Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,509
Total alertas
3066
Críticas
10171
Altas
8
Ransomware
1810
Esta semana
RSS
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62688] Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate p…
Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62692] Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to eleva…
Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62695] Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges lo…
Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61937] Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileg…
Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61932] Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an …
Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61926] Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges…
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61930] Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc…
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61923] Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to e…
Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61363] Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code …
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61355] Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate p…
Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61359] Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges lo…
Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61353] Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate pri…
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-59134] Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code …
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-58651] Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code …
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-54984] Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c…
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code locally.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-50472] Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges loca…
Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-48440] ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary …
ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-72745] FreeRDP before 3.30.0 contains an out-of-bounds vulnerability in kerberos_DecryptMessage() (winpr/li…
FreeRDP before 3.30.0 contains an out-of-bounds vulnerability in kerberos_DecryptMessage() (winpr/libwinpr/sspi/Kerberos/kerberos.c). The 16-bit EC (extra count) field of a peer-supplied GSS Wrap token (RFC 4121) is used directly in pointer arithmetic to locate the encrypted regions without being bounds-checked, while only RRC and the total buffer length are validated. A malicious peer (server or …
M Alto vulnerabilidad
06/08/2026
[CVE-2026-70638] llama.cpp builds b1886 through b7445 contain an integer overflow vulnerability in the LLaMA-Android …
llama.cpp builds b1886 through b7445 contain an integer overflow vulnerability in the LLaMA-Android JNI wrapper where the new_1batch() function multiplies sizeof(llama_seq_id) by an attacker-controlled n_seq_max parameter without overflow validation, causing heap buffer allocation to wrap and allocate insufficient memory. Attackers can exploit this by providing a crafted n_seq_max value through a …
M Alto vulnerabilidad
06/08/2026
[CVE-2026-19138] Heap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote att…
Heap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)