Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

8 497 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2026-34337
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2026-34334
HIGH 7.8

Windows TCP/IP Elevation of Privilege Vulnerability

CVE-2026-34333
HIGH 7.8

Windows Win32k Elevation of Privilege Vulnerability

CVE-2026-34332
HIGH 8.0

Windows Kernel-Mode Driver Remote Code Execution Vulnerability

CVE-2026-34331
HIGH 7.0

Win32k Elevation of Privilege Vulnerability

CVE-2026-34329
HIGH 8.8

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2026-33839
HIGH 7.0

Win32k Elevation of Privilege Vulnerability

CVE-2026-33838
HIGH 7.8

Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability

CVE-2026-33837
HIGH 7.8

Windows TCP/IP Local Elevation of Privilege Vulnerability

CVE-2026-33835
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2026-33834
HIGH 7.8

Windows Event Logging Service Elevation of Privilege Vulnerability

CVE-2026-32209
HIGH 4.4

Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability

CVE-2026-32161
CRITICAL 7.5

Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability

CVE-2026-21530
HIGH 6.7

Windows Rich Text Edit Elevation of Privilege Vulnerability

CVE-2026-7210
HIGH 7.5 Réseau 1 apps

`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger has…

CVE-2026-8094
CRITICAL 9.8 Réseau 1 apps

Other issue in the WebRTC component. This vulnerability was fixed in Firefox ESR 140.10.2 and Thunderbird 140.10.2.

CVE-2026-8093
HIGH 8.1 Réseau 1 apps

Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these cou…

CVE-2026-8092
HIGH 8.1 Réseau 1 apps

Memory safety bugs present in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we pr…

CVE-2026-8091
CRITICAL 9.8 Réseau 1 apps

Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, Thund…

CVE-2026-8090
HIGH 7.3 Réseau 1 apps

Use-after-free in the DOM: Networking component. This vulnerability was fixed in Firefox 150.0.2, Firefox ESR 140.10.2, Firefox ESR 115.35.2, Thunderbird 150.0…

CVE-2026-7324
HIGH 7.3 Réseau 1 apps

Memory safety bugs present in Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these…

CVE-2026-7323
HIGH 7.3 Réseau 1 apps

Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that wit…

CVE-2026-7322
HIGH 7.3 Réseau 1 apps

Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that wit…

CVE-2026-7321
HIGH 9.6 Réseau 1 apps

Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox …

CVE-2026-7320
HIGH 7.5 Réseau 1 apps

Information disclosure due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1…

CVE-2026-3087
HIGH 7.5 Réseau 1 apps

If `shutil.unpack_archive()` is given a ZIP archive with an absolute Windows path containing a drive (`C:\\...`) then the archive will be extracted outside the…

CVE-2026-6786
HIGH 7.5 Réseau 1 apps

Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruptio…

CVE-2026-6785
HIGH 7.5 Réseau 1 apps

Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence…

CVE-2026-6019
MEDIUM 6.1 Réseau 1 apps

http.cookies.Morsel.js_output() returns an inline <script> snippet and only escapes " for JavaScript string context. It does not neutralize the HTML parser-sen…

CVE-2026-6784
HIGH 7.5 Réseau 1 apps

Memory safety bugs present in Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2026-6783
MEDIUM 5.3 Réseau 1 apps

Incorrect boundary conditions, integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6782
HIGH 7.5 Réseau 1 apps

Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6781
HIGH 7.5 Réseau 1 apps

Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6780
HIGH 7.5 Réseau 1 apps

Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6779
MEDIUM 5.3 Réseau 1 apps

Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6778
MEDIUM 5.3 Réseau 1 apps

Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6777
MEDIUM 5.3 Réseau 1 apps

Other issue in the Networking: DNS component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6776
HIGH 7.8 Local 1 apps

Incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunde…

CVE-2026-6775
MEDIUM 5.3 Réseau 1 apps

Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6774
MEDIUM 5.4 Réseau 1 apps

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6773
HIGH 7.5 Réseau 1 apps

Denial-of-service due to integer overflow in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6772
HIGH 7.5 Réseau 1 apps

Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbi…

CVE-2026-6771
CRITICAL 9.8 Réseau 1 apps

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

CVE-2026-6770
MEDIUM 6.5 Réseau 1 apps

Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

CVE-2026-6769
HIGH 8.8 Réseau 1 apps

Privilege escalation in the Debugger component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

CVE-2026-6768
CRITICAL 9.8 Réseau 1 apps

Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

CVE-2026-6767
MEDIUM 5.3 Réseau 1 apps

Other issue in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunde…

CVE-2026-6766
HIGH 7.5 Réseau 1 apps

Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderb…

CVE-2026-6765
MEDIUM 5.3 Réseau 1 apps

Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

CVE-2026-6764
MEDIUM 6.5 Réseau 1 apps

Incorrect boundary conditions in the DOM: Device Interfaces component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Th…