Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
22,113
Total alertas
4677
Críticas
16848
Altas
8
Ransomware
1013
Esta semana
RSS
M Alto vulnerabilidad
15/09/2026
[CVE-2026-54544] Fireshare facilitates self-hosted media and link sharing. Prior to version 1.6.16, two API endpoints…
Fireshare facilitates self-hosted media and link sharing. Prior to version 1.6.16, two API endpoints that trigger outbound HTTP requests are missing the @login_required decorator. An unauthenticated attacker can call POST /api/test-discord-webhook or POST /api/test-webhook and cause the Fireshare server to issue an arbitrary HTTP POST to any URL the attacker supplies, including internal network ad…
M Alto vulnerabilidad
15/09/2026
[CVE-2026-76820] OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables.…
OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260701.0, the synchronizerFetch GraphQL query called fetchRemoteStreams after checking only that a remote stream URL used HTTP or HTTPS. The backend did not apply the ingestion deny list or reject private, loopback, and link-local destinations, allowing an authenticated account with the …
M Alto vulnerabilidad
15/09/2026
[CVE-2026-58485] mcp-searxng is a Model Context Protocol server that gives AI assistants web search and URL-reading c…
mcp-searxng is a Model Context Protocol server that gives AI assistants web search and URL-reading capabilities through SearXNG. Prior to 1.7.1, web_url_read receives its caller-controlled URL through src/index.ts and validates only the literal hostname in assertUrlAllowed() within src/url-reader.ts before undiciFetch() performs operating-system DNS resolution. A public-looking attacker-controlled…
M Alto vulnerabilidad
15/09/2026
[CVE-2026-54549] Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to…
Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to version 1.0.115, the upload_ad_image tool in meta_ads_mcp/core/ads.py passes an attacker-controlled image_url to try_multiple_download_methods() in meta_ads_mcp/core/utils.py, where httpx.AsyncClient uses follow_redirects=True and performs HTTP requests without validating the scheme, host, or resol…
M Alto vulnerabilidad
15/09/2026
[CVE-2026-63443] Coder allows organizations to provision remote development environments via Terraform. Prior to 2.29…
Coder allows organizations to provision remote development environments via Terraform. Prior to 2.29.19, 2.32.9, 2.33.10, and 2.34.4, agentConn.apiClient() follows redirects while its custom transport accepts the host from the redirected request URL when the port is the workspace agent HTTP API port 4. An authenticated user who controls a modified workspace agent and knows another online agent's U…
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91943] Crawl4AI before 0.9.3 contains a server-side request forgery vulnerability in PDFContentScrapingStra…
Crawl4AI before 0.9.3 contains a server-side request forgery vulnerability in PDFContentScrapingStrategy where _get_pdf_path() re-downloads targets with Python requests without egress validation. Authenticated attackers can supply URLs that redirect to internal addresses or use DNS rebinding to access internal services, exfiltrating responses through PDF text extraction in crawl results.
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91938] Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwr…
Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as document text.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
15/09/2026
[CVE-2026-91935] Flowise before 3.1.4 fails to validate baseURL parameters in chat-model nodes, allowing authenticate…
Flowise before 3.1.4 fails to validate baseURL parameters in chat-model nodes, allowing authenticated users to redirect requests to arbitrary hosts. Attackers with chatflows:create or chatflows:update permissions can exfiltrate LLM provider API keys by redirecting requests to cloud metadata services or internal hosts.
M Alto vulnerabilidad
15/09/2026
[CVE-2026-59973] FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). From mcp-from-openapi…
FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). From mcp-from-openapi 2.3.0 until 2.5.0 and from frontmcp and @frontmcp/adapters 1.2.1 until 1.5.0, libs/adapters/src/openapi/openapi.adapter.ts loadOpenAPISpec() forwards untrusted OpenAPI url and spec inputs and loadOptions.refResolution to OpenAPIToolGenerator.fromURL() and OpenAPIToolGenerator.fromJSON(). The extern…
M Alto vulnerabilidad
15/09/2026
[CVE-2026-54077] ArcadeDB is a Multi-Model DBMS. Prior to 26.6.1, the IMPORT DATABASE statement in engine/src/main/ja…
ArcadeDB is a Multi-Model DBMS. Prior to 26.6.1, the IMPORT DATABASE statement in engine/src/main/java/com/arcadedb/query/sql/parser/ImportDatabaseStatement.java did not require administrative privileges and passed its source to integration/src/main/java/com/arcadedb/integration/importer/SourceDiscovery.java without validation. An authenticated user with SQL command access through /api/v1/command …
M Alto vulnerabilidad
15/09/2026
[CVE-2026-79425] An authenticated Server-Side Request Forgery (SSRF) in the /adminapi/file/online_upload component of…
An authenticated Server-Side Request Forgery (SSRF) in the /adminapi/file/online_upload component of CRMEB v6.0.0 allows attackers to scan internal resources via a crafted POST request.
M Alto vulnerabilidad
15/09/2026
[CVE-2026-53957] Contentful MCP Server is a Model Context Protocol server for the Contentful Management API. Prior to…
Contentful MCP Server is a Model Context Protocol server for the Contentful Management API. Prior to @contentful/mcp-server 1.7.19 and @contentful/mcp-tools 0.4.5, export_space and import_space in packages/mcp-tools/src/tools/jobs/space-to-space-migration/exportSpace.ts and packages/mcp-tools/src/tools/jobs/space-to-space-migration/importSpace.ts expose host, proxy, rawProxy, and insecure network …
M Alto vulnerabilidad
15/09/2026
Vulnerabilidad SSRF alta en KubeSphere hasta v4.1.3 permite exfiltración de credenciales
KubeSphere versiones hasta 4.1.3 contiene una vulnerabilidad de falsificación de solicitud del lado del servidor (SSRF) en el endpoint de verificación de credenciales Git que acepta URLs sin validación. Atacantes autenticados pueden acceder a servicios internos y extraer credenciales básicas almacenadas en Secrets de cualquier namespace explotando el manejo de errores del endpoint. Este riesgo es alta para plataformas Kubernetes en producción en LATAM que usen KubeSphere como orquestador de contenedores.
M Crítico vulnerabilidad
14/09/2026
[CVE-2026-12944] IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root…
IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root privileges (UID=0) on the Langflow server by submitting components containing socket or urllib imports. This enables: (1) AWS credential theft via IMDSv1 SSRF with full IAM role permissions, (2) arbitrary file exfiltration from the container filesystem, and (3) lateral movement to internal services…
M Alto vulnerabilidad
14/09/2026
[CVE-2026-54628] Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, anyquery server exposes URL-…
Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, anyquery server exposes URL-capable SQLite virtual table modules such as json_reader and log_reader through its unauthenticated MySQL-compatible server port without restricting outbound destinations. A remote attacker can provide a loopback, private-network, or link-local cloud metadata URL, causing go-getter in the Anyquery s…

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
14/09/2026
[CVE-2026-91079] Huly Platform through 0.7.426 contains a server-side request forgery vulnerability in the print serv…
Huly Platform through 0.7.426 contains a server-side request forgery vulnerability in the print service due to missing hostname allowlist validation. Authenticated workspace members can supply arbitrary URLs to the print endpoint, which Puppeteer renders and returns as downloadable PDFs or images, enabling access to internal metadata services and network hosts.
M Alto vulnerabilidad
14/09/2026
[CVE-2026-57126] PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.58, SpiderTools._validate_url …
PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.58, SpiderTools._validate_url calls _host_is_blocked, which checks literal host encodings but does not resolve DNS names before scrape_page, crawl, extract_links, extract_text, or URL-mention fetches connect. An attacker-controlled hostname resolving to a loopback, private, link-local, or cloud-metadata address therefore bypasse…
M Alto vulnerabilidad
14/09/2026
Vulnerabilidad SSRF alta en Taisan Tarzan-CMS 1.0.0 permite acceso no autorizado
Se identificó una vulnerabilidad de Server-Side Request Forgery (SSRF) en la función openConnection del componente Theme Download Function de Taisan Tarzan-cms versión 1.0.0. Un atacante remoto puede manipular el parámetro httpUrl para ejecutar solicitudes HTTP no autorizadas desde el servidor afectado, comprometiendo la integridad de sistemas internos y datos sensibles. El exploit está disponible públicamente, incrementando el riesgo de explotación inmediata en entornos empresariales de LATAM.
M Alto vulnerabilidad
13/09/2026
Vulnerabilidad alta en Open Notebook anterior a 1.11.0 permite SSRF autenticado
Open Notebook versiones anteriores a 1.11.0 contiene una falla de validación en el parámetro URL del endpoint POST /api/sources que permite a usuarios autenticados ejecutar solicitudes HTTP arbitrarias desde el servidor hacia servicios internos, metadatos en la nube y servicios locales. Esto expone credenciales de infraestructura en cloud (AWS, Azure, GCP) y datos sensibles de redes corporativas internas en organizaciones LATAM que utilizan esta plataforma.
M Alto vulnerabilidad
11/09/2026
Vulnerabilidad alta en Shelf permite inyección SSRF en importación de activos
Shelf, plataforma de gestión de inventarios físicos, contiene una vulnerabilidad de Server-Side Request Forgery (SSRF) en versiones anteriores a 1.20.3. Usuarios autenticados con permisos de importación pueden eludir validaciones de URL en la función de importación CSV para ejecutar peticiones HTTP a servidores controlados por atacantes. Afecta principalmente a empresas LATAM que gestionan activos tecnológicos y de infraestructura a través de esta plataforma.