Vulnérabilités
Vulnérabilités des apps suivies
25 758 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 758
- Activement exploitées
- 372
- Fenêtre de publication
- 1997-01-01 → 2026-09-28
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2026-25172
HIGH · éditeur
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2026-25171
HIGH · éditeur
Windows Authentication Elevation of Privilege Vulnerability |
|
CVE-2026-25170
HIGH · éditeur
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2026-25169
HIGH · éditeur
Windows Graphics Component Denial of Service Vulnerability |
|
CVE-2026-25168
HIGH · éditeur
Windows Graphics Component Denial of Service Vulnerability |
|
CVE-2026-25167
HIGH · éditeur
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2026-25165
HIGH · éditeur
Performance Counters for Windows Elevation of Privilege Vulnerability |
|
CVE-2026-24297
HIGH · éditeur
Windows Kerberos Security Feature Bypass Vulnerability |
|
CVE-2026-24296
HIGH · éditeur
Windows Device Association Service Elevation of Privilege Vulnerability |
|
CVE-2026-24295
HIGH · éditeur
Windows Device Association Service Elevation of Privilege Vulnerability |
|
CVE-2026-24292
HIGH · éditeur
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability |
|
CVE-2026-24291
HIGH · éditeur
Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability |
|
CVE-2026-24290
HIGH · éditeur
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2026-24288
HIGH · éditeur
Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
|
CVE-2026-24287
HIGH · éditeur
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2026-24283
HIGH · éditeur
Multiple UNC Provider Kernel Driver Elevation of Privilege Vulnerability |
|
CVE-2026-24282
HIGH · éditeur
Push message Routing Service Elevation of Privilege Vulnerability |
|
CVE-2026-23674
HIGH · éditeur
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2026-23673
HIGH · éditeur
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
|
CVE-2026-23672
HIGH · éditeur
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability |
|
CVE-2026-23671
HIGH · éditeur
Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability |
|
CVE-2026-23669
HIGH · éditeur
RPC Runtime Library Remote Code Execution Vulnerability |
|
CVE-2026-23668
HIGH · éditeur
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2026-23667
HIGH · éditeur
Broadcast DVR Elevation of Privilege Vulnerability |
|
CVE-2026-3545
Insufficient data validation in Navigation in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform a sandbox escape via a cra… |
|
CVE-2026-3544
Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory write via a crafted HTM… |
|
CVE-2026-3543
Inappropriate implementation in V8 in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out of bounds memory access via a … |
|
CVE-2026-3542
Inappropriate implementation in WebAssembly in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform out of bounds memory access via a cra… |
|
CVE-2026-3541
Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory read via a crafted HT… |
|
CVE-2026-3540
Inappropriate implementation in WebAudio in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform out of bounds memory access via a crafte… |
|
CVE-2026-3538
Integer overflow in Skia in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HT… |
|
CVE-2026-3537
HIGH 8.8
Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to potentially exploit heap corruption via a cr… |
|
CVE-2026-3536
Integer overflow in ANGLE in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out of bounds memory access via a crafted H… |
|
CVE-2026-0017
HIGH 7.7
In onChange of BiometricService.java, there is a possible way to enable fingerprint unlock due to a logic error in the code. This could lead to local escalatio… |
|
CVE-2026-0014
MEDIUM 6.2
In isPackageNullOrSystem of AppOpsService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local den… |
|
CVE-2026-0013
HIGH 8.4
In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy. This could lead to local esca… |
|
CVE-2026-0012
MEDIUM 6.2
In setHideSensitive of ExpandableNotificationRow.java, there is a possible contact name leak due due to a logic error in the code. This could lead to local inf… |
|
CVE-2026-0011
HIGH 8.4
In enableSystemPackageLPw of Settings.java, there is a possible way to prevent location access from working due to a logic error in the code. This could lead t… |
|
CVE-2026-0010
HIGH 8.4
In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg… |
|
CVE-2026-21385
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20434
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20428
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20427
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20426
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20425
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20422
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20421
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20420
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20406
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2026-20405
HIGH · éditeur
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.