Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

26 363 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
26 363
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-10-06

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

26 363 entrées
CVE
CVE-2022-1097
MEDIUM 6.5

<code>NSSToken</code> objects were referenced via direct points, and could have been accessed in an unsafe way on different threads, leading to a use-after-fre…

CVE-2022-0566
HIGH 8.8

It may be possible for an attacker to craft an email message that causes Thunderbird to perform an out-of-bounds write of one byte when processing the message.…

CVE-2021-4140
CRITICAL 10.0

It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, …

CVE-2021-4129
CRITICAL 9.8

Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, and Masayuki Nakano reported memory safe…

CVE-2021-4127
CRITICAL 9.8

An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerability affects Thunderbird < 78.9 and…

CVE-2021-4126
MEDIUM 6.5

When receiving an OpenPGP/MIME signed email message that contains an additional outer MIME message layer, for example a message footer added by a mailing list …

CVE-2020-15685
HIGH 8.8

During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulner…

CVE-2022-3775
HIGH 7.1

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size.…

CVE-2022-2601
HIGH 8.6

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, all…

CVE-2022-4440
HIGH 8.8

Use after free in Profiles in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (…

CVE-2022-4439
HIGH 8.8

Use after free in Aura in Google Chrome on Windows prior to 108.0.5359.124 allowed a remote attacker who convinced the user to engage in specific UI interactio…

CVE-2022-4438
HIGH 8.8

Use after free in Blink Frames in Google Chrome prior to 108.0.5359.124 allowed a remote attacker who convinced the user to engage in specific UI interactions …

CVE-2022-4437
HIGH 8.8

Use after free in Mojo IPC in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (…

CVE-2022-4436
HIGH 8.8

Use after free in Blink Media in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

CVE-2022-44708
HIGH 8.3

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVE-2022-24480
MEDIUM 6.3

Outlook for Android Elevation of Privilege Vulnerability

CVE-2022-44710
HIGH · éditeur

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CVE-2022-44707
HIGH · éditeur

Windows Kernel Denial of Service Vulnerability

CVE-2022-44698
MEDIUM · éditeur KEV

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2022-44697
HIGH · éditeur

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2022-44689
HIGH · éditeur

Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability

CVE-2022-44683
HIGH · éditeur

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-44682
HIGH · éditeur

Windows Hyper-V Denial of Service Vulnerability

CVE-2022-44681
HIGH · éditeur

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-44680
HIGH · éditeur

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2022-44679
HIGH · éditeur

Windows Graphics Component Information Disclosure Vulnerability

CVE-2022-44678
HIGH · éditeur

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-44677
HIGH · éditeur

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2022-44676
CRITICAL · éditeur

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-44675
HIGH · éditeur

Windows Bluetooth Driver Elevation of Privilege Vulnerability

CVE-2022-44674
HIGH · éditeur

Windows Bluetooth Driver Information Disclosure Vulnerability

CVE-2022-44673
HIGH · éditeur

Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

CVE-2022-44671
HIGH · éditeur

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2022-44670
CRITICAL · éditeur

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-44669
HIGH · éditeur

Windows Error Reporting Elevation of Privilege Vulnerability

CVE-2022-44668
HIGH · éditeur

Windows Media Remote Code Execution Vulnerability

CVE-2022-44667
HIGH · éditeur

Windows Media Remote Code Execution Vulnerability

CVE-2022-44666
HIGH · éditeur

Windows Contacts Remote Code Execution Vulnerability

CVE-2022-41121
HIGH · éditeur

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2022-41094
HIGH · éditeur

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2022-41077
HIGH · éditeur

Windows Fax Compose Form Elevation of Privilege Vulnerability

CVE-2022-41076
CRITICAL · éditeur

PowerShell Remote Code Execution Vulnerability

CVE-2022-41074
HIGH · éditeur

Windows Graphics Component Information Disclosure Vulnerability

CVE-2022-43363
MEDIUM 6.1

Telegram Web 15.3.1 allows XSS via a certain payload derived from a Target Corporation website. NOTE: some third parties have been unable to discern any relati…

CVE-2022-4262
HIGH 8.8 KEV

Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromiu…

CVE-2022-42772
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2022-42771
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2022-42770
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2022-42756
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2022-42755
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa