Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,598
Total alertas
3086
Críticas
10240
Altas
8
Ransomware
1806
Esta semana
RSS
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57677] Unauthenticated PHP Object Injection in Novalnet Payment Gateway for WooCommerce <= 12.10.3 versions…
Unauthenticated PHP Object Injection in Novalnet Payment Gateway for WooCommerce
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57679] Unauthenticated SQL Injection in GeekyBot <= 1.2.5 versions.
Unauthenticated SQL Injection in GeekyBot
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57621] Unauthenticated PHP Object Injection in Booktics <= 1.0.21 versions.
Unauthenticated PHP Object Injection in Booktics
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57623] Unauthenticated Arbitrary Code Execution in W3 Total Cache <= 2.9.4 versions.
Unauthenticated Arbitrary Code Execution in W3 Total Cache
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57624] Unauthenticated Remote Code Execution (RCE) in Blocksy Companion Pro <= 2.1.46 versions.
Unauthenticated Remote Code Execution (RCE) in Blocksy Companion Pro
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-57625] Unauthenticated Cross Site Scripting (XSS) in Admin and Site Enhancements (ASE) Pro <= 8.8.5 version…
Unauthenticated Cross Site Scripting (XSS) in Admin and Site Enhancements (ASE) Pro
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-27436] Editor Arbitrary Code Execution in Five Star Business Profile and Schema <= 2.3.19 versions.
Editor Arbitrary Code Execution in Five Star Business Profile and Schema

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Crítico vulnerabilidad
02/07/2026
[CVE-2026-27419] Subscriber Arbitrary File Upload in Zegen <= 1.1.9 versions.
Subscriber Arbitrary File Upload in Zegen
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14425] Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potenti…
Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14416] Out of bounds read in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to pote…
Out of bounds read in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14417] Use after free in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentia…
Use after free in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14419] Use after free in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentia…
Use after free in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14420] Out of bounds read and write in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attack…
Out of bounds read and write in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14423] Type Confusion in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentia…
Type Confusion in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14424] Use after free in Dawn in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to p…
Use after free in Dawn in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14411] Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed …
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14397] Out of bounds write in ANGLE in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacke…
Out of bounds write in ANGLE in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14398] Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potenti…
Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14405] Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute…
Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)
G Crítico vulnerabilidad
01/07/2026
[CVE-2026-14387] Integer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potent…
Integer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)