Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI Noticias ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "Multiple Vendors" — 13315 resultados ✕ Limpiar búsqueda
22,394
Total alertas
4758
Críticas
17006
Altas
8
Ransomware
1258
Esta semana
RSS
M Alto vulnerabilidad
26/06/2026
[CVE-2026-56029] Unauthenticated Broken Authentication in CorvusPay WooCommerce Payment Gateway <= 2.7.4 versions.
Unauthenticated Broken Authentication in CorvusPay WooCommerce Payment Gateway
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54835] Unauthenticated Broken Access Control in Five Star Restaurant Menu <= 2.5.2 versions.
Unauthenticated Broken Access Control in Five Star Restaurant Menu
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54837] Unauthenticated Broken Access Control in Intranet &amp; Private Site &#8211; All-In-One Intranet <= …
Unauthenticated Broken Access Control in Intranet &amp; Private Site &#8211; All-In-One Intranet
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54839] Unauthenticated Sensitive Data Exposure in Trinity Backup &#8211; Backup, Migrate, Restore, Clone &a…
Unauthenticated Sensitive Data Exposure in Trinity Backup &#8211; Backup, Migrate, Restore, Clone &amp; Schedule Backups
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54840] Unauthenticated Broken Access Control in Newsletters <= 4.13 versions.
Unauthenticated Broken Access Control in Newsletters
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54846] Unauthenticated Broken Access Control in Syncee Premium Dropshipping &amp; Wholesale <= 1.0.27 versi…
Unauthenticated Broken Access Control in Syncee Premium Dropshipping &amp; Wholesale
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54847] Unauthenticated Broken Access Control in Stylish Cost Calculator <= 8.3.9 versions.
Unauthenticated Broken Access Control in Stylish Cost Calculator

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
26/06/2026
[CVE-2026-56008] Contributor Privilege Escalation in Fusion Builder <= 3.15.4 versions.
Contributor Privilege Escalation in Fusion Builder
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54824] Unauthenticated Sensitive Data Exposure in Ads by WPQuads <= 3.0.3 versions.
Unauthenticated Sensitive Data Exposure in Ads by WPQuads
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54826] Subscriber Insecure Direct Object References (IDOR) in SupportCandy <= 3.4.6 versions.
Subscriber Insecure Direct Object References (IDOR) in SupportCandy
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54832] Unauthenticated Broken Access Control in Gutenverse Companion <= 2.5.0 versions.
Unauthenticated Broken Access Control in Gutenverse Companion
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54833] Unauthenticated Backdoor in Enable CORS <= 2.0.3 versions.
Unauthenticated Backdoor in Enable CORS
M Alto vulnerabilidad
26/06/2026
[CVE-2026-54834] Unauthenticated Sensitive Data Exposure in Object Cache 4 everyone <= 2.3.2 versions.
Unauthenticated Sensitive Data Exposure in Object Cache 4 everyone
M Alto vulnerabilidad
26/06/2026
[CVE-2026-30041] An integer overflow in the PSD parser compnent of FastStone Image Viewer v8.3 allows attackers to ex…
An integer overflow in the PSD parser compnent of FastStone Image Viewer v8.3 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via supplying a crafted PSD file.
M Alto vulnerabilidad
26/06/2026
[CVE-2025-68052] Unauthenticated Cross Site Request Forgery (CSRF) in Eagle Booking <= 1.3.4.3 versions.
Unauthenticated Cross Site Request Forgery (CSRF) in Eagle Booking

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
26/06/2026
[CVE-2025-68063] Contributor Local File Inclusion in Splash - Sport Club WordPress Theme for Basketball, Football, Ho…
Contributor Local File Inclusion in Splash - Sport Club WordPress Theme for Basketball, Football, Hockey
M Alto vulnerabilidad
26/06/2026
[CVE-2025-68064] Contributor Local File Inclusion in Goya Core < 1.0.9.4 versions.
Contributor Local File Inclusion in Goya Core < 1.0.9.4 versions.
M Alto vulnerabilidad
26/06/2026
[CVE-2026-57915] It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA …
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
M Alto vulnerabilidad
26/06/2026
[CVE-2026-40711] Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-power…
Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-powermax v2.16.0, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
M Alto vulnerabilidad
26/06/2026
[CVE-2026-57912] Johnson & Johnson Campus Recruiting before 2025-10-31 allows viewing of data provided by recruited s…
Johnson & Johnson Campus Recruiting before 2025-10-31 allows viewing of data provided by recruited students, and notes entered about students by interviewers.