Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 762 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 762
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-09-29

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 762 entrées
CVE
CVE-2025-60708
HIGH · éditeur

Storvsp.sys Driver Denial of Service Vulnerability

CVE-2025-60707
HIGH · éditeur

Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability

CVE-2025-60706
HIGH · éditeur

Windows Hyper-V Information Disclosure Vulnerability

CVE-2025-60705
HIGH · éditeur

Windows Client-Side Caching Elevation of Privilege Vulnerability

CVE-2025-60704
HIGH · éditeur

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2025-60703
HIGH · éditeur

Windows Remote Desktop Services Elevation of Privilege Vulnerability

CVE-2025-59515
HIGH · éditeur

Windows Broadcast DVR User Service Elevation of Privilege Vulnerability

CVE-2025-59514
HIGH · éditeur

Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability

CVE-2025-59513
HIGH · éditeur

Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability

CVE-2025-59512
HIGH · éditeur

Customer Experience Improvement Program (CEIP) Elevation of Privilege Vulnerability

CVE-2025-59511
HIGH · éditeur

Windows WLAN Service Elevation of Privilege Vulnerability

CVE-2025-59510
HIGH · éditeur

Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability

CVE-2025-59509
HIGH · éditeur

Windows Speech Recognition Information Disclosure Vulnerability

CVE-2025-59508
HIGH · éditeur

Windows Speech Recognition Elevation of Privilege Vulnerability

CVE-2025-59507
HIGH · éditeur

Windows Speech Runtime Elevation of Privilege Vulnerability

CVE-2025-59506
HIGH · éditeur

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CVE-2025-59505
HIGH · éditeur

Windows Smart Card Reader Elevation of Privilege Vulnerability

CVE-2025-12729
MEDIUM 4.2

Inappropriate implementation in Omnibox in Google Chrome on Android prior to 142.0.7444.137 allowed a remote attacker who convinced a user to engage in specifi…

CVE-2025-12728
MEDIUM 4.2

Inappropriate implementation in Omnibox in Google Chrome on Android prior to 142.0.7444.137 allowed a remote attacker who convinced a user to engage in specifi…

CVE-2025-12727
HIGH 8.8

Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

CVE-2025-12726
HIGH 7.5

Inappropriate implementation in Views in Google Chrome on Windows prior to 142.0.7444.137 allowed a remote attacker who had compromised the renderer process to…

CVE-2025-12725
HIGH 8.8

Out of bounds read in WebGPU in Google Chrome on Android prior to 142.0.7444.137 allowed a remote attacker to perform an out of bounds memory write via a craft…

CVE-2025-12447
MEDIUM 4.2

Incorrect security UI in Omnibox in Google Chrome on Android prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI ges…

CVE-2025-12446
MEDIUM 4.2

Incorrect security UI in SplitView in Google Chrome prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to …

CVE-2025-12445
MEDIUM 6.5

Policy bypass in Extensions in Google Chrome prior to 142.0.7444.59 allowed an attacker who convinced a user to install a malicious extension to leak cross-ori…

CVE-2025-12444
MEDIUM 4.2

Incorrect security UI in Fullscreen UI in Google Chrome prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI gestures…

CVE-2025-12443
MEDIUM 4.3

Out of bounds read in WebXR in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. …

CVE-2025-12441
MEDIUM 4.3

Out of bounds read in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Ch…

CVE-2025-12440
MEDIUM 5.3

Inappropriate implementation in Autofill in Google Chrome prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI gestur…

CVE-2025-12439
MEDIUM 5.5

Inappropriate implementation in App-Bound Encryption in Google Chrome on Windows prior to 142.0.7444.59 allowed a local attacker to obtain potentially sensitiv…

CVE-2025-12438
HIGH 8.8

Use after free in Ozone in Google Chrome on Linux and ChromeOS prior to 142.0.7444.59 allowed a remote attacker to potentially exploit object corruption via a …

CVE-2025-12437
HIGH 7.5

Use after free in PageInfo in Google Chrome prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentia…

CVE-2025-12436
MEDIUM 5.9

Policy bypass in Extensions in Google Chrome prior to 142.0.7444.59 allowed an attacker who convinced a user to install a malicious extension to obtain potenti…

CVE-2025-12435
MEDIUM 5.4

Incorrect security UI in Omnibox in Google Chrome on Android prior to 142.0.7444.59 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (…

CVE-2025-12434
MEDIUM 4.2

Race in Storage in Google Chrome on Windows prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform …

CVE-2025-12433
MEDIUM 4.3

Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform out of bounds memory access via a crafted HTML …

CVE-2025-12432
HIGH 8.8

Race in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security…

CVE-2025-12431
MEDIUM 6.5

Inappropriate implementation in Extensions in Google Chrome prior to 142.0.7444.59 allowed an attacker who convinced a user to install a malicious extension to…

CVE-2025-12430
HIGH 7.5

Object lifecycle issue in Media in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium sec…

CVE-2025-12429
HIGH 8.8

Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (…

CVE-2025-12428
HIGH 8.8

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium secur…

CVE-2025-12911
MEDIUM 4.3

Inappropriate implementation in Permissions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (…

CVE-2025-12910
MEDIUM 6.2

Inappropriate implementation in Passkeys in Google Chrome prior to 140.0.7339.80 allowed a local attacker to obtain potentially sensitive information via debug…

CVE-2025-12909
MEDIUM 5.3

Insufficient policy enforcement in Devtools in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to leak cross-origin data via Devtools. (Chromium…

CVE-2025-12908
MEDIUM 5.4

Insufficient validation of untrusted input in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform domain spoofing…

CVE-2025-12907
HIGH 8.8

Insufficient validation of untrusted input in Devtools in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to execute arbitrary code via user act…

CVE-2025-12906
MEDIUM 5.4

Inappropriate implementation in Permissions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (…

CVE-2025-12905
MEDIUM 5.4

Inappropriate implementation in Downloads in Google Chrome on Windows prior to 140.0.7339.80 allowed a remote attacker to bypass Mark of the Web via a crafted …

CVE-2025-12036
HIGH 8.8

Out of bounds memory access in V8 in Google Chrome prior to 141.0.7390.122 allowed a remote attacker to perform out of bounds memory access via a crafted HTML …

CVE-2025-11756
HIGH 8.8

Use after free in Safe Browsing in Google Chrome prior to 141.0.7390.107 allowed a remote attacker who had compromised the renderer process to potentially perf…

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa