// threat_intelligence_dashboard
Dashboard de Amenazas
Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)
▶ ¿Cómo se calcula el nivel de amenaza global?
El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:
- 🟢 BAJA — 0 CVEs nuevos en el feed reciente
- 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
- 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
- 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados
Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.
16
CVEs añadidos este mes
1545
Total KEV catalogados
10
Vendors afectados
// cves_añadidos_este_mes
| CVE | Producto | Criticidad | Añadido |
|---|---|---|---|
| CVE-2025-66376 | Synacor Zimbra Collaboration Suite (ZCS) | ALTA | 2026-03-18 |
| CVE-2026-20963 | Microsoft SharePoint | ALTA | 2026-03-18 |
| CVE-2025-47813 | Wing FTP Server Wing FTP Server | MEDIA | 2026-03-16 |
| CVE-2026-3910 | Google Chromium V8 | ALTA | 2026-03-13 |
| CVE-2026-3909 | Google Skia | ALTA | 2026-03-13 |
| CVE-2025-68613 | n8n n8n | CRÍTICA | 2026-03-11 |
| CVE-2021-22054 | Omnissa Workspace One UEM | ALTA | 2026-03-09 |
| CVE-2025-26399 | SolarWinds Web Help Desk | CRÍTICA | 2026-03-09 |
| CVE-2026-1603 | Ivanti Endpoint Manager (EPM) | ALTA | 2026-03-09 |
| CVE-2017-7921 | Hikvision Multiple Products | CRÍTICA | 2026-03-05 |
// top_vendors_afectados
15
6
5
4
4
3
3
3
3
3
// catalogo_kev_completo
| CVE ID | Producto | CVSS |
|---|---|---|
| CVE-2019-9670 | Synacor Zimbra Collaboration Suite (ZCS) | CRÍTICA |
| CVE-2018-13382 | Fortinet FortiOS and FortiProxy | CRÍTICA |
| CVE-2018-13383 | Fortinet FortiOS and FortiProxy | MEDIA |
| CVE-2019-1579 | Palo Alto Networks PAN-OS | ALTA |
| CVE-2019-10149 | Exim Mail Transfer Agent (MTA) | CRÍTICA |
| CVE-2015-7450 | IBM WebSphere Application Server and Server Hypervisor Edition | CRÍTICA |
| CVE-2017-1000486 | Primetek Primefaces Application | CRÍTICA |
| CVE-2019-7609 | Elastic Kibana | CRÍTICA |
| CVE-2021-27860 | FatPipe WARP, IPVPN, and MPVPN software | CRÍTICA |
| CVE-2021-43890 | Microsoft Windows | ALTA |
| CVE-2021-4102 | Google Chromium V8 | ALTA |
| CVE-2021-44515 | Zoho Desktop Central | CRÍTICA |
| CVE-2019-13272 | Linux Kernel | ALTA |
| CVE-2021-35394 | Realtek Jungle Software Development Kit (SDK) | CRÍTICA |
| CVE-2019-7238 | Sonatype Nexus Repository Manager | CRÍTICA |
| CVE-2019-0193 | Apache Solr | ALTA |
| CVE-2021-44168 | Fortinet FortiOS | BAJA |
| CVE-2017-17562 | Embedthis GoAhead | ALTA |
| CVE-2017-12149 | Red Hat JBoss Application Server | CRÍTICA |
| CVE-2010-1871 | Red Hat JBoss Seam 2 | ALTA |
| CVE-2020-17463 | Fuel CMS Fuel CMS | CRÍTICA |
| CVE-2020-8816 | Pi-hole AdminLTE | ALTA |
| CVE-2019-10758 | MongoDB mongo-express | CRÍTICA |
| CVE-2021-44228 | Apache Log4j2 | CRÍTICA |
| CVE-2020-11261 | Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | ALTA |