Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

26 374 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
26 374
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-10-06

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

26 374 entrées
CVE
CVE-2021-43224
HIGH · éditeur

Windows Common Log File System Driver Information Disclosure Vulnerability

CVE-2021-43223
HIGH · éditeur

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

CVE-2021-43222
HIGH · éditeur

Microsoft Message Queuing Information Disclosure Vulnerability

CVE-2021-43219
HIGH · éditeur

DirectX Graphics Kernel File Denial of Service Vulnerability

CVE-2021-43217
CRITICAL · éditeur

Windows Encrypting File System (EFS) Remote Code Execution Vulnerability

CVE-2021-43216
HIGH · éditeur

Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability

CVE-2021-43215
CRITICAL · éditeur

iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution

CVE-2021-43207
HIGH · éditeur

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2021-41333
HIGH · éditeur

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2021-44228
CRITICAL 10.0 KEV

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameter…

CVE-2021-43546
MEDIUM 4.3

It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefo…

CVE-2021-43545
MEDIUM 6.5

Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0,…

CVE-2021-43543
MEDIUM 6.1

Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. This vulnerability affects…

CVE-2021-43542
MEDIUM 6.5

Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols. This vulnerability aff…

CVE-2021-43541
MEDIUM 6.5

When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly escaped. This vulnerability affects Thunder…

CVE-2021-43539
HIGH 8.8

Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those live pointers…

CVE-2021-43538
MEDIUM 4.3

By misusing a race in our notification code, an attacker could have forcefully hidden the notification for pages that had received full screen and pointer lock…

CVE-2021-43537
HIGH 8.8

An incorrect type conversion of sizes from 64bit to 32bit integers allowed an attacker to corrupt memory leading to a potentially exploitable crash. This vulne…

CVE-2021-43536
MEDIUM 6.5

Under certain circumstances, asynchronous functions could have caused a navigation to fail but expose the target URL. This vulnerability affects Thunderbird < …

CVE-2021-43535
HIGH 8.8

A use-after-free could have occured when an HTTP2 session object was released on a different thread, leading to memory corruption and a potentially exploitable…

CVE-2021-43534
HIGH 8.8

Mozilla developers and community members reported memory safety bugs present in Firefox 93 and Firefox ESR 91.2. Some of these bugs showed evidence of memory c…

CVE-2021-43528
MEDIUM 6.5

Thunderbird unexpectedly enabled JavaScript in the composition area. The JavaScript execution context was limited to this area and did not receive chrome-level…

CVE-2021-38510
HIGH 8.8

The executable file warning was not presented when downloading .inetloc files, which, due to a flaw in Mac OS, can run commands on a user's computer.*Note: Thi…

CVE-2021-38509
MEDIUM 4.3

Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbitrary (although unstyled) contents could be displayed over top a…

CVE-2021-38508
MEDIUM 4.3

By displaying a form validity message in the correct location at the same time as a permission prompt (such as for geolocation), the validity message could hav…

CVE-2021-38507
MEDIUM 6.5

The Opportunistic Encryption feature of HTTP2 (RFC 8164) allows a connection to be transparently upgraded to TLS while retaining the visual properties of an HT…

CVE-2021-38506
MEDIUM 4.3

Through a series of navigations, Firefox could have entered fullscreen mode without notification or warning to the user. This could lead to spoofing attacks on…

CVE-2021-38505
MEDIUM 6.5

Microsoft introduced a new feature in Windows 10 known as Cloud Clipboard which, if enabled, will record data copied to the clipboard to the cloud, and make it…

CVE-2021-38504
HIGH 8.8

When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory corruption a…

CVE-2021-38503
CRITICAL 10.0

The iframe sandbox rules were not correctly applied to XSLT stylesheets, allowing an iframe to bypass restrictions such as executing scripts or navigating the …

CVE-2021-24041
CRITICAL 9.8

A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android v2.21.22.7 could have allowed an out-o…

CVE-2021-30351
CRITICAL · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30337
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30336
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30335
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30303
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30293
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30289
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30283
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30282
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30279
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30278
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30276
CRITICAL · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30275
CRITICAL · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30274
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30273
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30272
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30271
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30270
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2021-30269
HIGH · éditeur

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa