Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI Noticias ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 1 hora
Buscando: "X" — 3563 resultados ✕ Limpiar búsqueda
22,345
Total alertas
4745
Críticas
16970
Altas
8
Ransomware
1213
Esta semana
RSS
M Crítico vulnerabilidad
09/09/2026
[CVE-2026-85103] A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote a…
A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
M Crítico vulnerabilidad
09/09/2026
Vulnerabilidad crítica en Dell SCG 5.0 permite acceso no autorizado sin autenticación
Dell SCG 5.0 (versiones Appliance anteriores a 5.36.00.16 y Application anteriores a 5.36.00.00) contiene una falla de verificación de autenticidad de datos que permite a atacantes remotos no autenticados reutilizar solicitudes capturadas para obtener acceso no autorizado. Con CVSS 9.8, afecta directamente infraestructuras críticas en sector financiero, gubernamental y retail en México y Latinoamérica que ejecuten estas versiones.
M Crítico vulnerabilidad
09/09/2026
[CVE-2026-85978] An unauthenticated remote code execution vulnerability exists in the Policy Manager console of Akana…
An unauthenticated remote code execution vulnerability exists in the Policy Manager console of Akana API Platform. A path normalization discrepancy between the authentication filter and the servlet dispatcher allows a crafted request to bypass authentication and reach an endpoint that evaluates attacker-supplied script code without sandboxing, resulting in arbitrary code execution. Exploitation re…
M Crítico vulnerabilidad
09/09/2026
[CVE-2026-16272] Use of less trusted source vulnerability in PayTR Payment and Electronic Money Institution Inc. PayT…
Use of less trusted source vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Exploitation of Trusted Identifiers. This issue affects PayTR Virtual Pos iFrame API (v9x) WHMCS Module: from v9.0.0 before v9.0.3.
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87646] Use after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attack…
Use after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87650] Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to pot…
Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87654] Buffer overflow in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote atta…
Buffer overflow in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87637] Use after free in Extensions in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote atta…
Use after free in Extensions in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87638] Out of bounds write in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to po…
Out of bounds write in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87643] Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attac…
Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87634] Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to …
Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87621] Out of bounds write in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote …
Out of bounds write in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87613] Incorrect reference resolution in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remot…
Incorrect reference resolution in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87607] Use after free in Device in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker…
Use after free in Device in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87609] Use after free in Sharing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacke…
Use after free in Sharing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87581] Use after free in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leverag…
Use after free in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
M Crítico vulnerabilidad
09/09/2026
[CVE-2026-87558] Use after free in Payments in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attack…
Use after free in Payments in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
M Crítico vulnerabilidad
09/09/2026
[CVE-2026-87547] Incorrect reference resolution in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remot…
Incorrect reference resolution in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87528] Type confusion in Rust in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attack…
Type confusion in Rust in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87529] Numeric truncation error in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker …
Numeric truncation error in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)