Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 1 hora
22,093
Total alertas
4671
Críticas
16834
Altas
8
Ransomware
1003
Esta semana
RSS
A Alto vulnerabilidad
15/07/2026
[CVE-2026-40952] CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client…
CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client and server prior to version 14.55. Attackers with local access to the client or server can use it to elevate privileges to Administrator when Secure Access is installed in a non-default location.
M Medio vulnerabilidad
15/07/2026
CVE-2026-50341 Windows NTFS Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-50341 Windows NTFS Information Disclosure Vulnerability. Tipo: Divulgación de Información.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48337] Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code …
Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
A Crítico vulnerabilidad
14/07/2026
[CVE-2026-48334] Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary…
Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48335] Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code …
Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48336] Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code …
Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48275] Illustrator is affected by an Untrusted Search Path vulnerability that could result in arbitrary cod…
Illustrator is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48344] Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerabil…
Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
A Alto vulnerabilidad
14/07/2026
[CVE-2026-48272] Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could r…
Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.
G Crítico vulnerabilidad
14/07/2026
[CVE-2026-15773] Use after free in Core in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker…
Use after free in Core in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
G Alto vulnerabilidad
14/07/2026
[CVE-2026-15767] Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote …
Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted video file. (Chromium security severity: High)
F Alto vulnerabilidad
14/07/2026
[CVE-2026-59841] A improper restriction of communication channel to intended endpoints vulnerability in Fortinet Fort…
A improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 may allow attacker to escalation of privilege via
M Medio vulnerabilidad
14/07/2026
CVE-2026-34349 Windows Media Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-34349 Windows Media Information Disclosure Vulnerability. Tipo: Divulgación de Información.
M Medio vulnerabilidad
14/07/2026
CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability. Tipo: Divulgación de Información.
M Alto vulnerabilidad
14/07/2026
CVE-2026-49167 Windows Kernel Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-49167 Windows Kernel Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Medio vulnerabilidad
14/07/2026
CVE-2026-49177 Windows TCP/IP Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-49177 Windows TCP/IP Information Disclosure Vulnerability. Tipo: Divulgación de Información.
M Alto vulnerabilidad
14/07/2026
CVE-2026-55000 Windows USB Print Driver Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-55000 Windows USB Print Driver Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
14/07/2026
CVE-2026-54132 Windows Kernel Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-54132 Windows Kernel Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Medio vulnerabilidad
14/07/2026
CVE-2026-54997 Windows SMB Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-54997 Windows SMB Information Disclosure Vulnerability. Tipo: Divulgación de Información.
M Medio vulnerabilidad
14/07/2026
CVE-2026-55003 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-55003 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability. Tipo: Divulgación de Información.