Vulnérabilités
Vulnérabilités des apps suivies
25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 946
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-09-29
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-3837
Use after free in QUIC in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who had compromised the renderer process to potentially exploit heap c… |
|
CVE-2024-3834
Use after free in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (… |
|
CVE-2024-3833
Object corruption in WebAssembly in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML … |
|
CVE-2024-3832
Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Ch… |
|
CVE-2024-3864
Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that with enou… |
|
CVE-2024-3863
The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating syst… |
|
CVE-2024-3861
If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability… |
|
CVE-2024-3860
MEDIUM 6.2
An out-of-memory condition during object initialization could result in an empty shape list. If the JIT subsequently traced the object it would crash. This vul… |
|
CVE-2024-3859
On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulner… |
|
CVE-2024-3857
The JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This vulnerability affec… |
|
CVE-2024-3854
In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads. This vulnerability affects Firefox < 125, Fi… |
|
CVE-2024-3852
GetBoundName could return the wrong version of an object when JIT optimizations were applied. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, a… |
|
CVE-2024-3302
There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the b… |
|
CVE-2024-3516
Heap buffer overflow in ANGLE in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… |
|
CVE-2024-3515
Use after free in Dawn in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chro… |
|
CVE-2024-3157
Out of bounds memory access in Compositing in Google Chrome prior to 123.0.6312.122 allowed a remote attacker who had compromised the GPU process to potentiall… |
|
CVE-2024-27247
MEDIUM 5.5
Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a privileged user to conduct an escalation of… |
|
CVE-2024-20670
Outlook for Windows Spoofing Vulnerability |
|
CVE-2024-29988
SmartScreen Prompt Security Feature Bypass Vulnerability |
|
CVE-2024-29066
HIGH · éditeur
Windows Distributed File System (DFS) Remote Code Execution Vulnerability |
|
CVE-2024-29064
HIGH · éditeur
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2024-29062
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-29061
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-29056
HIGH · éditeur
Windows Authentication Elevation of Privilege Vulnerability |
|
CVE-2024-29052
HIGH · éditeur
Windows Storage Elevation of Privilege Vulnerability |
|
CVE-2024-29050
HIGH · éditeur
Windows Cryptographic Services Remote Code Execution Vulnerability |
|
CVE-2024-28925
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28924
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28923
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28922
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28921
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28920
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28919
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28907
HIGH · éditeur
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28905
HIGH · éditeur
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28904
HIGH · éditeur
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28903
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28902
HIGH · éditeur
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28901
HIGH · éditeur
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28900
HIGH · éditeur
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28898
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28897
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28896
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-27316
HIGH · éditeur
Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames |
|
CVE-2024-26256
HIGH · éditeur
Libarchive Remote Code Execution Vulnerability |
|
CVE-2024-26255
HIGH · éditeur
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-26254
HIGH · éditeur
Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability |
|
CVE-2024-26253
HIGH · éditeur
Windows rndismp6.sys Remote Code Execution Vulnerability |
|
CVE-2024-26252
HIGH · éditeur
Windows rndismp6.sys Remote Code Execution Vulnerability |
|
CVE-2024-26250
HIGH · éditeur
Secure Boot Security Feature Bypass Vulnerability |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.