Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
22,093
Total alertas
4671
Críticas
16834
Altas
8
Ransomware
1009
Esta semana
RSS
M Alto vulnerabilidad
29/09/2026
[CVE-2026-100813] Invalid pointer in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 157…
Invalid pointer in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 157.
M Alto vulnerabilidad
08/09/2026
[CVE-2026-77500] Release of invalid pointer or reference in Windows Device Association Service allows an authorized a…
Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
08/09/2026
Vulnerabilidad alta en libxml2 con bindings Python permite denegación de servicio remota
Se ha identificado un fallo en libxml2 (cuando está compilado con bindings de Python) que permite a atacantes remotos provocar una denegación de servicio mediante documentos XML especialmente diseñados con Definiciones de Tipo de Documento (DTD) que contienen valores de atributos enumerados. La vulnerabilidad explota un error de doble liberación de memoria en el manejador de retrollamada SAX attributeDecl, afectando potencialmente servidores web, APIs y aplicaciones que procesan XML en entornos LATAM.
M Alto vulnerabilidad
01/09/2026
[CVE-2026-84131] Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed …
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 155, Firefox ESR 115.40, Firefox ESR 140.15, and Firefox ESR 153.2.
M Alto vulnerabilidad
18/08/2026
[CVE-2026-74947] Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed …
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
F Alto vulnerabilidad
08/07/2026
[CVE-2026-57248] When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack o…
When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack of sufficient object type and argument checks. As a result, due to the damage to the internal structure of the annotations, it causes the application to crash during subsequent release.
L Alto vulnerabilidad
24/06/2026
[CVE-2026-53000] In the Linux kernel, the following vulnerability has been resolved: netfilter: nat: use kfree_rcu t…
In the Linux kernel, the following vulnerability has been resolved: netfilter: nat: use kfree_rcu to release ops Florian Westphal says: "Historically this is not an issue, even for normal base hooks: the data path doesn't use the original nf_hook_ops that are used to register the callbacks. However, in v5.14 I added the ability to dump the active netfilter hooks from userspace. This code will…

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
L Crítico vulnerabilidad
24/06/2026
[CVE-2026-52993] In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_b…
In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_msg_validate() can potentially reallocate the skb it is validating, freeing the old one. In tipc_buf_append(), it was being called with a pointer to a local variable which was a copy of the caller's skb pointer. If the skb was reallocated and validation subsequently failed, the e…
R Alto vulnerabilidad
03/06/2026
[CVE-2026-9516] Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input …
Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input when a decode filter callback throws. To skip a leading 3-byte UTF-8 BOM, decode_json() advances the input scalar's string pointer past the mark with SvPV_set() and restores it only on the normal return path. When decoding aborts through a Perl exception, for example a filter_json_object callback t…