Vulnérabilités
Vulnérabilités des apps suivies
25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 741
- Activement exploitées
- 372
- Fenêtre de publication
- 1997-01-01 → 2026-09-17
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2026-69598
HIGH 8.8
Incorrect calculation of buffer size in Windows iSCSI allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69597
HIGH 7.1
Use after free in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network. |
|
CVE-2026-69595
CRITICAL 9.8
Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69594
HIGH 7.8
Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69593
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69592
HIGH 7.8
Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69591
MEDIUM 5.7
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information over a network. |
|
CVE-2026-69590
CRITICAL 9.8
Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine |
|
CVE-2026-69589
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69588
HIGH 7.5
Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-69587
HIGH 7.5
Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-69586
CRITICAL 9.8
Integer overflow or wraparound in Microsoft Windows PDF allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69585
HIGH 7.8
Incorrect type conversion or cast in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69584
HIGH 7.8
Integer overflow or wraparound in Windows USB Video Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69583
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69582
HIGH 7.8
Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69581
HIGH 7.0
Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69580
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69579
CRITICAL 9.8
Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69578
HIGH 7.0
Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69575
HIGH 7.0
Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69574
HIGH 7.0
Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69573
HIGH 7.0
Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69572
MEDIUM 5.7
Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclose information over a network. |
|
CVE-2026-69571
HIGH 7.8
Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69569
MEDIUM 5.7
Untrusted pointer dereference in Windows Print Spooler Components allows an authorized attacker to deny service over a network. |
|
CVE-2026-69568
MEDIUM 5.5
Out-of-bounds read in Windows Storage Spaces Controller allows an authorized attacker to disclose information locally. |
|
CVE-2026-69567
HIGH 7.0
Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69566
MEDIUM 6.8
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack. |
|
CVE-2026-69556
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69554
MEDIUM 5.5
Missing authentication for critical function in Microsoft Windows Search Component allows an authorized attacker to perform tampering locally. |
|
CVE-2026-69552
MEDIUM 5.7
Generation of error message containing sensitive information in Windows Print Spooler Components allows an authorized attacker to disclose information over a n… |
|
CVE-2026-69551
HIGH 8.8
Use after free in Windows DNS allows an authorized attacker to execute code over a network. |
|
CVE-2026-69548
MEDIUM 4.6
Heap-based buffer overflow in Windows RNDIS allows an unauthorized attacker to disclose information with a physical attack. |
|
CVE-2026-69547
HIGH 8.8
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network. |
|
CVE-2026-69539
HIGH 7.5
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. |
|
CVE-2026-69536
HIGH 7.1
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. |
|
CVE-2026-69532
HIGH 7.8
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69528
HIGH 7.8
Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69527
MEDIUM 5.5
Out-of-bounds read in Windows USB Mass Storage Class Driver allows an authorized attacker to disclose information locally. |
|
CVE-2026-69525
CRITICAL 9.8
Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69518
HIGH 8.8
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69517
HIGH 7.0
Use after free in Windows Wireless Networking allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69514
HIGH 7.5
Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. |
|
CVE-2026-69513
HIGH 7.8
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69512
HIGH 8.0
Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges over a network. |
|
CVE-2026-69511
HIGH 8.8
Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-69509
HIGH 7.8
Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69508
HIGH 7.8
Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-69507
MEDIUM 5.7
Insertion of sensitive information into externally-accessible file or directory in Microsoft Windows Search Component allows an authorized attacker to disclose… |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.