Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

26 374 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
26 374
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-10-06

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

26 374 entrées
CVE
CVE-2021-4061
HIGH 8.8

Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-4059
MEDIUM 6.5

Insufficient data validation in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVE-2021-4058
HIGH 8.8

Heap buffer overflow in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-4057
HIGH 8.8

Use after free in file API in Google Chrome prior to 96.0.4664.93 allowed a remote attacker who had compromised the renderer process to potentially exploit hea…

CVE-2021-4056
HIGH 8.8

Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-4055
HIGH 8.8

Heap buffer overflow in extensions in Google Chrome prior to 96.0.4664.93 allowed an attacker who convinced a user to install a malicious extension to potentia…

CVE-2021-4054
MEDIUM 6.5

Incorrect security UI in autofill in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform domain spoofing via a crafted HTML page.

CVE-2021-4053
HIGH 8.8

Use after free in UI in Google Chrome on Linux prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-4052
HIGH 8.8

Use after free in web apps in Google Chrome prior to 96.0.4664.93 allowed an attacker who convinced a user to install a malicious extension to potentially expl…

CVE-2021-38022
MEDIUM 6.5

Inappropriate implementation in WebAuthentication in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML…

CVE-2021-38021
MEDIUM 6.5

Inappropriate implementation in referrer in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass navigation restrictions via a crafted HTML …

CVE-2021-38020
MEDIUM 4.3

Insufficient policy enforcement in contacts picker in Google Chrome on Android prior to 96.0.4664.45 allowed a remote attacker to spoof the contents of the Omn…

CVE-2021-38019
MEDIUM 6.5

Insufficient policy enforcement in CORS in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVE-2021-38018
MEDIUM 6.5

Inappropriate implementation in navigation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to perform domain spoofing via a crafted HTML page.

CVE-2021-38017
HIGH 8.8

Insufficient policy enforcement in iframe sandbox in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass navigation restrictions via a craf…

CVE-2021-38016
HIGH 8.8

Insufficient policy enforcement in background fetch in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass same origin policy via a crafted…

CVE-2021-38015
HIGH 8.8

Inappropriate implementation in input in Google Chrome prior to 96.0.4664.45 allowed an attacker who convinced a user to install a malicious extension to bypas…

CVE-2021-38014
HIGH 8.8

Out of bounds write in Swiftshader in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

CVE-2021-38013
CRITICAL 9.6

Heap buffer overflow in fingerprint recognition in Google Chrome on ChromeOS prior to 96.0.4664.45 allowed a remote attacker who had compromised a WebUI render…

CVE-2021-38012
HIGH 8.8

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-38011
HIGH 8.8

Use after free in storage foundation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

CVE-2021-38010
MEDIUM 6.5

Inappropriate implementation in service workers in Google Chrome prior to 96.0.4664.45 allowed a remote attacker who had compromised the renderer process to by…

CVE-2021-38009
MEDIUM 6.5

Inappropriate implementation in cache in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVE-2021-38008
HIGH 8.8

Use after free in media in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-38007
HIGH 8.8

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-38006
HIGH 8.8

Use after free in storage foundation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

CVE-2021-38005
HIGH 8.8

Use after free in loader in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVE-2021-43256
HIGH 7.8

Microsoft Excel Remote Code Execution Vulnerability

CVE-2021-43226
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2021-43893
HIGH · éditeur

Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability

CVE-2021-43883
HIGH · éditeur

Windows Installer Elevation of Privilege Vulnerability

CVE-2021-43880
HIGH · éditeur

Windows Mobile Device Management Elevation of Privilege Vulnerability

CVE-2021-43248
HIGH · éditeur

Windows Digital Media Receiver Elevation of Privilege Vulnerability

CVE-2021-43247
HIGH · éditeur

Windows TCP/IP Driver Elevation of Privilege Vulnerability

CVE-2021-43246
HIGH · éditeur

Windows Hyper-V Denial of Service Vulnerability

CVE-2021-43244
HIGH · éditeur

Windows Kernel Information Disclosure Vulnerability

CVE-2021-43240
HIGH · éditeur

NTFS Set Short Name Elevation of Privilege Vulnerability

CVE-2021-43239
HIGH · éditeur

Windows Recovery Environment Agent Elevation of Privilege Vulnerability

CVE-2021-43238
HIGH · éditeur

Windows Remote Access Elevation of Privilege Vulnerability

CVE-2021-43237
HIGH · éditeur

Windows Setup Elevation of Privilege Vulnerability

CVE-2021-43236
HIGH · éditeur

Microsoft Message Queuing Information Disclosure Vulnerability

CVE-2021-43235
HIGH · éditeur

Storage Spaces Controller Information Disclosure Vulnerability

CVE-2021-43234
HIGH · éditeur

Windows Fax Service Remote Code Execution Vulnerability

CVE-2021-43233
CRITICAL · éditeur

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2021-43232
HIGH · éditeur

Windows Event Tracing Remote Code Execution Vulnerability

CVE-2021-43231
HIGH · éditeur

Windows NTFS Elevation of Privilege Vulnerability

CVE-2021-43230
HIGH · éditeur

Windows NTFS Elevation of Privilege Vulnerability

CVE-2021-43229
HIGH · éditeur

Windows NTFS Elevation of Privilege Vulnerability

CVE-2021-43228
HIGH · éditeur

SymCrypt Denial of Service Vulnerability

CVE-2021-43227
HIGH · éditeur

Storage Spaces Controller Information Disclosure Vulnerability

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa