Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2026-31471
In the Linux kernel, the following vulnerability has been resolved:
xfrm: iptfs: only publish mode_data after clone setup
iptfs_clone_state() store…
Linux Kernel
6.18.21 / 6.19.11+
MEDIUM 5.1
CVE-2026-6654
Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skip…
Thin Vec
No fix yet
CRITICAL 9.8
CVE-2026-33824 KEVEPSS 56%
Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.
Windows 10 1607
10.0.14393.9060 / 10.0.17763.8644+
HIGH 7.0
CVE-2026-32219
Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Windows 11 24h2
10.0.26100.8246 / 10.0.26100.32690+
HIGH 7.8
CVE-2026-32074
Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Windows 10 1809
10.0.17763.8644 / 10.0.19044.7184+
HIGH 7.8
CVE-2026-32069
Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Windows 10 1809
10.0.17763.8644 / 10.0.19044.7184+
HIGH 7.8
CVE-2026-26179
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Windows 11 23h2
10.0.22631.6936 / 10.0.25398.2274+
HIGH 7.0
CVE-2026-26166
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Windows 11 23h2
10.0.20348.5020 / 10.0.22631.6936+
HIGH 7.8
CVE-2026-26163
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.9060 / 10.0.17763.8644+
MEDIUM 5.6
CVE-2026-34867
Double free vulnerability in the multi-mode input system.
Impact: Successful exploitation of this vulnerability may affect availability.
Harmonyos
No fix yet
MEDIUM 6.2
CVE-2026-31053
A double free vulnerability exists in librz/bin/format/le/le.c in the function le_load_fixup_record(). When processing malformed or circular LE fixup…
Rizin
Patch available
HIGH 7.8
CVE-2026-23449
In the Linux kernel, the following vulnerability has been resolved:
net/sched: teql: Fix double-free in teql_master_xmit
Whenever a TEQL devices ha…
Linux Kernel
6.1.167 / 6.6.130+
HIGH 7.8
CVE-2026-23408
In the Linux kernel, the following vulnerability has been resolved:
apparmor: Fix double free of ns_name in aa_replace_profiles()
if ns_name is NUL…
Linux Kernel
5.10.253 / 5.15.203+
MEDIUM 5.3
CVE-2026-5186
A weakness has been identified in Nothings stb up to 2.30. This impacts the function stbi__load_gif_main of the file stb_image.h of the component Mul…
Mitigation only
MEDIUM 5.3
CVE-2026-33995
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, a double-free vulnerability in kerberos_AcceptSecurityConte…
Freerdp
3.24.2+
HIGH 7.8
CVE-2026-23387
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe()
devm_add_action…
Linux Kernel
6.6.130 / 6.12.77+
HIGH 7.5
CVE-2026-4358
A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory is…
MongoDB
7.0.31 / 8.0.20+
MEDIUM 5.1
CVE-2026-23868
Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handling. The conditions ne…
Giflib
after 6.1.1
HIGH 7.5
CVE-2025-69650
GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT r…
Binutils
after 2.46
MEDIUM 5.5
CVE-2026-28537
Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability.
Harmonyos
Mitigation only
HIGH 7.8
CVE-2025-71238
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Fix bsg_done() causing double free
Kernel panic observed on syst…
Linux Kernel
5.10.251 / 5.15.201+
MEDIUM 5.0
CVE-2025-61145
libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.
Libtiff
4.7.1+
MEDIUM 5.5
CVE-2025-12343
A flaw was found in FFmpeg’s TensorFlow backend within the libavfilter/dnn_backend_tf.c source file. The issue occurs in the dnn_execute_model_tf() f…
Ffmpeg
8.1+
HIGH 7.8
CVE-2026-23162
In the Linux kernel, the following vulnerability has been resolved:
drm/xe/nvm: Fix double-free on aux add failure
After a successful auxiliary_dev…
Linux Kernel
6.18.9+
HIGH 7.5
CVE-2026-25556
MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during displa…
Mupdf
after 1.27.0
HIGH 7.8
CVE-2026-23098
In the Linux kernel, the following vulnerability has been resolved:
netrom: fix double-free in nr_route_frame()
In nr_route_frame(), old_skb is imm…
Linux Kernel
5.10.249 / 5.15.199+
HIGH 7.8
CVE-2026-23068
In the Linux kernel, the following vulnerability has been resolved:
spi: spi-sprd-adi: Fix double free in probe error path
The driver currently use…
Linux Kernel
6.1.162 / 6.6.122+
MEDIUM 5.5
CVE-2026-20415
In imgsys, there is a possible memory corruption due to improper locking. This could lead to local denial of service if a malicious actor has already…
Android
Mitigation only
MEDIUM 6.5
CVE-2025-57785
A Double Free in XSLT `show_index` has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data wh…
Hiawatha Webserver
Mitigation only
HIGH 7.5
CVE-2026-21918
A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allows an unauthenticated, networ…
Junos
22.4+