Vulnérabilités
Vulnérabilités des apps suivies
8 497 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2025-26667
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26666
HIGH 7.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-26665
HIGH 7.0
Windows upnphost.dll Elevation of Privilege Vulnerability |
|
CVE-2025-26664
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26663
CRITICAL 8.1
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2025-26652
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-26651
HIGH 6.5
Windows Local Session Manager (LSM) Denial of Service Vulnerability |
|
CVE-2025-26649
HIGH 7.0
Windows Secure Channel Elevation of Privilege Vulnerability |
|
CVE-2025-26648
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-26647
HIGH 8.8
Windows Kerberos Elevation of Privilege Vulnerability |
|
CVE-2025-26644
HIGH 5.1
Windows Hello Spoofing Vulnerability |
|
CVE-2025-26641
HIGH 7.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2025-26640
HIGH 7.0
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-26639
HIGH 7.8
Windows USB Print Driver Elevation of Privilege Vulnerability |
|
CVE-2025-26637
HIGH 6.8
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2025-26635
HIGH 6.5
Windows Hello Security Feature Bypass Vulnerability |
|
CVE-2025-24074
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24073
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24062
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24060
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24058
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-21222
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21221
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21205
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21204
HIGH 7.8
Windows Process Activation Elevation of Privilege Vulnerability |
|
CVE-2025-21203
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-21197
HIGH 6.5
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2025-21191
HIGH 7.0
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability |
|
CVE-2025-21174
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-31334
MEDIUM 6.8
Réseau 1 apps
Issue that bypasses the "Mark of the Web" security warning function for files when opening a symbolic link that points to an executable file exists in WinRAR v… |
|
CVE-2025-3034
HIGH 8.1
Réseau 1 apps
Memory safety bugs present in Firefox 136 and Thunderbird 136. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-3033
HIGH 7.7
Local 1 apps
After selecting a malicious Windows `.url` shortcut from the local filesystem, an unexpected file could be uploaded. *This bug only affects Firefox on Window… |
|
CVE-2025-3032
HIGH 7.4
Réseau 1 apps
Leaking of file descriptors from the fork server to web content processes could allow for privilege escalation attacks. This vulnerability was fixed in Firefox… |
|
CVE-2025-3031
MEDIUM 6.5
Réseau 1 apps
An attacker could read 32 bits of values spilled onto the stack in a JIT compiled function. This vulnerability was fixed in Firefox 137 and Thunderbird 137. |
|
CVE-2025-3030
HIGH 8.1
Réseau 1 apps
Memory safety bugs present in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8. Some of these bugs showed evidence of memory corruption a… |
|
CVE-2025-3029
HIGH 7.3
Réseau 1 apps
A crafted URL containing specific Unicode characters could have hidden the true origin of the page, resulting in a potential spoofing attack. This vulnerabilit… |
|
CVE-2025-3028
MEDIUM 6.5
Réseau 1 apps
JavaScript code running while transforming a document with the XSLTProcessor could lead to a use-after-free. This vulnerability was fixed in Firefox 137, Firef… |
|
CVE-2025-26633
HIGH 7.0
KEV
Local
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally. |
|
CVE-2025-26645
CRITICAL 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2025-26634
HIGH 7.5
Windows Core Messaging Elevation of Privileges Vulnerability |
|
CVE-2025-25008
HIGH 7.1
Windows Server Elevation of Privilege Vulnerability |
|
CVE-2025-24997
HIGH 4.4
DirectX Graphics Kernel File Denial of Service Vulnerability |
|
CVE-2025-24996
HIGH 6.5
NTLM Hash Disclosure Spoofing Vulnerability |
|
CVE-2025-24995
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2025-24994
HIGH 7.3
Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability |
|
CVE-2025-24993
HIGH 7.8
KEV
Windows NTFS Remote Code Execution Vulnerability |
|
CVE-2025-24992
HIGH 5.5
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2025-24991
HIGH 5.5
KEV
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2025-24988
HIGH 6.6
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-24987
HIGH 6.6
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |