Vulnérabilités
Vulnérabilités des apps suivies
8 495 CVE touchent une app ou un OS suivi (toutes sévérités, Windows). 214 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 8 495
- Activement exploitées
- 214
- Fenêtre de publication
- 2002-10-04 → 2026-08-19
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2021-26860
HIGH 7.8
Windows App-V Overlay Filter Elevation of Privilege Vulnerability |
|
CVE-2021-24107
MEDIUM 5.5
Windows Event Tracing Information Disclosure Vulnerability |
|
CVE-2021-24095
HIGH 7.0
DirectX Elevation of Privilege Vulnerability |
|
CVE-2021-24090
HIGH 7.8
Windows Error Reporting Elevation of Privilege Vulnerability |
|
CVE-2021-1729
HIGH 7.1
Windows Update Stack Setup Elevation of Privilege Vulnerability |
|
CVE-2021-1640
HIGH 7.8
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2021-21300
CRITICAL 8.8
2 apps
Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as f… |
|
CVE-2021-23978
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-23964
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 84 and Firefox ESR 78.6. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-23960
HIGH 8.8
1 app
Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exploitable crash. This vulnerability affe… |
|
CVE-2021-23954
HIGH 8.8
1 app
Using the new logical assignment operators in a JavaScript switch statement could have caused a type confusion, leading to a memory corruption and a potentiall… |
|
CVE-2021-23953
MEDIUM 4.3
1 app
If a user clicked into a specifically crafted PDF, the PDF reader could be confused into leaking cross-origin information, when said information is served as c… |
|
CVE-2021-23973
MEDIUM 6.5
1 app
When trying to load a cross-origin resource in an audio/video context a decoding error may have resulted, and the content of that error may have revealed infor… |
|
CVE-2021-23969
MEDIUM 4.3
1 app
As specified in the W3C Content Security Policy draft, when creating a violation report, "User agents need to ensure that the source file is the URL requested … |
|
CVE-2021-23968
MEDIUM 4.3
1 app
If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to… |
|
CVE-2021-1732
HIGH 7.8
KEV
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2021-23336
MEDIUM 5.9
1 app
The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to W… |
|
CVE-2021-25195
HIGH 7.8
Windows PKU2U Elevation of Privilege Vulnerability |
|
CVE-2021-24106
HIGH 5.5
Windows DirectX Information Disclosure Vulnerability |
|
CVE-2021-24103
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2021-24102
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2021-24098
HIGH 5.5
Windows Console Driver Denial of Service Vulnerability |
|
CVE-2021-24096
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2021-24094
CRITICAL 9.8
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2021-24093
CRITICAL 8.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2021-24091
CRITICAL 7.8
Windows Camera Codec Pack Remote Code Execution Vulnerability |
|
CVE-2021-24088
CRITICAL 8.8
Windows Local Spooler Remote Code Execution Vulnerability |
|
CVE-2021-24086
HIGH 7.5
Windows TCP/IP Denial of Service Vulnerability |
|
CVE-2021-24084
HIGH 5.5
Windows Mobile Device Management Information Disclosure Vulnerability |
|
CVE-2021-24083
HIGH 7.8
Windows Address Book Remote Code Execution Vulnerability |
|
CVE-2021-24082
HIGH 4.3
Microsoft.PowerShell.Utility Module WDAC Security Feature Bypass Vulnerability |
|
CVE-2021-24081
CRITICAL 7.8
Microsoft Windows Codecs Library Remote Code Execution Vulnerability |
|
CVE-2021-24080
MEDIUM 6.5
Windows Trust Verification API Denial of Service Vulnerability |
|
CVE-2021-24079
HIGH 5.5
Windows Backup Engine Information Disclosure Vulnerability |
|
CVE-2021-24078
CRITICAL 9.8
Windows DNS Server Remote Code Execution Vulnerability |
|
CVE-2021-24077
CRITICAL 9.8
Windows Fax Service Remote Code Execution Vulnerability |
|
CVE-2021-24076
HIGH 5.5
Microsoft Windows VMSwitch Information Disclosure Vulnerability |
|
CVE-2021-24075
HIGH 6.8
Microsoft Windows VMSwitch Denial of Service Vulnerability |
|
CVE-2021-24074
CRITICAL 9.8
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2021-1734
HIGH 7.5
Windows Remote Procedure Call Information Disclosure Vulnerability |
|
CVE-2021-1731
HIGH 5.5
PFX Encryption Security Feature Bypass Vulnerability |
|
CVE-2021-1727
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2021-1722
CRITICAL 8.1
Windows Fax Service Remote Code Execution Vulnerability |
|
CVE-2021-1698
HIGH 7.8
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2020-17162
HIGH 8.8
Microsoft Windows Security Feature Bypass Vulnerability |
|
CVE-2021-3177
CRITICAL 9.8
1 app
Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applications tha… |
|
CVE-2021-1710
HIGH 7.8
Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
|
CVE-2021-1709
HIGH 7.0
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2021-1708
HIGH 5.7
Windows GDI+ Information Disclosure Vulnerability |
|
CVE-2021-1706
HIGH 7.3
Windows LUAFV Elevation of Privilege Vulnerability |