Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Ecostruxure Power Build Rapsody MEDIUM 5.3
CVE-2025-13844

CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) share…

Fix: after 2.8.8
Fix from $1,600 2026-01-15
Harmonyos HIGH 7.8
CVE-2025-68968

Double free vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect the input function.

Mitigation only
Fix from $1,950 2026-01-14
Windows 10 1809 HIGH 7.8
CVE-2026-20867

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac…

Fix: 10.0.17763.8276 / 10.0.19044.6809+
Fix from $1,950 2026-01-13
Windows 10 1809 HIGH 7.8
CVE-2026-20861

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac…

Fix: 10.0.17763.8276 / 10.0.19044.6809+
Fix from $1,950 2026-01-13
Windows 11 23h2 HIGH 7.0
CVE-2026-20863

Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

Fix: 10.0.20348.4648 / 10.0.22631.6491+
Fix from $1,950 2026-01-13
Windows 10 1607 HIGH 7.8
CVE-2026-20832

Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability

Fix: 10.0.14393.8783 / 10.0.17763.8276+
Fix from $1,950 2026-01-13
Usb Host Hid Driver MEDIUM 6.4
CVE-2025-68657

Espressif ESP-IDF USB Host HID (Human Interface Device) Driver allows access to HID devices. Prior to 1.1.0, calls to hid_host_device_close() can fre…

Fix: 1.1.0+
Fix from $1,600 2026-01-12
Unclassified MEDIUM 5.8
CVE-2026-20026

Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attack…

Mitigation only
Fix from $1,600 2026-01-07
Fastconnect 6200 Firmware HIGH 7.8
CVE-2025-47396

Memory corruption occurs when a secure application is launched on a device with insufficient memory.

Patch available
Fix from $1,950 2026-01-07
Cologne Firmware HIGH 7.8
CVE-2025-47356

Memory Corruption when multiple threads concurrently access and modify shared resources.

Mitigation only
Fix from $1,950 2026-01-07
Android HIGH 7.0
CVE-2025-20801

In seninf, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege if a malicious actor has a…

Mitigation only
Fix from $1,950 2026-01-06
Android HIGH 7.8
CVE-2025-20781

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,950 2026-01-06
Android MEDIUM 6.7
CVE-2025-20786

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,600 2026-01-06
Android HIGH 7.8
CVE-2025-36919

In aocc_read of aoc_channel_dev.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2025-12-11
Windows 11 24h2 HIGH 7.0
CVE-2025-62469

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized a…

Fix: 10.0.26100.7392 / 10.0.26200.7392+
Fix from $1,950 2025-12-09
Imagemagick MEDIUM 6.1
CVE-2025-65955

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-9 and 6.9.13-34, there is a vulnerabili…

Fix: 6.9.13-34 / 7.1.2-9+
Fix from $1,600 2025-12-02
Windows 10 1607 HIGH 7.0
CVE-2025-62219

Double free in Microsoft Wireless Provisioning System allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8594 / 10.0.17763.8027+
Fix from $1,950 2025-11-11
Windows 10 1809 HIGH 7.0
CVE-2025-62215 KEVEPSS 6%

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized attacker to elevat…

Fix: 10.0.17763.8027 / 10.0.19044.6575+
Fix from $1,950 2025-11-11
Windows 10 1607 HIGH 7.8
CVE-2025-59505

Double free in Windows Smart Card allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8594 / 10.0.17763.8027+
Fix from $1,950 2025-11-11
Ipados MEDIUM 5.5
CVE-2025-43282

A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6…

Fix: 2.6 / 11.6+
Fix from $1,600 2025-10-15
Big Ip Access Policy Manager HIGH 7.5
CVE-2025-61990

When using a multi-bladed platform with more than one blade, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  No…

Fix: 15.1.10.8 / 16.1.6.1+
Fix from $1,950 2025-10-15
Windows 10 21h2 HIGH 7.0
CVE-2025-59289

Double free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.19044.6332 / 10.0.19045.6332+
Fix from $1,950 2025-10-14
Unclassified HIGH 7.0
CVE-2025-23282

NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to use a race condition to escalate privileges. A successful…

Mitigation only
Fix from $1,950 2025-10-10
Linux Kernel HIGH 7.8
CVE-2023-53626

In the Linux kernel, the following vulnerability has been resolved: ext4: fix possible double unlock when moving a directory

Patch available
Fix from $1,950 2025-10-07
Linux Kernel HIGH 7.8
CVE-2022-50543

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix mr->map double free rxe_mr_cleanup() which tries to free mr->map …

Fix: 6.0.16 / 6.1.2+
Fix from $1,950 2025-10-07
Linux Kernel HIGH 7.8
CVE-2022-50536

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix repeated calls to sock_put() when msg has more_data In tcp_bp…

Fix: 5.4.229 / 5.10.163+
Fix from $1,950 2025-10-07
Linux Kernel HIGH 7.8
CVE-2023-53616

In the Linux kernel, the following vulnerability has been resolved: jfs: fix invalid free of JFS_IP(ipimap)->i_imap in diUnmount syzbot found an in…

Fix: 4.14.326 / 4.19.295+
Fix from $1,950 2025-10-04
Linux Kernel HIGH 7.8
CVE-2023-53596

In the Linux kernel, the following vulnerability has been resolved: drivers: base: Free devm resources when unregistering a device In the current c…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2025-10-04
Linux Kernel HIGH 7.8
CVE-2022-50499

In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: Fix double free in dvb_register_device() In function dvb_regis…

Fix: 4.9.337 / 4.14.303+
Fix from $1,950 2025-10-04
Linux Kernel HIGH 7.8
CVE-2022-50470

In the Linux kernel, the following vulnerability has been resolved: xhci: Remove device endpoints from bandwidth list when freeing the device Endpo…

Fix: 4.9.332 / 4.14.298+
Fix from $1,950 2025-10-04