Vulnérabilités
Vulnérabilités des apps suivies
25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 946
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-09-29
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-40854
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS… |
|
CVE-2024-40839
LOW 2.4
This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device … |
|
CVE-2024-40771
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, ma… |
|
CVE-2024-27856
The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tv… |
|
CVE-2025-0448
Inappropriate implementation in Compositing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (… |
|
CVE-2025-0447
Inappropriate implementation in Navigation in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to perform privilege escalation via a crafted HTML… |
|
CVE-2025-0446
Inappropriate implementation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gest… |
|
CVE-2025-0443
Insufficient data validation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gest… |
|
CVE-2025-0442
Inappropriate implementation in Payments in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gestur… |
|
CVE-2025-0441
Inappropriate implementation in Fenced Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to obtain potentially sensitive information fro… |
|
CVE-2025-0440
Inappropriate implementation in Fullscreen in Google Chrome on Windows prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HT… |
|
CVE-2025-0439
Race in Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing … |
|
CVE-2025-0438
Stack buffer overflow in Tracing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit stack corruption via a crafted HTML p… |
|
CVE-2025-0437
Out of bounds read in Metrics in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.… |
|
CVE-2025-0436
Integer overflow in Skia in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chr… |
|
CVE-2025-0435
Inappropriate implementation in Navigation in Google Chrome on Android prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HT… |
|
CVE-2025-0434
Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p… |
|
CVE-2025-21402
HIGH 7.8
Microsoft Office OneNote Remote Code Execution Vulnerability |
|
CVE-2025-21362
Microsoft Excel Remote Code Execution Vulnerability |
|
CVE-2025-21361
Microsoft Outlook Remote Code Execution Vulnerability |
|
CVE-2025-21357
Microsoft Outlook Remote Code Execution Vulnerability |
|
CVE-2025-21338
HIGH · éditeur
GDI+ Remote Code Execution Vulnerability |
|
CVE-2025-21335
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21417
HIGH · éditeur
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21413
HIGH · éditeur
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21411
HIGH · éditeur
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21409
HIGH · éditeur
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21389
HIGH · éditeur
Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability |
|
CVE-2025-21382
HIGH · éditeur
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-21378
HIGH · éditeur
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2025-21374
HIGH · éditeur
Windows CSC Service Information Disclosure Vulnerability |
|
CVE-2025-21372
HIGH · éditeur
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-21370
HIGH · éditeur
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability |
|
CVE-2025-21343
HIGH · éditeur
Windows Web Threat Defense User Service Information Disclosure Vulnerability |
|
CVE-2025-21341
HIGH · éditeur
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21340
HIGH · éditeur
Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
|
CVE-2025-21339
HIGH · éditeur
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21336
HIGH · éditeur
Windows Cryptographic Information Disclosure Vulnerability |
|
CVE-2025-21334
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21333
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21332
HIGH · éditeur
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21331
HIGH · éditeur
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-21330
HIGH · éditeur
Windows Remote Desktop Services Denial of Service Vulnerability |
|
CVE-2025-21329
HIGH · éditeur
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21328
HIGH · éditeur
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21327
HIGH · éditeur
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21326
HIGH · éditeur
Internet Explorer Remote Code Execution Vulnerability |
|
CVE-2025-21325
HIGH · éditeur
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2025-21324
HIGH · éditeur
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21323
HIGH · éditeur
Windows Kernel Memory Information Disclosure Vulnerability |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.