Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

15 601 CVE touchent une app ou un OS suivi (Élevé, toutes plateformes). 294 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
15 601
Activement exploitées
294
Fenêtre de publication
2004-07-27 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

15 601 entrées Élevé Tout effacer
CVE
CVE-2026-70583
HIGH · éditeur

Windows Core Messaging Elevation of Privilege Vulnerability

CVE-2026-69611
HIGH · éditeur

Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability

CVE-2026-69549
HIGH · éditeur

Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability

CVE-2026-69516
HIGH · éditeur

Connected Devices Platform Service (Cdpsvc) Elevation of Privilege Vulnerability

CVE-2026-69498
HIGH · éditeur

Windows Win32k Elevation of Privilege Vulnerability

CVE-2026-69485
HIGH · éditeur

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2026-69480
HIGH · éditeur

Windows Partition Management Driver Elevation of Privilege Vulnerability

CVE-2026-69478
HIGH · éditeur

Windows Device Association Service Elevation of Privilege Vulnerability

CVE-2026-69459
HIGH · éditeur

Windows Power Dependency Coordinator Elevation of Privilege Vulnerability

CVE-2026-69401
HIGH · éditeur

Audio Video Control Transport Protocol Elevation of Privilege Vulnerability

CVE-2026-69384
HIGH · éditeur

Virtual Hard Disk (VHD) Miniport Driver Denial of Service Vulnerability

CVE-2026-69365
HIGH · éditeur

Microsoft Local Security Authority (LSA) Server Elevation of Privilege Vulnerability

CVE-2026-69359
HIGH · éditeur

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2026-69358
HIGH · éditeur

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2026-69303
HIGH · éditeur

Push Message Routing Service Information Disclosure Vulnerability

CVE-2026-68850
HIGH · éditeur

Microsoft Account Elevation of Privilege Vulnerability

CVE-2026-62744
HIGH · éditeur

Microsoft Windows Media Foundation Remote Code Execution Vulnerability

CVE-2026-56198
HIGH · éditeur

Microsoft Trace Data Helper Elevation of Privilege Vulnerability

CVE-2026-85053
HIGH 8.8

Improper resource exposure in CacheStorage in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a…

CVE-2026-85051
HIGH 8.8

Type confusion in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML…

CVE-2026-85049
HIGH 8.8

Use after free in Skia in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. …

CVE-2026-85048
HIGH 8.3

Use after free in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to execute arbitrary c…

CVE-2026-85046
HIGH 8.8 KEV

Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (C…

CVE-2026-85045
HIGH 7.5

Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (C…

CVE-2026-84351
HIGH 8.3

Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbi…

CVE-2026-84350
HIGH 8.8

Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside th…

CVE-2026-84349
HIGH 8.3

Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code …

CVE-2026-84347
HIGH 8.8

Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page…

CVE-2026-84335
HIGH 8.3

Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged so…

CVE-2026-84334
HIGH 8.1

Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sand…

CVE-2026-84326
HIGH 8.8

Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

CVE-2026-84642
HIGH 7.5

The values of the mail.allowed_attachment_hostnames advanced config setting were used in a regular expression without escaping. For some possible valid hostnam…

CVE-2026-84641
HIGH 7.5

A malicious IMAP server can trigger use-after-free and heap-memory disclosure by sending a crafted ID response. Heap contents can ultimately be persisted to pr…

CVE-2026-84640
HIGH 7.5

A maliciously constructed mail header could lead to a one byte read past the end of a buffer. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.…

CVE-2026-84145
HIGH 7.5

Internally found bugs present in Thunderbird 154, Thunderbird ESR 153.1 and Thunderbird ESR 140.14. Some of these bugs showed evidence of memory corruption or …

CVE-2026-84144
HIGH 7.5

Internally found bugs present in Thunderbird 154 and Thunderbird ESR 153.1. Some of these bugs showed evidence of memory corruption or another security-relevan…

CVE-2026-84132
HIGH 7.5

Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.…

CVE-2026-84131
HIGH 8.8

Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 155, Firefox ESR 115.40, Firefox ESR 140.15, Fir…

CVE-2026-84130
HIGH 7.5

Information disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.…

CVE-2026-84128
HIGH 8.8

Privilege escalation in the WebDriver BiDi component. This vulnerability was fixed in Firefox 155 and Thunderbird 155.

CVE-2026-84123
HIGH 8.8

Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, …

CVE-2026-49913
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-49744
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-49743
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-4967
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-45529
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-45518
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-45517
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-45203
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2026-45202
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa