Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,509
Total alertas
3066
Críticas
10171
Altas
8
Ransomware
1810
Esta semana
RSS
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10898] Stack buffer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who h…
Stack buffer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10899] Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker w…
Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10900] Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker…
Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10901] Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker…
Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10902] Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute…
Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
04/06/2026
[CVE-2026-10886] Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to po…
Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10887] Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacke…
Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10888] Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the …
Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10889] Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who ha…
Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10890] Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local netw…
Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10891] Use after free in GFX in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to …
Use after free in GFX in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10893] Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to ex…
Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10894] Use after free in Printing in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacke…
Use after free in Printing in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Crítico vulnerabilidad
04/06/2026
[CVE-2026-10881] Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attac…
Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10882] Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execu…
Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10883] Type Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potenti…
Type Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10884] Use after free in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who h…
Use after free in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
G Alto vulnerabilidad
04/06/2026
[CVE-2026-10885] Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att…
Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
M Crítico vulnerabilidad
04/06/2026
[CVE-2024-27892] Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when…
Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.
M Alto vulnerabilidad
04/06/2026
[CVE-2025-8873] On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause…
On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the …