Vulnérabilités
Vulnérabilités des apps suivies
26 374 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 26 374
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-10-06
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2021-4061
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-4059
Insufficient data validation in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to leak cross-origin data via a crafted HTML page. |
|
CVE-2021-4058
Heap buffer overflow in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-4057
Use after free in file API in Google Chrome prior to 96.0.4664.93 allowed a remote attacker who had compromised the renderer process to potentially exploit hea… |
|
CVE-2021-4056
Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-4055
Heap buffer overflow in extensions in Google Chrome prior to 96.0.4664.93 allowed an attacker who convinced a user to install a malicious extension to potentia… |
|
CVE-2021-4054
Incorrect security UI in autofill in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform domain spoofing via a crafted HTML page. |
|
CVE-2021-4053
Use after free in UI in Google Chrome on Linux prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-4052
Use after free in web apps in Google Chrome prior to 96.0.4664.93 allowed an attacker who convinced a user to install a malicious extension to potentially expl… |
|
CVE-2021-38022
Inappropriate implementation in WebAuthentication in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML… |
|
CVE-2021-38021
Inappropriate implementation in referrer in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass navigation restrictions via a crafted HTML … |
|
CVE-2021-38020
Insufficient policy enforcement in contacts picker in Google Chrome on Android prior to 96.0.4664.45 allowed a remote attacker to spoof the contents of the Omn… |
|
CVE-2021-38019
Insufficient policy enforcement in CORS in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page. |
|
CVE-2021-38018
Inappropriate implementation in navigation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to perform domain spoofing via a crafted HTML page. |
|
CVE-2021-38017
Insufficient policy enforcement in iframe sandbox in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass navigation restrictions via a craf… |
|
CVE-2021-38016
Insufficient policy enforcement in background fetch in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to bypass same origin policy via a crafted… |
|
CVE-2021-38015
Inappropriate implementation in input in Google Chrome prior to 96.0.4664.45 allowed an attacker who convinced a user to install a malicious extension to bypas… |
|
CVE-2021-38014
Out of bounds write in Swiftshader in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p… |
|
CVE-2021-38013
Heap buffer overflow in fingerprint recognition in Google Chrome on ChromeOS prior to 96.0.4664.45 allowed a remote attacker who had compromised a WebUI render… |
|
CVE-2021-38012
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-38011
Use after free in storage foundation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… |
|
CVE-2021-38010
Inappropriate implementation in service workers in Google Chrome prior to 96.0.4664.45 allowed a remote attacker who had compromised the renderer process to by… |
|
CVE-2021-38009
Inappropriate implementation in cache in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page. |
|
CVE-2021-38008
Use after free in media in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-38007
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-38006
Use after free in storage foundation in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… |
|
CVE-2021-38005
Use after free in loader in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
|
CVE-2021-43256
Microsoft Excel Remote Code Execution Vulnerability |
|
CVE-2021-43226
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2021-43893
HIGH · éditeur
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability |
|
CVE-2021-43883
HIGH · éditeur
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2021-43880
HIGH · éditeur
Windows Mobile Device Management Elevation of Privilege Vulnerability |
|
CVE-2021-43248
HIGH · éditeur
Windows Digital Media Receiver Elevation of Privilege Vulnerability |
|
CVE-2021-43247
HIGH · éditeur
Windows TCP/IP Driver Elevation of Privilege Vulnerability |
|
CVE-2021-43246
HIGH · éditeur
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2021-43244
HIGH · éditeur
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2021-43240
HIGH · éditeur
NTFS Set Short Name Elevation of Privilege Vulnerability |
|
CVE-2021-43239
HIGH · éditeur
Windows Recovery Environment Agent Elevation of Privilege Vulnerability |
|
CVE-2021-43238
HIGH · éditeur
Windows Remote Access Elevation of Privilege Vulnerability |
|
CVE-2021-43237
HIGH · éditeur
Windows Setup Elevation of Privilege Vulnerability |
|
CVE-2021-43236
HIGH · éditeur
Microsoft Message Queuing Information Disclosure Vulnerability |
|
CVE-2021-43235
HIGH · éditeur
Storage Spaces Controller Information Disclosure Vulnerability |
|
CVE-2021-43234
HIGH · éditeur
Windows Fax Service Remote Code Execution Vulnerability |
|
CVE-2021-43233
CRITICAL · éditeur
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2021-43232
HIGH · éditeur
Windows Event Tracing Remote Code Execution Vulnerability |
|
CVE-2021-43231
HIGH · éditeur
Windows NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-43230
HIGH · éditeur
Windows NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-43229
HIGH · éditeur
Windows NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-43228
HIGH · éditeur
SymCrypt Denial of Service Vulnerability |
|
CVE-2021-43227
HIGH · éditeur
Storage Spaces Controller Information Disclosure Vulnerability |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.