Vulnérabilités
Vulnérabilités des apps suivies
1 821 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2023-23416
CRITICAL 7.8
Windows Cryptographic Services Remote Code Execution Vulnerability |
|
CVE-2023-23415
CRITICAL 9.8
Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability |
|
CVE-2023-23411
CRITICAL 6.5
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2023-23404
CRITICAL 8.1
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
|
CVE-2023-23392
CRITICAL 9.8
HTTP Protocol Stack Remote Code Execution Vulnerability |
|
CVE-2023-21708
CRITICAL 9.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2023-1018
CRITICAL 8.8
CERT/CC: CVE-2023-1018 TPM2.0 Module Library Elevation of Privilege Vulnerability |
|
CVE-2023-1017
CRITICAL 8.8
CERT/CC: CVE-2023-1017 TPM2.0 Module Library Elevation of Privilege Vulnerability |
|
CVE-2023-20954
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2023-20951
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-33256
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-33213
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2021-43529
CRITICAL 9.8
Réseau 1 apps
Thunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. Thunderbird versions 91.3… |
|
CVE-2023-21803
CRITICAL 9.8
Windows iSCSI Discovery Service Remote Code Execution Vulnerability |
|
CVE-2023-21692
CRITICAL 9.8
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
|
CVE-2023-21690
CRITICAL 9.8
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
|
CVE-2023-21689
CRITICAL 9.8
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
|
CVE-2022-40514
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-33280
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-33243
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-33232
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-41903
CRITICAL 9.8
Réseau 1 apps
Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also ex… |
|
CVE-2023-21730
CRITICAL 7.8
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2023-21712
CRITICAL 8.1
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
|
CVE-2023-21679
CRITICAL 8.1
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability |
|
CVE-2023-21561
CRITICAL 7.8
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2023-21556
CRITICAL 8.1
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability |
|
CVE-2023-21555
CRITICAL 8.1
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability |
|
CVE-2023-21551
CRITICAL 7.8
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2023-21548
CRITICAL 8.1
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability |
|
CVE-2023-21546
CRITICAL 8.1
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability |
|
CVE-2023-21543
CRITICAL 8.1
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability |
|
CVE-2023-21535
CRITICAL 8.1
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability |
|
CVE-2022-22088
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2021-35134
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2021-35113
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2021-35097
CRITICAL
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2022-46882
CRITICAL 9.8
Réseau 1 apps
A use-after-free in WebGL extensions could have led to a potentially exploitable crash. This vulnerability affects Firefox < 107, Firefox ESR < 102.6, and Thun… |
|
CVE-2022-45406
CRITICAL 9.8
Réseau 1 apps
If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may be deleted while references to it lived on in a BaseShape. Thi… |
|
CVE-2022-34470
CRITICAL 9.8
Réseau 1 apps
Session history navigations may have led to a use-after-free and potentially exploitable crash. This vulnerability affects Firefox < 102, Firefox ESR < 91.11, … |
|
CVE-2022-31747
CRITICAL 9.8
Réseau 1 apps
Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 100 and Firefox ESR 91.9. … |
|
CVE-2022-31737
CRITICAL 9.8
Réseau 1 apps
A malicious webpage could have caused an out-of-bounds write in WebGL, leading to memory corruption and a potentially exploitable crash. This vulnerability aff… |
|
CVE-2022-31736
CRITICAL 9.8
Réseau 1 apps
A malicious website could have learned the size of a cross-origin resource that supported Range requests. This vulnerability affects Thunderbird < 91.10, Firef… |
|
CVE-2022-29917
CRITICAL 9.8
Réseau 1 apps
Mozilla developers Andrew McCreight, Gabriele Svelto, Tom Ritter and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 99 and Firefox ESR… |
|
CVE-2022-26486
CRITICAL 9.6
KEV
Réseau 1 apps
An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abu… |
|
CVE-2022-26384
CRITICAL 9.6
Réseau 1 apps
If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a l… |
|
CVE-2022-22759
CRITICAL 9.6
Réseau 1 apps
If a document created a sandboxed iframe without <code>allow-scripts</code>, and subsequently appended an element to the iframe's document that e.g. had a Java… |
|
CVE-2021-4140
CRITICAL 10.0
Réseau 1 apps
It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, … |
|
CVE-2021-4129
CRITICAL 9.8
Réseau 1 apps
Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, and Masayuki Nakano reported memory safe… |
|
CVE-2021-4127
CRITICAL 9.8
Réseau 1 apps
An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerability affects Thunderbird < 78.9 and… |