Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 946
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-09-29

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 946 entrées
CVE
CVE-2024-3837
HIGH 8.8

Use after free in QUIC in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who had compromised the renderer process to potentially exploit heap c…

CVE-2024-3834
HIGH 8.8

Use after free in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (…

CVE-2024-3833
HIGH 8.8

Object corruption in WebAssembly in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML …

CVE-2024-3832
HIGH 8.8

Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Ch…

CVE-2024-3864
HIGH · éditeur

Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that with enou…

CVE-2024-3863
CRITICAL 9.8

The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating syst…

CVE-2024-3861
MEDIUM · éditeur

If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability…

CVE-2024-3860
MEDIUM 6.2

An out-of-memory condition during object initialization could result in an empty shape list. If the JIT subsequently traced the object it would crash. This vul…

CVE-2024-3859
MEDIUM · éditeur

On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulner…

CVE-2024-3857
HIGH 7.8

The JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This vulnerability affec…

CVE-2024-3854
HIGH 8.8

In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads. This vulnerability affects Firefox < 125, Fi…

CVE-2024-3852
HIGH 7.5

GetBoundName could return the wrong version of an object when JIT optimizations were applied. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, a…

CVE-2024-3302
LOW · éditeur

There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the b…

CVE-2024-3516
MEDIUM 6.5

Heap buffer overflow in ANGLE in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

CVE-2024-3515
MEDIUM 6.5

Use after free in Dawn in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chro…

CVE-2024-3157
CRITICAL 9.6

Out of bounds memory access in Compositing in Google Chrome prior to 123.0.6312.122 allowed a remote attacker who had compromised the GPU process to potentiall…

CVE-2024-27247
MEDIUM 5.5

Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a privileged user to conduct an escalation of…

CVE-2024-20670
HIGH 8.1

Outlook for Windows Spoofing Vulnerability

CVE-2024-29988
HIGH · éditeur KEV

SmartScreen Prompt Security Feature Bypass Vulnerability

CVE-2024-29066
HIGH · éditeur

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

CVE-2024-29064
HIGH · éditeur

Windows Hyper-V Denial of Service Vulnerability

CVE-2024-29062
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-29061
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-29056
HIGH · éditeur

Windows Authentication Elevation of Privilege Vulnerability

CVE-2024-29052
HIGH · éditeur

Windows Storage Elevation of Privilege Vulnerability

CVE-2024-29050
HIGH · éditeur

Windows Cryptographic Services Remote Code Execution Vulnerability

CVE-2024-28925
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28924
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28923
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28922
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28921
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28920
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28919
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28907
HIGH · éditeur

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2024-28905
HIGH · éditeur

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2024-28904
HIGH · éditeur

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2024-28903
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28902
HIGH · éditeur

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVE-2024-28901
HIGH · éditeur

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVE-2024-28900
HIGH · éditeur

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVE-2024-28898
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28897
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-28896
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

CVE-2024-27316
HIGH · éditeur

Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames

CVE-2024-26256
HIGH · éditeur

Libarchive Remote Code Execution Vulnerability

CVE-2024-26255
HIGH · éditeur

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVE-2024-26254
HIGH · éditeur

Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability

CVE-2024-26253
HIGH · éditeur

Windows rndismp6.sys Remote Code Execution Vulnerability

CVE-2024-26252
HIGH · éditeur

Windows rndismp6.sys Remote Code Execution Vulnerability

CVE-2024-26250
HIGH · éditeur

Secure Boot Security Feature Bypass Vulnerability

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa