Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 741
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 741 entrées
CVE
CVE-2026-69891
HIGH 7.0

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

CVE-2026-69890
HIGH 7.5

Use after free in Windows Virtual Trusted Platform Module allows an authorized attacker to elevate privileges locally.

CVE-2026-69889
HIGH 7.0

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69881
HIGH 7.5

Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.

CVE-2026-69878
MEDIUM 6.4

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code locally.

CVE-2026-69876
HIGH 8.0

Use after free in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network.

CVE-2026-69875
HIGH 8.0

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.

CVE-2026-69874
HIGH 8.2

Untrusted pointer dereference in Windows ALPC allows an authorized attacker to elevate privileges locally.

CVE-2026-69866
HIGH 7.0

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69864
HIGH 7.8

Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69862
MEDIUM 5.5

Out-of-bounds read in Windows Wireless Wide Area Network Service allows an authorized attacker to disclose information locally.

CVE-2026-69860
HIGH 8.8

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

CVE-2026-69859
HIGH 7.0

Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.

CVE-2026-69858
HIGH 8.1

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-69853
MEDIUM 4.7

Use of uninitialized resource in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-69852
HIGH 7.5

Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine

CVE-2026-69847
HIGH 8.0

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network.

CVE-2026-69846
HIGH 8.2

Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

CVE-2026-69845
CRITICAL 9.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

CVE-2026-69844
HIGH 7.8

Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-69841
HIGH 7.8

Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to elevate privileges locally.

CVE-2026-69839
MEDIUM 6.5

Uncaught exception in Windows iSCSI Target Service allows an authorized attacker to deny service over a network.

CVE-2026-69838
HIGH 7.0

Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

CVE-2026-69834
HIGH 7.0

Use after free in Windows ALPC allows an authorized attacker to elevate privileges locally.

CVE-2026-69832
MEDIUM 5.6

Exposure of sensitive system information to an unauthorized control sphere in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-69829
CRITICAL 9.8

Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to execute code over a network.

CVE-2026-69827
HIGH 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over …

CVE-2026-69826
HIGH 8.0

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-69824
CRITICAL 9.8

Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an unauthorized attacker to execute code over a network.

CVE-2026-69822
HIGH 7.8

Numeric truncation error in Windows Kerberos allows an authorized attacker to elevate privileges locally.

CVE-2026-69820
HIGH 8.2

Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69818
HIGH 7.0

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-69817
HIGH 7.0

Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-69816
HIGH 7.0

Use after free in Windows Accounts Control allows an authorized attacker to elevate privileges locally.

CVE-2026-69814
HIGH 7.0

Use after free in Windows Credential Providers allows an authorized attacker to elevate privileges locally.

CVE-2026-69813
HIGH 8.1

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-69808
MEDIUM 5.5

Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-69803
MEDIUM 5.9

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network.

CVE-2026-69797
HIGH 8.8

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.

CVE-2026-69794
MEDIUM 5.5

Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.

CVE-2026-69793
HIGH 7.5

Improper validation of consistency within input in Windows TCP/IP allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-69792
MEDIUM 4.7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to bypass a securit…

CVE-2026-69791
HIGH 7.0

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69790
HIGH 7.8

Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to elevate privileges locally.

CVE-2026-69787
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69786
HIGH 8.1

Heap-based buffer overflow in Windows Text Shaping allows an unauthorized attacker to execute code over a network.

CVE-2026-69785
HIGH 7.8

Untrusted search path in Windows Smart Card allows an authorized attacker to elevate privileges locally.

CVE-2026-69784
HIGH 8.8

Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69782
HIGH 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over …

CVE-2026-69781
MEDIUM 6.5

Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network.