Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,434
Total alertas
3054
Críticas
10108
Altas
8
Ransomware
1741
Esta semana
RSS
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-28571] Unauthenticated Broken Access Control in FormyChat <= 2.15.7 versions.
Unauthenticated Broken Access Control in FormyChat
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-75778] A vulnerability was identified in code-projects Task Management System 1.0. This affects the functio…
A vulnerability was identified in code-projects Task Management System 1.0. This affects the function Operation::select_with_multiple_condition of the file /index.php of the component Login Form. Such manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74977] Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR…
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74978] Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR…
Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74965] Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154…
Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74952] Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 15…
Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74953] Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 1…
Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74955] Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 …
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74954] Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability w…
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74958] Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox…
Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74946] Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. Th…
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74947] Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed …
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74949] Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability w…
Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74950] Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154 and…
Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74939] Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, …
Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74941] Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox…
Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74942] Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefo…
Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74935] Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, …
Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
Hace 5 días
[CVE-2026-74937] Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox…
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
Hace 5 días
Vulnerabilidad de autorización en ArcadeDB versiones ≤26.7.3 permite eliminación no autorizada de funciones
ArcadeDB antes de la versión 26.8.1 contiene una falla de autorización que permite a cualquier usuario con acceso a la base de datos ejecutar DELETE FUNCTION sin validación de permisos. Un atacante puede eliminar funciones del servidor comprometiendo la integridad de aplicaciones que dependen de ArcadeDB en infraestructuras altas de LATAM. La vulnerabilidad (CVSS 7.1) afecta principalmente a bases de datos expuestas internamente o en entornos multi-tenant.