Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Linux Kernel HIGH 7.8
CVE-2026-31471

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: only publish mode_data after clone setup iptfs_clone_state() store…

Fix: 6.18.21 / 6.19.11+
Fix from $1,950 2026-04-22
Thin Vec MEDIUM 5.1
CVE-2026-6654

Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skip…

No fix yet
Fix from $1,600 2026-04-20
Windows 10 1607 CRITICAL 9.8
CVE-2026-33824 KEVEPSS 56%

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.9060 / 10.0.17763.8644+
Fix from $2,300 2026-04-14
Windows 11 24h2 HIGH 7.0
CVE-2026-32219

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

Fix: 10.0.26100.8246 / 10.0.26100.32690+
Fix from $1,950 2026-04-14
Windows 10 1809 HIGH 7.8
CVE-2026-32074

Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8644 / 10.0.19044.7184+
Fix from $1,950 2026-04-14
Windows 10 1809 HIGH 7.8
CVE-2026-32069

Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8644 / 10.0.19044.7184+
Fix from $1,950 2026-04-14
Windows 11 23h2 HIGH 7.8
CVE-2026-26179

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.22631.6936 / 10.0.25398.2274+
Fix from $1,950 2026-04-14
Windows 11 23h2 HIGH 7.0
CVE-2026-26166

Double free in Windows Shell allows an authorized attacker to elevate privileges locally.

Fix: 10.0.20348.5020 / 10.0.22631.6936+
Fix from $1,950 2026-04-14
Windows 10 1607 HIGH 7.8
CVE-2026-26163

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9060 / 10.0.17763.8644+
Fix from $1,950 2026-04-14
Harmonyos MEDIUM 5.6
CVE-2026-34867

Double free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2026-04-13
Rizin MEDIUM 6.2
CVE-2026-31053

A double free vulnerability exists in librz/bin/format/le/le.c in the function le_load_fixup_record(). When processing malformed or circular LE fixup…

Patch available
Fix from $1,600 2026-04-06
Linux Kernel HIGH 7.8
CVE-2026-23449

In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: Fix double-free in teql_master_xmit Whenever a TEQL devices ha…

Fix: 6.1.167 / 6.6.130+
Fix from $1,950 2026-04-03
Linux Kernel HIGH 7.8
CVE-2026-23408

In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix double free of ns_name in aa_replace_profiles() if ns_name is NUL…

Fix: 5.10.253 / 5.15.203+
Fix from $1,950 2026-04-01
Unclassified MEDIUM 5.3
CVE-2026-5186

A weakness has been identified in Nothings stb up to 2.30. This impacts the function stbi__load_gif_main of the file stb_image.h of the component Mul…

Mitigation only
Fix from $1,600 2026-03-31
Freerdp MEDIUM 5.3
CVE-2026-33995

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, a double-free vulnerability in kerberos_AcceptSecurityConte…

Fix: 3.24.2+
Fix from $1,600 2026-03-30
Linux Kernel HIGH 7.8
CVE-2026-23387

In the Linux kernel, the following vulnerability has been resolved: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() devm_add_action…

Fix: 6.6.130 / 6.12.77+
Fix from $1,950 2026-03-25
MongoDB HIGH 7.5
CVE-2026-4358

A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory is…

Fix: 7.0.31 / 8.0.20+
Fix from $1,950 2026-03-17
Giflib MEDIUM 5.1
CVE-2026-23868

Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handling. The conditions ne…

Fix: after 6.1.1
Fix from $1,600 2026-03-10
Binutils HIGH 7.5
CVE-2025-69650

GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT r…

Fix: after 2.46
Fix from $1,950 2026-03-06
Harmonyos MEDIUM 5.5
CVE-2026-28537

Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability.

Mitigation only
Fix from $1,600 2026-03-05
Linux Kernel HIGH 7.8
CVE-2025-71238

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix bsg_done() causing double free Kernel panic observed on syst…

Fix: 5.10.251 / 5.15.201+
Fix from $1,950 2026-03-04
Libtiff MEDIUM 5.0
CVE-2025-61145

libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.

Fix: 4.7.1+
Fix from $1,600 2026-02-23
Ffmpeg MEDIUM 5.5
CVE-2025-12343

A flaw was found in FFmpeg’s TensorFlow backend within the libavfilter/dnn_backend_tf.c source file. The issue occurs in the dnn_execute_model_tf() f…

Fix: 8.1+
Fix from $1,600 2026-02-18
Linux Kernel HIGH 7.8
CVE-2026-23162

In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure After a successful auxiliary_dev…

Fix: 6.18.9+
Fix from $1,950 2026-02-14
Mupdf HIGH 7.5
CVE-2026-25556

MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during displa…

Fix: after 1.27.0
Fix from $1,950 2026-02-06
Linux Kernel HIGH 7.8
CVE-2026-23098

In the Linux kernel, the following vulnerability has been resolved: netrom: fix double-free in nr_route_frame() In nr_route_frame(), old_skb is imm…

Fix: 5.10.249 / 5.15.199+
Fix from $1,950 2026-02-04
Linux Kernel HIGH 7.8
CVE-2026-23068

In the Linux kernel, the following vulnerability has been resolved: spi: spi-sprd-adi: Fix double free in probe error path The driver currently use…

Fix: 6.1.162 / 6.6.122+
Fix from $1,950 2026-02-04
Android MEDIUM 5.5
CVE-2026-20415

In imgsys, there is a possible memory corruption due to improper locking. This could lead to local denial of service if a malicious actor has already…

Mitigation only
Fix from $1,600 2026-02-02
Hiawatha Webserver MEDIUM 6.5
CVE-2025-57785

A Double Free in XSLT `show_index` has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data wh…

Mitigation only
Fix from $1,600 2026-01-26
Junos HIGH 7.5
CVE-2026-21918

A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allows an unauthenticated, networ…

Fix: 22.4+
Fix from $1,950 2026-01-15