Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 30 min
Buscando: "X" — 7953 resultados ✕ Limpiar búsqueda
14,138
Total alertas
3230
Críticas
10635
Altas
8
Ransomware
1006
Esta semana
RSS
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48272] Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could r…
Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48274] After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary cod…
After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-47471] NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an at…
NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an attacker could cause a heap based buffer overflow. A successful exploit of this vulnerability might lead to information disclosure, data tampering, or denial of service.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-47472] NVIDIA TensorRT-LLM contains a vulnerability in its inter-process communication layer where an attac…
NVIDIA TensorRT-LLM contains a vulnerability in its inter-process communication layer where an attacker with local same-user access could cause deserialization. A successful exploit of this vulnerability might lead to code execution, information disclosure, data tampering, and denial of service.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-47473] NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condit…
NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condition. A successful exploit of this vulnerability might lead to data tampering, denial of service, and information disclosure.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-47971] Media Encoder is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitr…
Media Encoder is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-24229] NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, …
NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, where an attacker could read, write, or delete internal cluster state by sending requests to the FastAPI server. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and denial of service.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
14/07/2026
[CVE-2026-24233] NVIDIA TensorRT-LLM for Linux contains a vulnerability in the restricted unpickler used for model we…
NVIDIA TensorRT-LLM for Linux contains a vulnerability in the restricted unpickler used for model weight deserialization, where a local, unauthenticated attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.
N Alto vulnerabilidad
14/07/2026
[CVE-2026-24238] NVIDIA TensorRT for contains a vulnerability where an attacker might cause an improper validation of…
NVIDIA TensorRT for contains a vulnerability where an attacker might cause an improper validation of array index. A successful exploit of this vulnerability might lead to code execution.
N Alto vulnerabilidad
14/07/2026
[CVE-2026-24268] NVIDIA TensorRT contains a vulnerability where an attacker might cause a heap-based buffer overflow.…
NVIDIA TensorRT contains a vulnerability where an attacker might cause a heap-based buffer overflow. A successful exploit of this vulnerability might lead to code execution.
N Alto vulnerabilidad
14/07/2026
[CVE-2026-24272] NVIDIA TensorRT contains a vulnerability where an attacker might cause an overflow to a heap-based b…
NVIDIA TensorRT contains a vulnerability where an attacker might cause an overflow to a heap-based buffer. A successful exploit of this vulnerability might lead to code execution.
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15774] Use after free in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had co…
Use after free in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15776] Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacke…
Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15777] Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who…
Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15767] Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote …
Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted video file. (Chromium security severity: High)

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15769] Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior …
Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15772] Use after free in GPU in Google Chrome on Android prior to 150.0.7871.125 allowed a remote attacker …
Use after free in GPU in Google Chrome on Android prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
M Alto vulnerabilidad
14/07/2026
[CVE-2026-15643] AWS HealthLake MCP Server (awslabs.healthlake-mcp-server) is a Model Context Protocol server that en…
AWS HealthLake MCP Server (awslabs.healthlake-mcp-server) is a Model Context Protocol server that enables AI assistants to interact with AWS HealthLake FHIR datastores. A server-side request forgery in the pagination handling component in AWS awslabs.healthlake-mcp-server before 0.0.14 on all platforms might allow a remote authenticated user to exfiltrate AWS temporary security credentials to an a…
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15764] Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker …
Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15765] Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convi…
Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)