Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 741
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 741 entrées
CVE
CVE-2026-68881
HIGH · éditeur

Microsoft Standard XPS Information Disclosure Vulnerability

CVE-2026-68880
HIGH · éditeur

Windows Win32k Elevation of Privilege Vulnerability

CVE-2026-68878
HIGH · éditeur

Windows Fast FAT Driver Elevation of Privilege Vulnerability

CVE-2026-68877
HIGH · éditeur

Windows Storage Spaces Controller Remote Code Execution Vulnerability

CVE-2026-68876
HIGH · éditeur

Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability

CVE-2026-68852
HIGH · éditeur

Microsoft Account Information Disclosure Vulnerability

CVE-2026-68850
HIGH · éditeur

Microsoft Account Elevation of Privilege Vulnerability

CVE-2026-68843
HIGH · éditeur

Microsoft Office Word Information Disclosure Vulnerability

CVE-2026-68828
HIGH · éditeur

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2026-62813
HIGH · éditeur

Windows Active Directory Domain Services Remote Code Execution Vulnerability

CVE-2026-62810
HIGH · éditeur

Active Directory Certificate Services (AD CS) Elevation of Privilege Vulnerability

CVE-2026-62762
HIGH · éditeur

Windows Active Directory Domain Services Denial of Service Vulnerability

CVE-2026-62744
HIGH · éditeur

Microsoft Windows Media Foundation Remote Code Execution Vulnerability

CVE-2026-56198
HIGH · éditeur

Microsoft Trace Data Helper Elevation of Privilege Vulnerability

CVE-2026-85053
HIGH 8.8

Improper resource exposure in CacheStorage in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a…

CVE-2026-85052
LOW 3.1

Out of bounds read in CrashReporting in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to read memory …

CVE-2026-85051
HIGH 8.8

Type confusion in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML…

CVE-2026-85050
CRITICAL 9.6

Out of bounds write in WebGL in Google Chrome on on Android prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via …

CVE-2026-85049
HIGH 8.8

Use after free in Skia in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. …

CVE-2026-85048
HIGH 8.3

Use after free in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to execute arbitrary c…

CVE-2026-85047
CRITICAL 9.6

Improper input validation in Transactions Platform in Google Chrome on on iOS prior to 152.0.7977.82 allowed a remote attacker to potentially execute arbitrary…

CVE-2026-85046
HIGH 8.8 KEV

Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (C…

CVE-2026-85045
HIGH 7.5

Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (C…

CVE-2026-85044
MEDIUM 6.5

Use of released resource in Mobile in Google Chrome on on Android prior to 152.0.7977.82 allowed a remote attacker leveraging social engineering to bypass web …

CVE-2026-85043
CRITICAL 9.1

Incomplete cleanup in Network in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to bypass system access restrictions via crafted network traffi…

CVE-2026-85042
CRITICAL 9.6

Use after free in DevTools in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML p…

CVE-2026-84359
LOW 3.1

Information leak in Skia in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak cross-origin data v…

CVE-2026-84358
MEDIUM 4.2

Improper privilege management in Downloads in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to spoof …

CVE-2026-84357
MEDIUM 6.5

Improper input validation in Omnibox in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass web origin polic…

CVE-2026-84356
MEDIUM 4.3

UI misrepresentation in FullScreen in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium se…

CVE-2026-84355
LOW 3.1

Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web …

CVE-2026-84354
CRITICAL 9.6

Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code…

CVE-2026-84353
CRITICAL 9.6

Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute ar…

CVE-2026-84352
CRITICAL 9.6

Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a cra…

CVE-2026-84351
HIGH 8.3

Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbi…

CVE-2026-84350
HIGH 8.8

Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside th…

CVE-2026-84349
HIGH 8.3

Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code …

CVE-2026-84348
MEDIUM 6.5

Information leak in MediaCapture in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to potentially leak sensitive information via a crafted HTML…

CVE-2026-84347
HIGH 8.8

Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page…

CVE-2026-84335
HIGH 8.3

Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged so…

CVE-2026-84334
HIGH 8.1

Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sand…

CVE-2026-84333
CRITICAL 9.6

Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a craf…

CVE-2026-84332
MEDIUM 6.5

Incorrect authorization in SiteSettings in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to bypass system access restrictions via a crafted HT…

CVE-2026-84331
LOW 3.1

Incorrect authorization in Actor in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origi…

CVE-2026-84330
MEDIUM 5.4

UI misrepresentation in FullScreen in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page…

CVE-2026-84329
MEDIUM 5.3

Confused deputy in CredentialProvider in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process …

CVE-2026-84328
LOW 3.1

Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web or…

CVE-2026-84327
MEDIUM 6.5

Incorrect authorization in Autofill in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to obtain sen…

CVE-2026-84326
HIGH 8.8

Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

CVE-2026-84325
CRITICAL 9.8

Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass system acce…

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa