// threat_intelligence_dashboard
Dashboard de Amenazas
Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)
▶ ¿Cómo se calcula el nivel de amenaza global?
El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:
- 🟢 BAJA — 0 CVEs nuevos en el feed reciente
- 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
- 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
- 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados
Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.
14
CVEs añadidos este mes
1543
Total KEV catalogados
10
Vendors afectados
// cves_añadidos_este_mes
| CVE | Producto | Criticidad | Añadido |
|---|---|---|---|
| CVE-2025-47813 | Wing FTP Server Wing FTP Server | MEDIA | 2026-03-16 |
| CVE-2026-3910 | Google Chromium V8 | ALTA | 2026-03-13 |
| CVE-2026-3909 | Google Skia | ALTA | 2026-03-13 |
| CVE-2025-68613 | n8n n8n | CRÍTICA | 2026-03-11 |
| CVE-2021-22054 | Omnissa Workspace One UEM | ALTA | 2026-03-09 |
| CVE-2025-26399 | SolarWinds Web Help Desk | CRÍTICA | 2026-03-09 |
| CVE-2026-1603 | Ivanti Endpoint Manager (EPM) | ALTA | 2026-03-09 |
| CVE-2017-7921 | Hikvision Multiple Products | CRÍTICA | 2026-03-05 |
| CVE-2021-22681 | Rockwell Multiple Products | CRÍTICA | 2026-03-05 |
| CVE-2023-43000 | Apple Multiple Products | ALTA | 2026-03-05 |
// top_vendors_afectados
14
6
5
4
4
3
3
3
3
2
// catalogo_kev_completo
| CVE ID | Producto | CVSS |
|---|---|---|
| CVE-2023-23397 | Microsoft Office | CRÍTICA |
| CVE-2023-24880 | Microsoft Windows | MEDIA |
| CVE-2022-41328 | Fortinet FortiOS | MEDIA |
| CVE-2021-39144 | XStream XStream | ALTA |
| CVE-2020-5741 | Plex Media Server | ALTA |
| CVE-2022-28810 | Zoho ManageEngine | MEDIA |
| CVE-2022-33891 | Apache Spark | ALTA |
| CVE-2022-35914 | Teclib GLPI | CRÍTICA |
| CVE-2022-36537 | ZK Framework AuUploader | ALTA |
| CVE-2022-47986 | IBM Aspera Faspex | CRÍTICA |
| CVE-2022-41223 | Mitel MiVoice Connect | MEDIA |
| CVE-2022-40765 | Mitel MiVoice Connect | MEDIA |
| CVE-2022-46169 | Cacti Cacti | CRÍTICA |
| CVE-2023-21715 | Microsoft Office | ALTA |
| CVE-2023-23376 | Microsoft Windows | ALTA |
| CVE-2023-23529 | Apple Multiple Products | ALTA |
| CVE-2023-21823 | Microsoft Windows | ALTA |
| CVE-2015-2291 | Intel Ethernet Diagnostics Driver for Windows | ALTA |
| CVE-2022-24990 | TerraMaster TerraMaster OS | ALTA |
| CVE-2023-0669 | Fortra GoAnywhere MFT | ALTA |
| CVE-2022-21587 | Oracle E-Business Suite | CRÍTICA |
| CVE-2023-22952 | SugarCRM Multiple Products | ALTA |
| CVE-2017-11357 | Telerik User Interface (UI) for ASP.NET AJAX | CRÍTICA |
| CVE-2022-47966 | Zoho ManageEngine | CRÍTICA |
| CVE-2022-44877 | CWP Control Web Panel | CRÍTICA |