Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

11 308 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2025-8030
HIGH 8.1 Réseau 1 apps

Insufficient escaping in the “Copy as cURL” feature could potentially be used to trick a user into executing unexpected code. This vulnerability was fixed in F…

CVE-2025-8029
HIGH 8.1 Réseau 1 apps

Thunderbird executed `javascript:` URLs when used in `object` and `embed` tags. This vulnerability was fixed in Firefox 141, Firefox ESR 128.13, Firefox ESR 14…

CVE-2025-38352
HIGH 7.8 KEV Local

In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If…

CVE-2025-38349
HIGH 7.8 Local

In the Linux kernel, the following vulnerability has been resolved: eventpoll: don't decrement ep refcount while still holding the ep mutex Jann Horn points …

CVE-2025-53817
HIGH 7.5 Réseau 1 apps

7-Zip is a file archiver with a high compression ratio. 7-Zip supports extracting from Compound Documents. Prior to version 25.0.0, a null pointer dereference …

CVE-2025-53816
HIGH 7.5 Réseau 1 apps

7-Zip is a file archiver with a high compression ratio. Zeroes written outside heap buffer in RAR5 handler may lead to memory corruption and denial of service …

CVE-2025-6558
HIGH 8.8 KEV Réseau

Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox…

CVE-2025-6965
HIGH 7.7 Réseau

There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead…

CVE-2025-7425
HIGH 7.8 Local

A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as…

CVE-2025-7424
HIGH 7.5 Réseau

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML t…

CVE-2025-48384
HIGH 8.0 KEV Réseau 2 apps

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to int…

CVE-2025-38236
HIGH 7.8 Local

In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs. Jann Horn reported a use-after-free i…

CVE-2025-49753
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49744
HIGH 7.0

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-49742
HIGH 7.8

Windows Graphics Component Remote Code Execution Vulnerability

CVE-2025-49740
HIGH 8.8

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2025-49733
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2025-49732
HIGH 7.8

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-49730
HIGH 7.8

Microsoft Windows QoS Scheduler Driver Elevation of Privilege Vulnerability

CVE-2025-49729
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49727
HIGH 7.0

Win32k Elevation of Privilege Vulnerability

CVE-2025-49726
HIGH 7.8

Windows Notification Elevation of Privilege Vulnerability

CVE-2025-49725
HIGH 7.8

Windows Notification Elevation of Privilege Vulnerability

CVE-2025-49724
HIGH 8.8

Windows Connected Devices Platform Service Remote Code Execution Vulnerability

CVE-2025-49723
HIGH 8.8

Windows StateRepository API Server file Tampering Vulnerability

CVE-2025-49722
HIGH 5.7

Windows Print Spooler Denial of Service Vulnerability

CVE-2025-49721
HIGH 7.8

Windows Fast FAT File System Driver Elevation of Privilege Vulnerability

CVE-2025-49716
HIGH 7.5

Windows Netlogon Denial of Service Vulnerability

CVE-2025-49694
HIGH 7.8

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-49693
HIGH 7.8

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-49691
HIGH 8.0

Windows Miracast Wireless Display Remote Code Execution Vulnerability

CVE-2025-49690
HIGH 7.4

Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability

CVE-2025-49689
HIGH 7.8

Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability

CVE-2025-49688
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49687
HIGH 8.8

Windows Input Method Editor (IME) Elevation of Privilege Vulnerability

CVE-2025-49686
HIGH 7.8

Windows TCP/IP Driver Elevation of Privilege Vulnerability

CVE-2025-49685
HIGH 7.0

Windows Search Service Elevation of Privilege Vulnerability

CVE-2025-49684
HIGH 5.5

Windows Storage Port Driver Information Disclosure Vulnerability

CVE-2025-49683
HIGH 7.8

Microsoft Virtual Hard Disk Remote Code Execution Vulnerability

CVE-2025-49682
HIGH 7.3

Windows Media Elevation of Privilege Vulnerability

CVE-2025-49681
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-49680
HIGH 7.3

Windows Performance Recorder (WPR) Denial of Service Vulnerability

CVE-2025-49679
HIGH 7.8

Windows Shell Elevation of Privilege Vulnerability

CVE-2025-49678
HIGH 7.0

NTFS Elevation of Privilege Vulnerability

CVE-2025-49677
HIGH 7.0

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-49676
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49675
HIGH 7.8

Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability

CVE-2025-49674
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49673
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49672
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability