Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 946
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-09-29

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 946 entrées
CVE
CVE-2024-40854
MEDIUM 5.5

A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS…

CVE-2024-40839
LOW 2.4

This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device …

CVE-2024-40771
HIGH 7.8

The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, ma…

CVE-2024-27856
HIGH 7.8

The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tv…

CVE-2025-0448
MEDIUM 4.3

Inappropriate implementation in Compositing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (…

CVE-2025-0447
HIGH 8.8

Inappropriate implementation in Navigation in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to perform privilege escalation via a crafted HTML…

CVE-2025-0446
MEDIUM 4.3

Inappropriate implementation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gest…

CVE-2025-0443
HIGH 8.8

Insufficient data validation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gest…

CVE-2025-0442
MEDIUM 6.5

Inappropriate implementation in Payments in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gestur…

CVE-2025-0441
MEDIUM 6.5

Inappropriate implementation in Fenced Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to obtain potentially sensitive information fro…

CVE-2025-0440
MEDIUM 6.5

Inappropriate implementation in Fullscreen in Google Chrome on Windows prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HT…

CVE-2025-0439
MEDIUM 6.5

Race in Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing …

CVE-2025-0438
HIGH 8.8

Stack buffer overflow in Tracing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit stack corruption via a crafted HTML p…

CVE-2025-0437
HIGH 8.8

Out of bounds read in Metrics in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.…

CVE-2025-0436
HIGH 8.8

Integer overflow in Skia in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chr…

CVE-2025-0435
MEDIUM 6.5

Inappropriate implementation in Navigation in Google Chrome on Android prior to 132.0.6834.83 allowed a remote attacker to perform UI spoofing via a crafted HT…

CVE-2025-0434
HIGH 8.8

Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

CVE-2025-21402
HIGH 7.8

Microsoft Office OneNote Remote Code Execution Vulnerability

CVE-2025-21362
HIGH 8.4

Microsoft Excel Remote Code Execution Vulnerability

CVE-2025-21361
HIGH 7.8

Microsoft Outlook Remote Code Execution Vulnerability

CVE-2025-21357
MEDIUM 6.7

Microsoft Outlook Remote Code Execution Vulnerability

CVE-2025-21338
HIGH · éditeur

GDI+ Remote Code Execution Vulnerability

CVE-2025-21335
HIGH 7.8 KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21417
HIGH · éditeur

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21413
HIGH · éditeur

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21411
HIGH · éditeur

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21409
HIGH · éditeur

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21389
HIGH · éditeur

Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability

CVE-2025-21382
HIGH · éditeur

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-21378
HIGH · éditeur

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2025-21374
HIGH · éditeur

Windows CSC Service Information Disclosure Vulnerability

CVE-2025-21372
HIGH · éditeur

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-21370
HIGH · éditeur

Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

CVE-2025-21343
HIGH · éditeur

Windows Web Threat Defense User Service Information Disclosure Vulnerability

CVE-2025-21341
HIGH · éditeur

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21340
HIGH · éditeur

Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability

CVE-2025-21339
HIGH · éditeur

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21336
HIGH · éditeur

Windows Cryptographic Information Disclosure Vulnerability

CVE-2025-21334
HIGH · éditeur KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21333
HIGH · éditeur KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21332
HIGH · éditeur

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21331
HIGH · éditeur

Windows Installer Elevation of Privilege Vulnerability

CVE-2025-21330
HIGH · éditeur

Windows Remote Desktop Services Denial of Service Vulnerability

CVE-2025-21329
HIGH · éditeur

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21328
HIGH · éditeur

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21327
HIGH · éditeur

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21326
HIGH · éditeur

Internet Explorer Remote Code Execution Vulnerability

CVE-2025-21325
HIGH · éditeur

Windows Secure Kernel Mode Elevation of Privilege Vulnerability

CVE-2025-21324
HIGH · éditeur

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21323
HIGH · éditeur

Windows Kernel Memory Information Disclosure Vulnerability

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa