Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "X" — 10064 resultados ✕ Limpiar búsqueda
13,566
Total alertas
3081
Críticas
10213
Altas
8
Ransomware
1780
Esta semana
RSS
M Alto vulnerabilidad
08/06/2026
[CVE-2023-54351] WordPress Sonaar Music Plugin 4.7 contains a stored cross-site scripting vulnerability that allows u…
WordPress Sonaar Music Plugin 4.7 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts through the comment functionality. Attackers can submit JavaScript payloads in the comment parameter to wp-comments-post.php which are stored and executed in the browsers of users viewing the affected playlist pages.
M Alto vulnerabilidad
08/06/2026
[CVE-2026-11474] A security flaw has been discovered in Kushan2k student-management-system up to f16a4ceaddd6729c4b30…
A security flaw has been discovered in Kushan2k student-management-system up to f16a4ceaddd6729c4b306ed4641cda3176c1ef2a. Affected is an unknown function of the file service/RegisterService.php of the component Registration Endpoint. Performing a manipulation of the argument stimg results in unrestricted upload. The attack may be initiated remotely. The exploit has been released to the public and …
M Alto vulnerabilidad
08/06/2026
[CVE-2026-11471] A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted elem…
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /index2.php. The manipulation of the argument Password results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.
M Alto vulnerabilidad
08/06/2026
[CVE-2026-11472] A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects…
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /index1.php. This manipulation of the argument Password causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
B Alto vulnerabilidad
08/06/2026
Vulnerabilidad crítica en BerriAI LiteLLM bajo explotación activa (CVE-2026-42271)
CISA ha confirmado la explotación activa de una vulnerabilidad en BerriAI LiteLLM, plataforma de proxy LLM utilizada por empresas LATAM para gestionar APIs de modelos de lenguaje. No se han reportado asociaciones con campañas de ransomware hasta el momento. La remediación obligatoria vence el 22 de junio de 2026 según directiva CISA BOD 22-01.
C Alto vulnerabilidad
08/06/2026
Vulnerabilidad crítica en Check Point Security Gateway bajo explotación activa
Check Point Security Gateway presenta una vulnerabilidad (CVE-2026-50751) que está siendo explotada activamente en el wild, según confirmación de CISA. Aunque no se ha documentado su uso en campañas de ransomware conocidas, el riesgo es inmediato para infraestructuras críticas en México y Latinoamérica que dependen de este gateway para seguridad perimetral. La fecha límite obligatoria para remediación es el 11 de junio de 2026.
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11462] A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22. This imp…
A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22. This impacts the function callback of the file plugins/Stripe/Controllers/StripeController.php of the component Stripe Plugin. Performing a manipulation of the argument Request results in improper authorization. The attack can be initiated remotely. The exploit has been made public and could be used. The pa…

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11463] A vulnerability was determined in USCiLab Cereal up to 1.3.2. Affected is an unknown function of the…
A vulnerability was determined in USCiLab Cereal up to 1.3.2. Affected is an unknown function of the component Shared Pointer Handler. Executing a manipulation can lead to type confusion. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure.
A Crítico amenaza
07/06/2026
Alerta ThreatFox: Agentemis,BEACON,CobaltStrike,cobeacon activo — 958 IOCs (07 de June de 2026)
ThreatFox (abuse.ch) detectó 958 IOCs de Agentemis,BEACON,CobaltStrike,cobeacon (Post-Exploitation Framework) en las últimas 24h. Tipos: 451 IP de Comando y Control (C2), 507 Dominio malicioso. Nivel: CRITICO.
A Alto amenaza
07/06/2026
Alerta ThreatFox: None activo — 889 IOCs (07 de June de 2026)
ThreatFox (abuse.ch) detectó 889 IOCs de None (Malware) en las últimas 24h. Tipos: 408 Dominio malicioso, 408 IP de Comando y Control (C2), 70 URL maliciosa, 3 Hash SHA256. Nivel: ALTO.
A Crítico amenaza
07/06/2026
Alerta ThreatFox: RemcosRAT,Remvio,Socmer activo — 187 IOCs (07 de June de 2026)
ThreatFox (abuse.ch) detectó 187 IOCs de RemcosRAT,Remvio,Socmer (RAT (Troyano de Acceso Remoto)) en las últimas 24h. Tipos: 180 IP de Comando y Control (C2), 7 Dominio malicioso. Nivel: CRITICO.
A Alto amenaza
07/06/2026
Alerta ThreatFox: Havokiz activo — 45 IOCs (07 de June de 2026)
ThreatFox (abuse.ch) detectó 45 IOCs de Havokiz (Malware) en las últimas 24h. Tipos: 45 IP de Comando y Control (C2). Nivel: ALTO.
A Alto amenaza
07/06/2026
Alerta ThreatFox: LummaC2 Stealer activo — 35 IOCs (07 de June de 2026)
ThreatFox (abuse.ch) detectó 35 IOCs de LummaC2 Stealer (Malware) en las últimas 24h. Tipos: 16 URL maliciosa, 19 Dominio malicioso. Nivel: ALTO.
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11460] A flaw has been found in Boost Serialization up to 1.91. The impacted element is an unknown function…
A flaw has been found in Boost Serialization up to 1.91. The impacted element is an unknown function. This manipulation causes improper validation of specified type of input. It is possible to initiate the attack remotely. The exploit has been published and may be used. The maintainer was notified on Aug 2025 and a disclosure deadline was set for 90 days. The maintainer acknowledged but postponed …
M Alto vulnerabilidad
07/06/2026
[CVE-2026-49494] Xcitium Client Security (XCS) before 13.8.2.10019 and Comodo Internet Security (CIS) through 12.3.4.…
Xcitium Client Security (XCS) before 13.8.2.10019 and Comodo Internet Security (CIS) through 12.3.4.8162 (fix expected by 2026 Q3) contain an integer underflow vulnerability in the firewall driver Inspect.sys that allows remote unauthenticated attackers to crash the system by sending a crafted IPv6 packet with a declared payload length smaller than the sum of its extension-header lengths. The unsi…

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11456] A vulnerability was identified in Chanjet CRM 1.0. This affects an unknown part of the file /tools/j…
A vulnerability was identified in Chanjet CRM 1.0. This affects an unknown part of the file /tools/jxf_dump_systable.php of the component HTTP GET Request Handler. Such manipulation of the argument gblOrgID leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any…
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11457] A security flaw has been discovered in erzhongxmu JeeWMS up to 141740afb2ba14d441c82a833d0a418d07ca2…
A security flaw has been discovered in erzhongxmu JeeWMS up to 141740afb2ba14d441c82a833d0a418d07ca2d69. This vulnerability affects unknown code of the file /base-boot/jmreport/testConnection of the component JimuReport test-connection Endpoint. Performing a manipulation of the argument dbType/dbDriver/dbUrl/dbUsername/dbPassword results in injection. Remote exploitation of the attack is possible.…
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11451] A flaw has been found in GL.iNet GL-MT3000 4.4.5. This impacts the function snprintf of the file /cg…
A flaw has been found in GL.iNet GL-MT3000 4.4.5. This impacts the function snprintf of the file /cgi-bin/glc of the component FTP Protocol Handler. Executing a manipulation of the argument media_dir can lead to command injection. It is possible to launch the attack remotely. Upgrading to version 4.8.1 will fix this issue. You should upgrade the affected component. The vendor explains: "In version…
M Alto vulnerabilidad
07/06/2026
[CVE-2026-11452] A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function FUN_0042e2…
A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function FUN_0042e200 of the file /cgi-bin/glc of the component SET_USER_PWD Handler. The manipulation of the argument Password leads to command injection. The attack can be initiated remotely. Upgrading to version 4.8.1 is able to address this issue. The affected component should be upgraded. The vendor explains: " T…
M Medio vulnerabilidad
07/06/2026
Vulnerabilidad de complejidad cuadrática en WordDecoder.DecodeHeader del módulo MIME
Se ha identificado una vulnerabilidad de complejidad cuadrática en el decodificador de encabezados MIME que podría permitir ataques de negación de servicio (DoS) contra servidores de correo y sistemas de procesamiento de mensajes. Esta debilidad afecta sistemas en producción que procesan encabezados MIME malformados, generando consumo excesivo de CPU y degradación del servicio. Empresas en LATAM que operan servidores de correo, pasarelas de seguridad o sistemas de procesamiento de documentos son los principales afectados.