Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,434
Total alertas
3054
Críticas
10108
Altas
8
Ransomware
1778
Esta semana
RSS
M Alto vulnerabilidad
13/08/2026
[CVE-2026-15742] Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of add…
Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of addresses, executing arbitrary code as the operating system user running the database, via extreme inputs to SQL function levenshtein() or levenshtein_less_equal(). Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.
M Alto vulnerabilidad
13/08/2026
[CVE-2026-14677] Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause…
Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause the server to undersize an allocation and write out-of-bounds via crafted function bodies. This may execute arbitrary code as the operating system user running the database. CVE-2026-6473 had fixed similar problems. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.
M Alto vulnerabilidad
13/08/2026
[CVE-2026-14662] Integer wraparound in PostgreSQL tsvector and tsquery data type functions allows an unprivileged dat…
Integer wraparound in PostgreSQL tsvector and tsquery data type functions allows an unprivileged database user to cause the server to undersize an allocation and write out-of-bounds, via crafted large inputs. This may execute arbitrary code as the operating system user running the database. These types are typically sourced from application logic, not taken from the application's user. Hence, a…
M Alto vulnerabilidad
11/08/2026
[CVE-2026-47940] Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result i…
Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-73086] nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.1…
nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.12 and 5.1.11, the nanoid(size) function in index.js and index.cjs coerces the user-influenced size parameter to a signed 32-bit integer, allowing a value of 2147483648 to become -2147483648 and corrupt the process-wide CSPRNG poolOffset in fillPool(), which causes subsequent session tokens, CSRF tok…
M Alto vulnerabilidad
11/08/2026
[CVE-2026-71331] Integer overflow or wraparound in Microsoft Azure Attestation service and Device Health Attestation …
Integer overflow or wraparound in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-70329] Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execut…
Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-65814] Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate p…
Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64911] Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code l…
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64903] Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code l…
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-63532] Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code l…
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64898] Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local…
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62897] Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code loc…
Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62886] Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally…
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62822] Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over …
Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62816] Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized at…
Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62751] Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to ele…
Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62735] Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l…
Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-61937] Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileg…
Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-59127] Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privile…
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.