | ALTA |
| CVE-2025-30400 | Microsoft Windows | ALTA |
| CVE-2025-47729 | TeleMessage TM SGNL | BAJA |
| CVE-2024-11120 | GeoVision Multiple Devices | CRÍTICA |
| CVE-2024-6047 | GeoVision Multiple Devices | CRÍTICA |
| CVE-2025-27363 | FreeType FreeType | ALTA |
| CVE-2025-3248 | Langflow Langflow | CRÍTICA |
| CVE-2025-34028 | Commvault Command Center | CRÍTICA |
| CVE-2024-58136 | Yiiframework Yii | CRÍTICA |
| CVE-2024-38475 | Apache HTTP Server | CRÍTICA |
| CVE-2023-44221 | SonicWall SMA100 Appliances | ALTA |
| CVE-2025-31324 | SAP NetWeaver | CRÍTICA |
| CVE-2025-1976 | Broadcom Brocade Fabric OS | MEDIA |
| CVE-2025-42599 | Qualitia Active! Mail | CRÍTICA |
| CVE-2025-3928 | Commvault Web Server | ALTA |
| CVE-2025-24054 | Microsoft Windows | MEDIA |