Vulnérabilités
Vulnérabilités des apps suivies
15 640 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-43769
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43768
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43767
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43764
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43762
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43701
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43097
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43077
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43052
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-43048
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-33063
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-33056
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-33044
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-20125
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2024-11708
MEDIUM 6.5
Réseau 1 apps
Missing thread synchronization primitives could have led to a data race on members of the PlaybackParams structure. This vulnerability affects Firefox < 133 an… |
|
CVE-2024-11706
MEDIUM 6.5
Réseau 1 apps
A null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when handling malformed o… |
|
CVE-2024-11705
CRITICAL 9.1
Réseau 1 apps
`NSC_DeriveKey` inadvertently assumed that the `phKey` parameter is always non-NULL. When it was passed as NULL, a segmentation fault (SEGV) occurred, leading … |
|
CVE-2024-11704
CRITICAL 9.8
Réseau 1 apps
A double-free issue could have occurred in `sec_pkcs7_decoder_start_decrypt()` when handling an error path. Under specific conditions, the same symmetric key c… |
|
CVE-2024-11702
HIGH 7.5
Réseau 1 apps
Copying sensitive information from Private Browsing tabs on Android, such as passwords, may have inadvertently stored data in the cloud-based clipboard history… |
|
CVE-2024-11701
MEDIUM 4.3
Réseau 1 apps
The incorrect domain may have been displayed in the address bar during an interrupted navigation attempt. This could have led to user confusion and possible sp… |
|
CVE-2024-11700
HIGH 8.1
Réseau 1 apps
Malicious websites may have been able to perform user intent confirmation through tapjacking. This could have led to users unknowingly approving the launch of … |
|
CVE-2024-11699
HIGH 8.8
Réseau 1 apps
Memory safety bugs present in Firefox 132, Firefox ESR 128.4, and Thunderbird 128.4. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-11698
CRITICAL 9.8
Réseau 1 apps
A flaw in handling fullscreen transitions may have inadvertently caused the application to become stuck in fullscreen mode when a modal dialog was opened durin… |
|
CVE-2024-11697
HIGH 8.8
Réseau 1 apps
When handling keypress events, an attacker may have been able to trick a user into bypassing the "Open Executable File?" confirmation dialog. This could have l… |
|
CVE-2024-11696
MEDIUM 5.4
Réseau 1 apps
The application failed to account for exceptions thrown by the `loadManifestFromFile` method during add-on signature verification. This flaw, triggered by an i… |
|
CVE-2024-11695
MEDIUM 5.4
Réseau 1 apps
A crafted URL containing Arabic script and whitespace characters could have hidden the true origin of the page, resulting in a potential spoofing attack. This … |
|
CVE-2024-11694
MEDIUM 6.1
Réseau 1 apps
Enhanced Tracking Protection's Strict mode may have inadvertently allowed a CSP `frame-src` bypass and DOM-based XSS through the Google SafeFrame shim in the W… |
|
CVE-2024-11693
CRITICAL 9.8
Réseau 1 apps
The executable file warning was not presented when downloading .library-ms files. *Note: This issue only affected Windows operating systems. Other operating … |
|
CVE-2024-11692
MEDIUM 4.3
Réseau 1 apps
An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability… |
|
CVE-2024-11691
HIGH 8.8
Réseau 1 apps
Certain WebGL operations on Apple silicon M series devices could have lead to an out-of-bounds write and memory corruption due to a flaw in Apple's GPU driver.… |
|
CVE-2024-11612
MEDIUM 6.5
Réseau 1 apps
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected i… |
|
CVE-2024-11477
HIGH 7.8
Local 1 apps
7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on af… |
|
CVE-2024-44309
MEDIUM 6.3
KEV
Réseau
A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1.1, iOS 17.7.2 and iPadOS 17.7.2, iOS 18.1.1 and iPad… |
|
CVE-2024-44308
HIGH 8.8
KEV
Réseau
The issue was addressed with improved checks. This issue is fixed in Safari 18.1.1, iOS 17.7.2 and iPadOS 17.7.2, iOS 18.1.1 and iPadOS 18.1.1, macOS Sequoia 1… |
|
CVE-2024-44307
HIGH 7.8
Local
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.6. An app may be able to execute arbitrary code wit… |
|
CVE-2024-44306
HIGH 7.8
Local
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.6. An app may be able to execute arbitrary code wit… |
|
CVE-2024-11159
MEDIUM 4.3
Réseau 1 apps
Using remote content in OpenPGP encrypted messages can lead to the disclosure of plaintext. This vulnerability affects Thunderbird < 128.4.3 and Thunderbird < … |
|
CVE-2024-49039
HIGH 8.8
KEV
Local
Windows Task Scheduler Elevation of Privilege Vulnerability |
|
CVE-2024-49046
HIGH 7.8
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
|
CVE-2024-49019
HIGH 7.8
Active Directory Certificate Services Elevation of Privilege Vulnerability |
|
CVE-2024-43646
HIGH 6.7
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2024-43645
HIGH 6.7
Windows Defender Application Control (WDAC) Security Feature Bypass Vulnerability |
|
CVE-2024-43644
HIGH 7.8
Windows Client-Side Caching Elevation of Privilege Vulnerability |
|
CVE-2024-43643
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43642
HIGH 7.5
Windows SMB Denial of Service Vulnerability |
|
CVE-2024-43641
HIGH 7.8
Windows Registry Elevation of Privilege Vulnerability |
|
CVE-2024-43640
HIGH 7.8
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43639
CRITICAL 9.8
Windows KDC Proxy Remote Code Execution Vulnerability |
|
CVE-2024-43638
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43637
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |