Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 3 min
Buscando: "Microsoft" — 1139 resultados ✕ Limpiar búsqueda
22,082
Total alertas
4667
Críticas
16827
Altas
8
Ransomware
1012
Esta semana
RSS
M Alto vulnerabilidad
15/09/2026
[CVE-2026-69486] Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exe…
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
15/09/2026
[CVE-2026-40058] CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. …
CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. The vulnerability only exists when the Microsoft Office File Malicious Macro Removal Windows policy setting is enabled and customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings. An update is available immediately for versions 7.34 and above, 7.32 LTS, and …
G Alto vulnerabilidad
11/09/2026
CVE-2026-77490 Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-77490 Microsoft Edge (Chromium-based) Spoofing Vulnerability. Tipo: Suplantación (Spoofing).
G Alto vulnerabilidad
11/09/2026
CVE-2026-85892 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-85892 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87648] Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attac…
Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87644] Incorrect authorization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a rem…
Incorrect authorization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87616] Improper initialization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a rem…
Improper initialization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87618] Incorrect reference resolution in Storage in Google Chrome on on Windows prior to 153.0.8010.36 allo…
Incorrect reference resolution in Storage in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87585] Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacke…
Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: High)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87530] Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0…
Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87524] Use after free in Core in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attack…
Use after free in Core in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87509] Incorrect authorization in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a l…
Incorrect authorization in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Low)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87467] Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local atta…
Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87457] Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local atta…
Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)
M Alto vulnerabilidad
08/09/2026
[CVE-2026-84003] Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allow…
Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unauthorized attacker to perform spoofing over a network.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
08/09/2026
[CVE-2026-84000] Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute …
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute code locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-83990] Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate…
Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-83948] Improper neutralization of special elements used in a command ('command injection') in Microsoft Azu…
Improper neutralization of special elements used in a command ('command injection') in Microsoft Azure CLI allows an authorized attacker to execute code over a network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-81955] Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execut…
Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-81956] Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally…
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.