Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

2 263 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2026-43754
MEDIUM 5.5 Local

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. …

CVE-2026-43753
MEDIUM 4.6 Physique

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, …

CVE-2026-43744
MEDIUM 5.5 Local

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 1…

CVE-2026-43739
MEDIUM 5.5 Local

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionO…

CVE-2026-43738
MEDIUM 5.5 Local

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted asset…

CVE-2026-43714
MEDIUM 5.5 Local

The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tah…

CVE-2026-43665
MEDIUM 5.5 Local

This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A local attacker may be able to …

CVE-2026-28932
MEDIUM 5.5 Local

A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Son…

CVE-2026-28900
MEDIUM 5.5 Local

A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP arch…

CVE-2026-28849
MEDIUM 5.5 Local

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP archive may bypass Ga…

CVE-2026-20672
MEDIUM 5.5 Local

An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may be a…

CVE-2026-16403
MEDIUM 6.5 Réseau 1 apps

Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

CVE-2026-58638
MEDIUM 6.0 Local

Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

CVE-2026-58547
MEDIUM 5.5 Local

Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally.

CVE-2026-58546
MEDIUM 6.5 Réseau

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-58545
MEDIUM 5.5 Local

Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.

CVE-2026-58543
MEDIUM 6.3 Physique

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevat…

CVE-2026-58539
MEDIUM 6.5 Réseau

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-58535
MEDIUM 6.5 Réseau

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-58533
MEDIUM 6.5 Réseau

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-58528
MEDIUM 6.8 Physique

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-57982
MEDIUM 6.5 Réseau

Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network.

CVE-2026-57095
MEDIUM 6.2 Local

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an unauthorized attacker to elevate privileges locally.

CVE-2026-57085
MEDIUM 5.5 Local

Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

CVE-2026-57084
MEDIUM 5.5 Local

Use of uninitialized resource in Windows File Explorer allows an unauthorized attacker to disclose information locally.

CVE-2026-57083
MEDIUM 5.5 Local

Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker to disclose information locally.

CVE-2026-56649
MEDIUM 5.9 Réseau

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to e…

CVE-2026-56184
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-56168
MEDIUM 6.5 Réseau

Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.

CVE-2026-54126
MEDIUM 6.5 Réseau

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-50690
MEDIUM 5.5 Local

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

CVE-2026-50684
MEDIUM 4.8 Réseau

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attac…

CVE-2026-50681
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

CVE-2026-50668
MEDIUM 6.8 Physique

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-50661
MEDIUM 6.1 Physique

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

CVE-2026-50504
MEDIUM 6.5 Réseau

Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

CVE-2026-50497
MEDIUM 6.5 Réseau

Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.

CVE-2026-50495
MEDIUM 6.1 Local

Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

CVE-2026-50492
MEDIUM 6.8 Physique

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with a physical attack.

CVE-2026-50485
MEDIUM 4.5 Réseau adjacent

Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.

CVE-2026-50483
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an authorized attacker to disclose information locally.

CVE-2026-50475
MEDIUM 5.5 Local

Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.

CVE-2026-50473
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

CVE-2026-50456
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

CVE-2026-50455
MEDIUM 5.5 Local

Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.

CVE-2026-50453
MEDIUM 6.1 Physique

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-50445
MEDIUM 6.5 Réseau

Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.

CVE-2026-50442
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

CVE-2026-50437
MEDIUM 5.5 Local

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

CVE-2026-50434
MEDIUM 5.5 Local

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.