Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 741
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 741 entrées
CVE
CVE-2026-77493
CRITICAL 9.8

Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

CVE-2026-77491
MEDIUM 5.5

Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.

CVE-2026-77489
HIGH 7.8

Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73026
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73025
CRITICAL 9.8

Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-73024
HIGH 7.8

Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-73023
HIGH 8.8

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

CVE-2026-73022
HIGH 7.0

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

CVE-2026-73021
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73020
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73019
MEDIUM 4.3

Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-73018
HIGH 8.8

Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.

CVE-2026-73017
HIGH 7.5

Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally.

CVE-2026-73016
HIGH 8.8

Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

CVE-2026-73015
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73014
HIGH 7.8

Missing authorization in Data Sharing Service Client allows an authorized attacker to elevate privileges locally.

CVE-2026-73013
HIGH 8.8

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

CVE-2026-73012
HIGH 8.8

Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges over a network.

CVE-2026-73011
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73010
CRITICAL 9.8

Use after free in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.

CVE-2026-73009
CRITICAL 9.8

Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

CVE-2026-73008
MEDIUM 5.5

Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.

CVE-2026-73007
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73006
HIGH 8.8

Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

CVE-2026-73005
HIGH 7.0

Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

CVE-2026-73004
MEDIUM 5.5

Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tampering locally.

CVE-2026-73003
HIGH 7.0

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

CVE-2026-73002
HIGH 7.8

Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73001
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-73000
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72999
MEDIUM 6.8

Out-of-bounds read in Windows USB Hub Driver allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-72997
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72996
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72995
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72994
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72993
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72992
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72991
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72990
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72989
HIGH 7.5

Use of uninitialized resource in Windows Failover Cluster allows an unauthorized attacker to disclose information over a network.

CVE-2026-72988
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-72987
HIGH 8.1

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-72986
HIGH 8.8

Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.

CVE-2026-72985
MEDIUM 6.8

Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-72983
CRITICAL 9.8

Use after free in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to execute code over a network.

CVE-2026-72982
CRITICAL 9.8

Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.

CVE-2026-72981
HIGH 8.1

Use after free in IP Helper allows an unauthorized attacker to execute code over a network.

CVE-2026-72980
MEDIUM 4.4

Uncontrolled search path element in Windows Hello allows an authorized attacker to bypass a security feature locally.

CVE-2026-72979
CRITICAL 9.8

Use after free in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

CVE-2026-72978
MEDIUM 5.9

Allocation of resources without limits or throttling in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a net…