Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "Google" — 1248 resultados ✕ Limpiar búsqueda
22,162
Total alertas
4698
Críticas
16876
Altas
8
Ransomware
1038
Esta semana
RSS
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91734] Incorrect authorization in Core in Google Chrome on on Windows prior to 153.0.8010.47 allowed a loca…
Incorrect authorization in Core in Google Chrome on on Windows prior to 153.0.8010.47 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91721] Use after free in Internals in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to pot…
Use after free in Internals in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91724] Use after free in Input in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had co…
Use after free in Input in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91727] Incorrect reference resolution in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allow…
Incorrect reference resolution in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a local attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91712] Race condition in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a remote atta…
Race condition in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91709] Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to…
Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
M Alto vulnerabilidad
15/09/2026
[CVE-2026-58734] In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race c…
In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
09/09/2026
Vulnerabilidad SSRF alta en Lara Dashboard 1.3.1 permite lectura de credenciales IAM
Lara Dashboard versiones hasta 1.3.1 contiene una vulnerabilidad de falsificación de solicitudes del lado del servidor (SSRF) en el endpoint POST /api/admin/builder/markdown/fetch. Usuarios autenticados pueden obtener URLs arbitrarias y acceder a servicios HTTP internos, metadatos en la nube e incluso credenciales IAM sin validación de host ni restricciones de redirección. En entornos de AWS, Azure o Google Cloud utilizados por empresas LATAM, esta vulnerabilidad expone acceso directo a tokens de identidad y secretos almacenados en servicios internos.
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87646] Use after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attack…
Use after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87648] Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attac…
Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87650] Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to pot…
Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87654] Buffer overflow in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote atta…
Buffer overflow in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87637] Use after free in Extensions in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote atta…
Use after free in Extensions in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87638] Out of bounds write in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to po…
Out of bounds write in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87639] Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who…
Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87643] Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attac…
Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87644] Incorrect authorization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a rem…
Incorrect authorization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87628] Use after free in Cast in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to poten…
Use after free in Cast in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Critical)
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87633] Use after free in Views in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute …
Use after free in Views in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)
G Crítico vulnerabilidad
09/09/2026
[CVE-2026-87634] Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to …
Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)