Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,696
Total alertas
3097
Críticas
10327
Altas
8
Ransomware
1735
Esta semana
RSS
M Alto vulnerabilidad
18/08/2026
[CVE-2026-75778] A vulnerability was identified in code-projects Task Management System 1.0. This affects the functio…
A vulnerability was identified in code-projects Task Management System 1.0. This affects the function Operation::select_with_multiple_condition of the file /index.php of the component Login Form. Such manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74977] Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR…
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74978] Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR…
Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74965] Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154…
Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74952] Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 15…
Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74953] Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 1…
Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74955] Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 …
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74954] Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability w…
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74958] Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox…
Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74946] Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. Th…
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74947] Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed …
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74949] Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability w…
Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74950] Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154 and…
Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74939] Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, …
Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74941] Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox…
Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74942] Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefo…
Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74935] Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, …
Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74937] Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox…
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
M Alto vulnerabilidad
18/08/2026
Vulnerabilidad de autorización en ArcadeDB versiones ≤26.7.3 permite eliminación no autorizada de funciones
ArcadeDB antes de la versión 26.8.1 contiene una falla de autorización que permite a cualquier usuario con acceso a la base de datos ejecutar DELETE FUNCTION sin validación de permisos. Un atacante puede eliminar funciones del servidor comprometiendo la integridad de aplicaciones que dependen de ArcadeDB en infraestructuras altas de LATAM. La vulnerabilidad (CVSS 7.1) afecta principalmente a bases de datos expuestas internamente o en entornos multi-tenant.
M Alto vulnerabilidad
18/08/2026
Vulnerabilidad alta en ArcadeDB: falla de autorización en plugin Gremlin (CVE-2026-75853)
El plugin Gremlin de ArcadeDB versiones ≤26.7.3 autentica conexiones pero no valida permisos de acceso a bases de datos, permitiendo que credenciales válidas accedan a cualquier base de datos sin autorización. Esto afecta directamente a empresas con infraestructuras de bases de datos distribuidas en LATAM que dependen del control granular de accesos. La vulnerabilidad tiene puntuación CVSS 8.8, indicando impacto alta en confidencialidad e integridad de datos.