Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
22,082
Total alertas
4667
Críticas
16827
Altas
8
Ransomware
1015
Esta semana
RSS
M Crítico vulnerabilidad Nuevo
Hace 11 horas
[CVE-2026-5759] A double free and use-after-free vulnerability in the RdbLoadDeletedNodes function of the RDB graph …
A double free and use-after-free vulnerability in the RdbLoadDeletedNodes function of the RDB graph decoders (src/serializers/decoders/*/decode_graph_entities.c) in FalkorDB before 4.18.1 allows a remote attacker who can issue Redis replication commands (for example, against an instance with no password configured) to cause a denial of service or execute arbitrary code in the redis-server process …
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47558] NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unpri…
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a double-free of imported memory state. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
M Crítico vulnerabilidad
24/09/2026
[CVE-2026-89078] GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 …
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on the GitLab server due to a double free issue when parsing a specially crafted regular expression in a CI/CD configuration.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-6794] IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory …
IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory management. A local attacker can exploit this flaw to corrupt heap memory and execute arbitrary code in the context of the affected process.
M Alto vulnerabilidad
22/09/2026
[CVE-2026-91018] lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, me…
lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, memory corruption, or allow code execution on the victim system.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-20135] A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software…
A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a c…
M Alto vulnerabilidad
14/09/2026
[CVE-2026-85921] Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locall…
Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
14/09/2026
[CVE-2026-23789] An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, …
An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.
M Alto vulnerabilidad
11/09/2026
[CVE-2026-57842] NetBSD contains a use-after-free and double-free vulnerability in msg_recv_copyin() within the COMPA…
NetBSD contains a use-after-free and double-free vulnerability in msg_recv_copyin() within the COMPAT_NETBSD32 compatibility layer due to a missing return statement before the cleanup label on the success path. Any local user able to execute a 32-bit binary on a 64-bit NetBSD system can trigger a kernel panic or memory corruption by calling recvmsg() with msg_iovlen between 9 and IOV_MAX, causing …
G Alto vulnerabilidad
09/09/2026
[CVE-2026-87585] Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacke…
Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: High)
M Alto vulnerabilidad
08/09/2026
[CVE-2026-79907] Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execut…
Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-81950] Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-80080] Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-77504] Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
M Crítico vulnerabilidad
08/09/2026
[CVE-2026-77493] Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a n…
Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
08/09/2026
[CVE-2026-72958] Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-71353] Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to ele…
Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-71351] Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to ele…
Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-70567] Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileg…
Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-70562] Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.