Vulnérabilités
Vulnérabilités des apps suivies
845 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2019-10160
CRITICAL 9.8
Réseau 1 apps
A security regression of CVE-2019-9636 was discovered in python since commit d537ab0ff9767ef024f26246899728f0116b1ec3 affecting versions 2.7, 3.5, 3.6, 3.7 and… |
|
CVE-2019-0903
CRITICAL 8.8
KEV
GDI+ Remote Code Execution Vulnerability |
|
CVE-2019-0725
CRITICAL 8.1
Windows DHCP Server Remote Code Execution Vulnerability |
|
CVE-2019-9796
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when the SMIL animation controller incorrectly registers with the refresh driver twice when only a single registration… |
|
CVE-2019-9795
CRITICAL 9.8
Réseau 1 apps
A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to trigger a potentially ex… |
|
CVE-2019-9794
CRITICAL 9.8
Réseau 1 apps
A vulnerability was discovered where specific command line arguments are not properly discarded during Firefox invocation as a shell handler for URLs. This cou… |
|
CVE-2019-9792
CRITICAL 9.8
Réseau 1 apps
The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then b… |
|
CVE-2019-9791
CRITICAL 9.8
Réseau 1 apps
The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just… |
|
CVE-2019-9790
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when a raw pointer to a DOM element on a page is obtained using JavaScript and the element is then removed while still… |
|
CVE-2019-9788
CRITICAL 9.8
Réseau 1 apps
Mozilla developers and community members reported memory safety bugs present in Firefox 65, Firefox ESR 60.5, and Thunderbird 60.5. Some of these bugs showed e… |
|
CVE-2018-18512
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while playing a sound notification in Thunderbird. The memory storing the sound data is immediately freed, although th… |
|
CVE-2019-0853
CRITICAL 7.8
GDI+ Remote Code Execution Vulnerability |
|
CVE-2019-0845
CRITICAL 7.5
Windows IOleCvt Interface Remote Code Execution Vulnerability |
|
CVE-2019-0795
CRITICAL 7.8
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0793
CRITICAL 7.8
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0792
CRITICAL 7.8
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0791
CRITICAL 7.8
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0790
CRITICAL 7.8
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0786
CRITICAL 7.8
Hyper-V vSMB Remote Code Execution Vulnerability |
|
CVE-2019-9948
CRITICAL 9.1
Réseau 1 apps
urllib in Python 2.x through 2.7.16 supports the local_file: scheme, which makes it easier for remote attackers to bypass protection mechanisms that blacklist … |
|
CVE-2019-0784
CRITICAL 4.2
Windows ActiveX Remote Code Execution Vulnerability |
|
CVE-2019-0756
CRITICAL 7.5
MS XML Remote Code Execution Vulnerability |
|
CVE-2019-0726
CRITICAL 9.8
Windows DHCP Client Remote Code Execution Vulnerability |
|
CVE-2019-0698
CRITICAL 9.8
Windows DHCP Client Remote Code Execution Vulnerability |
|
CVE-2019-0697
CRITICAL 9.8
Windows DHCP Client Remote Code Execution Vulnerability |
|
CVE-2019-0603
CRITICAL 7.5
Windows Deployment Services TFTP Server Remote Code Execution Vulnerability |
|
CVE-2019-9636
CRITICAL 9.8
Réseau 1 apps
Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode Encoding (with an incorrect netloc) during NFKC normalization. T… |
|
CVE-2018-18498
CRITICAL 9.8
Réseau 1 apps
A potential vulnerability leading to an integer overflow can occur during buffer size calculations for images when a raw value is used instead of the checked v… |
|
CVE-2018-18493
CRITICAL 9.8
Réseau 1 apps
A buffer overflow can occur in the Skia library during buffer offset calculations with hardware accelerated canvas 2D actions due to the use of 32-bit calculat… |
|
CVE-2018-18492
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur after deleting a selection element due to a weak reference to the select element in the options collection. This resul… |
|
CVE-2018-12405
CRITICAL 9.8
Réseau 1 apps
Mozilla developers and community members reported memory safety bugs present in Firefox 63 and Firefox ESR 60.3. Some of these bugs showed evidence of memory c… |
|
CVE-2018-12392
CRITICAL 9.8
Réseau 1 apps
When manipulating user events in nested loops while opening a document through script, it is possible to trigger a potentially exploitable crash due to poor ev… |
|
CVE-2018-12390
CRITICAL 9.8
Réseau 1 apps
Mozilla developers and community members reported memory safety bugs present in Firefox 62 and Firefox ESR 60.2. Some of these bugs showed evidence of memory c… |
|
CVE-2019-0662
CRITICAL 8.8
GDI+ Remote Code Execution Vulnerability |
|
CVE-2019-0626
CRITICAL 9.8
Windows DHCP Server Remote Code Execution Vulnerability |
|
CVE-2019-0618
CRITICAL 8.8
GDI+ Remote Code Execution Vulnerability |
|
CVE-2018-18505
CRITICAL 10.0
Réseau 1 apps
An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server pa… |
|
CVE-2018-18501
CRITICAL 9.8
Réseau 1 apps
Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of these bugs showed evidence of memory c… |
|
CVE-2018-18500
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This results in the stream parser object being fre… |
|
CVE-2019-0551
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2019-0550
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2019-0547
CRITICAL 9.8
Windows DHCP Client Remote Code Execution Vulnerability |
|
CVE-2018-8634
CRITICAL 4.2
Microsoft Text-To-Speech Remote Code Execution Vulnerability |
|
CVE-2018-8626
CRITICAL 9.8
Windows DNS Server Heap Overflow Vulnerability |
|
CVE-2018-15715
CRITICAL 9.8
Réseau 2 apps
Zoom clients on Windows (before version 4.1.34814.1119), Mac OS (before version 4.1.34801.1116), and Linux (2.4.129780.0915 and below) are vulnerable to unauth… |
|
CVE-2018-19486
CRITICAL 9.8
Réseau 1 apps
Git before 2.19.2 on Linux and UNIX executes commands from the current working directory (as if '.' were at the end of $PATH) in certain cases involving the ru… |
|
CVE-2018-8553
CRITICAL 7.4
Microsoft Graphics Components Remote Code Execution Vulnerability |
|
CVE-2018-8544
CRITICAL 7.5
Windows VBScript Engine Remote Code Execution Vulnerability |
|
CVE-2018-8476
CRITICAL 8.1
Windows Deployment Services TFTP Server Remote Code Execution Vulnerability |
|
CVE-2018-5188
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 60, Firefox ESR 60, and Firefox ESR 52.8. Some of these bugs showed evidence of memory corruption and we presume that wit… |