// threat_intelligence_dashboard
Dashboard de Amenazas
Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)
▶ ¿Cómo se calcula el nivel de amenaza global?
El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:
- 🟢 BAJA — 0 CVEs nuevos en el feed reciente
- 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
- 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
- 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados
Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.
14
CVEs añadidos este mes
1621
Total KEV catalogados
10
Vendors afectados
// cves_añadidos_este_mes
| CVE | Producto | Criticidad | Añadido |
|---|---|---|---|
| CVE-2026-54420 | LiteSpeed cPanel Plugin | ALTA | 2026-06-15 |
| CVE-2026-20262 | Cisco Catalyst SD-WAN Manager | MEDIA | 2026-06-15 |
| CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools | CRÍTICA | 2026-06-12 |
| CVE-2026-10520 | Ivanti Sentry | CRÍTICA | 2026-06-11 |
| CVE-2026-11645 | Google Chromium V8 | ALTA | 2026-06-09 |
| CVE-2026-7473 | Arista Extensible Operating System | MEDIA | 2026-06-09 |
| CVE-2026-20245 | Cisco Catalyst SD-WAN Manager | ALTA | 2026-06-09 |
| CVE-2026-42271 | BerriAI LiteLLM | ALTA | 2026-06-08 |
| CVE-2026-50751 | Check Point Security Gateway | CRÍTICA | 2026-06-08 |
| CVE-2026-28318 | SolarWinds Serv-U | ALTA | 2026-06-05 |
// top_vendors_afectados
16
9
6
4
4
3
3
2
2
2
// catalogo_kev_completo
| CVE ID | Producto | CVSS |
|---|---|---|
| CVE-2025-32975 | Quest KACE Systems Management Appliance (SMA) | CRÍTICA |
| CVE-2024-27199 | JetBrains TeamCity | ALTA |
| CVE-2026-34197 | Apache ActiveMQ | ALTA |
| CVE-2009-0238 | Microsoft Office | ALTA |
| CVE-2026-32201 | Microsoft SharePoint Server | MEDIA |
| CVE-2012-1854 | Microsoft Visual Basic for Applications (VBA) | ALTA |
| CVE-2025-60710 | Microsoft Windows | ALTA |
| CVE-2023-21529 | Microsoft Exchange Server | ALTA |
| CVE-2023-36424 | Microsoft Windows | ALTA |
| CVE-2020-9715 | Adobe Acrobat | ALTA |
| CVE-2026-21643 | Fortinet FortiClient EMS | CRÍTICA |
| CVE-2026-34621 | Adobe Acrobat and Reader | ALTA |
| CVE-2026-1340 | Ivanti Endpoint Manager Mobile (EPMM) | CRÍTICA |
| CVE-2026-35616 | Fortinet FortiClient EMS | CRÍTICA |
| CVE-2026-3502 | TrueConf Client | ALTA |
| CVE-2026-5281 | Google Dawn | ALTA |
| CVE-2026-3055 | Citrix NetScaler | CRÍTICA |
| CVE-2025-53521 | F5 BIG-IP | CRÍTICA |
| CVE-2026-33634 | Aquasecurity Trivy | ALTA |
| CVE-2026-33017 | Langflow Langflow | CRÍTICA |
| CVE-2025-32432 | Craft CMS Craft CMS | CRÍTICA |
| CVE-2025-54068 | Laravel Livewire | CRÍTICA |
| CVE-2025-43510 | Apple Multiple Products | ALTA |
| CVE-2025-43520 | Apple Multiple Products | ALTA |
| CVE-2025-31277 | Apple Multiple Products | ALTA |