Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 1 hora
22,093
Total alertas
4671
Críticas
16834
Altas
8
Ransomware
1003
Esta semana
RSS
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47558] NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unpri…
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a double-free of imported memory state. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-6794] IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory …
IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory management. A local attacker can exploit this flaw to corrupt heap memory and execute arbitrary code in the context of the affected process.
M Alto vulnerabilidad
22/09/2026
[CVE-2026-91018] lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, me…
lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, memory corruption, or allow code execution on the victim system.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-20135] A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software…
A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a c…
M Alto vulnerabilidad
14/09/2026
[CVE-2026-85921] Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locall…
Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
14/09/2026
[CVE-2026-23789] An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, …
An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
M Alto vulnerabilidad
11/09/2026
[CVE-2026-57842] NetBSD contains a use-after-free and double-free vulnerability in msg_recv_copyin() within the COMPA…
NetBSD contains a use-after-free and double-free vulnerability in msg_recv_copyin() within the COMPAT_NETBSD32 compatibility layer due to a missing return statement before the cleanup label on the success path. Any local user able to execute a 32-bit binary on a 64-bit NetBSD system can trigger a kernel panic or memory corruption by calling recvmsg() with msg_iovlen between 9 and IOV_MAX, causing …

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87585] Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacke…
Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: High)
M Alto vulnerabilidad
08/09/2026
[CVE-2026-79907] Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execut…
Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-81950] Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-80080] Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-77504] Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-72958] Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-71353] Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to ele…
Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-71351] Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to ele…
Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
08/09/2026
[CVE-2026-70567] Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileg…
Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-70562] Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-69876] Use after free in Windows DHCP Server allows an authorized attacker to execute code over an adjacent…
Use after free in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-69725] Double free in Windows Hello allows an authorized attacker to elevate privileges locally.
Double free in Windows Hello allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-69398] Concurrent execution using shared resource with improper synchronization ('race condition') in Windo…
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.