Vulnérabilités
Vulnérabilités des apps suivies
25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 946
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-09-29
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-38142
HIGH · éditeur
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2024-38141
HIGH · éditeur
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2024-38140
CRITICAL · éditeur
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
|
CVE-2024-38138
HIGH · éditeur
Windows Deployment Services Remote Code Execution Vulnerability |
|
CVE-2024-38137
HIGH · éditeur
Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability |
|
CVE-2024-38136
HIGH · éditeur
Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability |
|
CVE-2024-38135
HIGH · éditeur
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
|
CVE-2024-38134
HIGH · éditeur
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38133
HIGH · éditeur
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-38132
HIGH · éditeur
Windows Network Address Translation (NAT) Denial of Service Vulnerability |
|
CVE-2024-38131
HIGH · éditeur
Clipboard Virtual Channel Extension Remote Code Execution Vulnerability |
|
CVE-2024-38130
HIGH · éditeur
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-38128
HIGH · éditeur
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-38127
HIGH · éditeur
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2024-38126
HIGH · éditeur
Windows Network Address Translation (NAT) Denial of Service Vulnerability |
|
CVE-2024-38125
HIGH · éditeur
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38123
HIGH · éditeur
Windows Bluetooth Driver Information Disclosure Vulnerability |
|
CVE-2024-38122
HIGH · éditeur
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability |
|
CVE-2024-38121
HIGH · éditeur
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-38120
HIGH · éditeur
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-38118
HIGH · éditeur
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability |
|
CVE-2024-38117
HIGH · éditeur
NTFS Elevation of Privilege Vulnerability |
|
CVE-2024-38116
HIGH · éditeur
Windows IP Routing Management Snapin Remote Code Execution Vulnerability |
|
CVE-2024-38115
HIGH · éditeur
Windows IP Routing Management Snapin Remote Code Execution Vulnerability |
|
CVE-2024-38114
HIGH · éditeur
Windows IP Routing Management Snapin Remote Code Execution Vulnerability |
|
CVE-2024-38107
Windows Power Dependency Coordinator Elevation of Privilege Vulnerability |
|
CVE-2024-38106
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-38063
CRITICAL · éditeur
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2024-37968
HIGH · éditeur
Windows DNS Spoofing Vulnerability |
|
CVE-2024-29995
HIGH · éditeur
Windows Kerberos Elevation of Privilege Vulnerability |
|
CVE-2024-21302
HIGH · éditeur
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2024-7550
Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromiu… |
|
CVE-2024-7536
Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (C… |
|
CVE-2024-7535
Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML … |
|
CVE-2024-7534
Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… |
|
CVE-2024-7533
Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… |
|
CVE-2024-7532
Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM… |
|
CVE-2024-42219
HIGH 7.8
1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communication validation is insufficient. |
|
CVE-2024-42218
MEDIUM 4.7
1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms. |
|
CVE-2024-7005
Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in… |
|
CVE-2024-7004
Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in… |
|
CVE-2024-7003
Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures … |
|
CVE-2024-7001
Inappropriate implementation in HTML in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures t… |
|
CVE-2024-7000
Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially e… |
|
CVE-2024-6999
Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures … |
|
CVE-2024-6998
Use after free in User Education in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to po… |
|
CVE-2024-6997
Use after free in Tabs in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially … |
|
CVE-2024-6996
Race in Frames in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing … |
|
CVE-2024-6995
Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in speci… |
|
CVE-2024-6994
Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.