// threat_intelligence_dashboard
Dashboard de Amenazas
Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)
▶ ¿Cómo se calcula el nivel de amenaza global?
El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:
- 🟢 BAJA — 0 CVEs nuevos en el feed reciente
- 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
- 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
- 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados
Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.
15
CVEs añadidos este mes
1622
Total KEV catalogados
10
Vendors afectados
// cves_añadidos_este_mes
| CVE | Producto | Criticidad | Añadido |
|---|---|---|---|
| CVE-2026-48907 | Widget Factory Joomla Content Editor | — | 2026-06-16 |
| CVE-2026-54420 | LiteSpeed cPanel Plugin | ALTA | 2026-06-15 |
| CVE-2026-20262 | Cisco Catalyst SD-WAN Manager | MEDIA | 2026-06-15 |
| CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools | CRÍTICA | 2026-06-12 |
| CVE-2026-10520 | Ivanti Sentry | CRÍTICA | 2026-06-11 |
| CVE-2026-11645 | Google Chromium V8 | ALTA | 2026-06-09 |
| CVE-2026-7473 | Arista Extensible Operating System | MEDIA | 2026-06-09 |
| CVE-2026-20245 | Cisco Catalyst SD-WAN Manager | ALTA | 2026-06-09 |
| CVE-2026-42271 | BerriAI LiteLLM | ALTA | 2026-06-08 |
| CVE-2026-50751 | Check Point Security Gateway | CRÍTICA | 2026-06-08 |
// top_vendors_afectados
16
9
6
4
4
3
2
2
2
2
// catalogo_kev_completo
| CVE ID | Producto | CVSS |
|---|---|---|
| CVE-2025-31201 | Apple Multiple Products | CRÍTICA |
| CVE-2025-31200 | Apple Multiple Products | CRÍTICA |
| CVE-2021-20035 | SonicWall SMA100 Appliances | MEDIA |
| CVE-2024-53150 | Linux Kernel | ALTA |
| CVE-2024-53197 | Linux Kernel | ALTA |
| CVE-2025-29824 | Microsoft Windows | ALTA |
| CVE-2025-30406 | Gladinet CentreStack | CRÍTICA |
| CVE-2025-31161 | CrushFTP CrushFTP | CRÍTICA |
| CVE-2025-22457 | Ivanti Connect Secure, Policy Secure, and ZTA Gateways | CRÍTICA |
| CVE-2025-24813 | Apache Tomcat | CRÍTICA |
| CVE-2024-20439 | Cisco Smart Licensing Utility | CRÍTICA |
| CVE-2025-2783 | Google Chromium Mojo | ALTA |
| CVE-2019-9875 | Sitecore CMS and Experience Platform (XP) | ALTA |
| CVE-2019-9874 | Sitecore CMS and Experience Platform (XP) | CRÍTICA |
| CVE-2025-30154 | reviewdog action-setup GitHub Action | ALTA |
| CVE-2017-12637 | SAP NetWeaver | ALTA |
| CVE-2024-48248 | NAKIVO Backup and Replication | ALTA |
| CVE-2025-1316 | Edimax IC-7100 IP Camera | CRÍTICA |
| CVE-2025-30066 | tj-actions changed-files GitHub Action | ALTA |
| CVE-2025-24472 | Fortinet FortiOS and FortiProxy | ALTA |
| CVE-2025-21590 | Juniper Junos OS | MEDIA |
| CVE-2025-24201 | Apple Multiple Products | CRÍTICA |
| CVE-2025-24993 | Microsoft Windows | ALTA |
| CVE-2025-24991 | Microsoft Windows | MEDIA |
| CVE-2025-24985 | Microsoft Windows | ALTA |