# Using Components with Known Vulnerabilities (CWE-1035) The product relies on components that have known security vulnerabilities. - Prevalence: Alta Sin reglas de Shoulder - Impact: Medio OWASP Top 10 #6 - Prevention: Ver MITRE Referencia externa **OWASP:** Vulnerable and Outdated Components (A06:2021-Vulnerable and Outdated Components) - #6 ## Description Using outdated or vulnerable components exposes the application to known exploits. Attackers often target known vulnerabilities in popular libraries and frameworks. ## Prevention ## Consequences - Ejecutar código no autorizado - Leer datos de la aplicación - Modificar datos de la aplicación - DoS ## Mitigations - Actualiza regularmente todas las dependencias a versiones parcheadas - Monitoriza los avisos de seguridad de los componentes utilizados - Usa herramientas automatizadas de escaneo de dependencias