Vulnérabilités
Vulnérabilités des apps suivies
8 497 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2025-33057
HIGH 6.5
Windows Local Security Authority (LSA) Denial of Service Vulnerability |
|
CVE-2025-33056
HIGH 7.5
Windows Local Security Authority (LSA) Denial of Service Vulnerability |
|
CVE-2025-33055
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33053
HIGH 8.8
KEV
Internet Shortcut Files Remote Code Execution Vulnerability |
|
CVE-2025-33052
HIGH 5.5
Windows DWM Core Library Information Disclosure Vulnerability |
|
CVE-2025-33050
HIGH 7.5
DHCP Server Service Denial of Service Vulnerability |
|
CVE-2025-32725
HIGH 7.5
DHCP Server Service Denial of Service Vulnerability |
|
CVE-2025-32724
HIGH 7.5
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability |
|
CVE-2025-32722
HIGH 5.5
Windows Storage Port Driver Information Disclosure Vulnerability |
|
CVE-2025-32721
HIGH 7.3
Windows Recovery Driver Elevation of Privilege Vulnerability |
|
CVE-2025-32720
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-32719
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-32718
HIGH 7.8
Windows SMB Client Elevation of Privilege Vulnerability |
|
CVE-2025-32716
HIGH 7.8
Windows Media Elevation of Privilege Vulnerability |
|
CVE-2025-32715
HIGH 6.5
Remote Desktop Protocol Client Information Disclosure Vulnerability |
|
CVE-2025-32714
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-32713
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-32712
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-32710
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-3052
HIGH 6.7
Cert CC: CVE-2025-3052 InsydeH2O Secure Boot Bypass |
|
CVE-2025-29828
CRITICAL 8.1
Windows Schannel Remote Code Execution Vulnerability |
|
CVE-2025-24069
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-24068
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-24065
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-5272
HIGH 7.3
Réseau 1 apps
Memory safety bugs present in Firefox 138 and Thunderbird 138. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-5269
HIGH 8.1
Réseau 1 apps
Memory safety bug present in Firefox ESR 128.10, and Thunderbird 128.10. This bug showed evidence of memory corruption and we presume that with enough effort t… |
|
CVE-2025-5268
HIGH 8.1
Réseau 1 apps
Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10. Some of these bugs showed evidence of memory corruption… |
|
CVE-2025-5262
HIGH 7.5
Réseau 1 apps
A double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder for WebRTC. This could have caused memo… |
|
CVE-2025-4919
HIGH 8.8
Réseau 1 apps
An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability was fixed in Firefox 1… |
|
CVE-2025-4918
CRITICAL 9.8
Réseau 1 apps
An attacker was able to perform an out-of-bounds read or write on a JavaScript `Promise` object. This vulnerability was fixed in Firefox 138.0.4, Firefox ESR 1… |
|
CVE-2025-3932
MEDIUM 6.5
Réseau 1 apps
It was possible to craft an email that showed a tracking link as an attachment. If the user attempted to open the attachment, Thunderbird automatically accesse… |
|
CVE-2025-3909
HIGH 8.1
Réseau 1 apps
Thunderbird's handling of the X-Mozilla-External-Attachment-URL header can be exploited to execute JavaScript in the file:/// context. By crafting a nested ema… |
|
CVE-2025-3875
HIGH 7.5
Réseau 1 apps
Thunderbird parses addresses in a way that can allow sender spoofing in case the server allows an invalid From address to be used. For example, if the From hea… |
|
CVE-2025-30388
HIGH 7.8
Local 1 apps
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. |
|
CVE-2025-32709
HIGH 7.8
KEV
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2025-32707
HIGH 7.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2025-32706
HIGH 7.8
KEV
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-32701
HIGH 7.8
KEV
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-30400
HIGH 7.8
KEV
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-30397
HIGH 7.5
KEV
Scripting Engine Memory Corruption Vulnerability |
|
CVE-2025-30394
HIGH 5.9
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability |
|
CVE-2025-30385
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-29974
HIGH 5.7
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2025-29971
HIGH 7.5
Web Threat Defense (WTD.sys) Denial of Service Vulnerability |
|
CVE-2025-29970
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-29969
HIGH 7.5
MS-EVEN RPC Remote Code Execution Vulnerability |
|
CVE-2025-29968
HIGH 6.5
Active Directory Certificate Services (AD CS) Denial of Service Vulnerability |
|
CVE-2025-29967
CRITICAL 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2025-29966
CRITICAL 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2025-29964
HIGH 8.8
Windows Media Remote Code Execution Vulnerability |