CIBERPLANETA_
// threat_intelligence_dashboard

Dashboard de Amenazas

Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)

¿Cómo se calcula el nivel de amenaza global?

El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:

  • 🟢 BAJA — 0 CVEs nuevos en el feed reciente
  • 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
  • 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
  • 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados

Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.

0
CVEs añadidos este mes
1656
Total KEV catalogados
10
Vendors afectados
Microsoft
20
Cisco
9
Fortinet
5
Adobe
4
Langflow
3
Oracle
3
SimpleHelp
3
Ubiquiti
3
Ivanti
3
Arista
2
Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes
The Hacker News · 01 Ago 2026 ↗
Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites
The Hacker News · 01 Ago 2026 ↗
Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction
The Hacker News · 01 Ago 2026 ↗
Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware
The Hacker News · 01 Ago 2026 ↗
Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk
The Hacker News · 31 Jul 2026 ↗
HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm
The Hacker News · 31 Jul 2026 ↗
Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies
The Hacker News · 31 Jul 2026 ↗
Three Recent Chrome Releases Fix 1,442 Flaws, More Than Prior 23 Updates Combined
The Hacker News · 31 Jul 2026 ↗
Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw
The Hacker News · 31 Jul 2026 ↗
6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026
The Hacker News · 31 Jul 2026 ↗
Chinese Hacker Commands DeepSeek via Telegram to Launch Autonomous Attacks
The Hacker News · 31 Jul 2026 ↗
Anthropic Says Claude Mistook the Open Internet for a CTF and Breached Three Organizations
The Hacker News · 31 Jul 2026 ↗
CVE ID Producto Descripción CVSS Añadido
CVE-2026-5281 Google Dawn Google Dawn contains an use-after-free vulnerability that could allow a remote attacker who had compromised the rendere… ALTA 2026-04-01
CVE-2026-3055 Citrix NetScaler Citrix NetScaler ADC (formerly Citrix ADC), NetScaler Gateway (formerly Citrix Gateway) and NetScaler ADC FIPS and NDcP… CRÍTICA 2026-03-30
CVE-2025-53521 F5 BIG-IP F5 BIG-IP APM contains a stack-based buffer overflow vulnerability that could allow a threat actor to achieve remote co… CRÍTICA 2026-03-27
CVE-2026-33634 Aquasecurity Trivy Aquasecurity Trivy contains an embedded malicious code vulnerability that could allow an attacker to gain access to eve… ALTA 2026-03-26
CVE-2026-33017 Langflow Langflow Langflow contains a code injection vulnerability that could allow building public flows without requiring authenticatio… CRÍTICA 2026-03-25
CVE-2025-32432 Craft CMS Craft CMS Craft CMS contains a code injection vulnerability that allows a remote attacker to execute arbitrary code. CRÍTICA 2026-03-20
CVE-2025-54068 Laravel Livewire Laravel Livewire contain a code injection vulnerability that could allow unauthenticated attackers to achieve remote co… CRÍTICA 2026-03-20
CVE-2025-43510 Apple Multiple Products Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a mali… ALTA 2026-03-20
CVE-2025-43520 Apple Multiple Products Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow… ALTA 2026-03-20
CVE-2025-31277 Apple Multiple Products Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow … ALTA 2026-03-20
CVE-2026-20131 Cisco Secure Firewall Management Center (FMC) Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management conta… CRÍTICA 2026-03-19
CVE-2025-66376 Synacor Zimbra Collaboration Suite (ZCS) Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting vulnerability in the Classic UI where attacker… ALTA 2026-03-18
CVE-2026-20963 Microsoft SharePoint Microsoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to… ALTA 2026-03-18
CVE-2025-47813 Wing FTP Server Wing FTP Server Wing FTP Server contains a generation of error message containing sensitive information vulnerability when using a long… MEDIA 2026-03-16
CVE-2026-3910 Google Chromium V8 Google Chromium V8 contains an improper restriction of operations within the bounds of a memory buffer vulnerability th… ALTA 2026-03-13
CVE-2026-3909 Google Skia Google Skia contains an out-of-bounds write vulnerability that could allow a remote attacker to perform out of bounds m… ALTA 2026-03-13
CVE-2025-68613 n8n n8n n8n contains an improper control of dynamically managed code resources vulnerability in its workflow expression evaluat… CRÍTICA 2026-03-11
CVE-2021-22054 Omnissa Workspace One UEM Omnissa Workspace One UEM formerly known as VMware Workspace One UEM contains a server-side request forgery (SSRF) vuln… ALTA 2026-03-09
CVE-2025-26399 SolarWinds Web Help Desk SolarWinds Web Help Desk contain a deserialization of untrusted data vulnerability in AjaxProxy that could allow an att… CRÍTICA 2026-03-09
CVE-2026-1603 Ivanti Endpoint Manager (EPM) Ivanti Endpoint Manager (EPM) contains an authentication bypass using an alternate path or channel vulnerability that c… ALTA 2026-03-09
CVE-2017-7921 Hikvision Multiple Products Multiple Hikvision products contain an improper authentication vulnerability that could allow a malicious user to escal… CRÍTICA 2026-03-05
CVE-2021-22681 Rockwell Multiple Products Multiple Rockwell products contain an insufficient protected credentials vulnerability. Studio 5000 Logix Designer soft… CRÍTICA 2026-03-05
CVE-2023-43000 Apple Multiple Products Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to the processing of maliciously c… ALTA 2026-03-05
CVE-2021-30952 Apple Multiple Products Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the proces… ALTA 2026-03-05
CVE-2023-41974 Apple iOS and iPadOS Apple iOS and iPadOS contain a use-after-free vulnerability. An app may be able to execute arbitrary code with kernel p… ALTA 2026-03-05
← Anterior Página 5 / 67 (1656 CVEs total) Siguiente →
[INFO] CVE-2026-20316: Contraseña Hardcoded en Cisco Secure Firewall Management Center Activamente Explotada  ·  [INFO] CVE-2026-16812: Inyección de Comandos OS Crítica en Arista VeloCloud Orchestrator Explotada Activamente  ·  [INFO] CVE-2025-68686: Fortinet FortiOS expone información sensible y permite evasión de parches de seguridad  ·  [INFO] CVE-2026-16232: Vulnerabilidad crítica de autenticación en Check Point SmartConsole explotada activamente  ·  [INFO] CVE-2026-50522: Vulnerabilidad Crítica de Deserialización en Microsoft SharePoint Explotada Activamente  ·  [INFO] CVE-2026-20316: Contraseña Hardcoded en Cisco Secure Firewall Management Center Activamente Explotada  ·  [INFO] CVE-2026-16812: Inyección de Comandos OS Crítica en Arista VeloCloud Orchestrator Explotada Activamente  ·  [INFO] CVE-2025-68686: Fortinet FortiOS expone información sensible y permite evasión de parches de seguridad  ·  [INFO] CVE-2026-16232: Vulnerabilidad crítica de autenticación en Check Point SmartConsole explotada activamente  ·  [INFO] CVE-2026-50522: Vulnerabilidad Crítica de Deserialización en Microsoft SharePoint Explotada Activamente  ·