Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
HIGH 7.8 CVE-2026-31471 In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: only publish mode_data after clone setup iptfs_clone_state() store… Linux Kernel 6.18.21 / 6.19.11+ Fix from $1,9502026-04-22 MEDIUM 5.1 CVE-2026-6654 Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skip… Thin Vec No fix yet Fix from $1,6002026-04-20 CRITICAL 9.8 CVE-2026-33824 KEVEPSS 56% Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $2,3002026-04-14 HIGH 7.0 CVE-2026-32219 Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.8246 / 10.0.26100.32690+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-32074 Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8644 / 10.0.19044.7184+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-32069 Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8644 / 10.0.19044.7184+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26179 Double free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.22631.6936 / 10.0.25398.2274+ Fix from $1,9502026-04-14 HIGH 7.0 CVE-2026-26166 Double free in Windows Shell allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.20348.5020 / 10.0.22631.6936+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-26163 Double free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9060 / 10.0.17763.8644+ Fix from $1,9502026-04-14 MEDIUM 5.6 CVE-2026-34867 Double free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability. Harmonyos No fix yet Fix from $1,6002026-04-13 MEDIUM 6.2 CVE-2026-31053 A double free vulnerability exists in librz/bin/format/le/le.c in the function le_load_fixup_record(). When processing malformed or circular LE fixup… Rizin Patch available Fix from $1,6002026-04-06 HIGH 7.8 CVE-2026-23449 In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: Fix double-free in teql_master_xmit Whenever a TEQL devices ha… Linux Kernel 6.1.167 / 6.6.130+ Fix from $1,9502026-04-03 HIGH 7.8 CVE-2026-23408 In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix double free of ns_name in aa_replace_profiles() if ns_name is NUL… Linux Kernel 5.10.253 / 5.15.203+ Fix from $1,9502026-04-01 MEDIUM 5.3 CVE-2026-5186 A weakness has been identified in Nothings stb up to 2.30. This impacts the function stbi__load_gif_main of the file stb_image.h of the component Mul… Mitigation only Fix from $1,6002026-03-31 MEDIUM 5.3 CVE-2026-33995 FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, a double-free vulnerability in kerberos_AcceptSecurityConte… Freerdp 3.24.2+ Fix from $1,6002026-03-30 HIGH 7.8 CVE-2026-23387 In the Linux kernel, the following vulnerability has been resolved: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() devm_add_action… Linux Kernel 6.6.130 / 6.12.77+ Fix from $1,9502026-03-25 HIGH 7.5 CVE-2026-4358 A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory is… MongoDB 7.0.31 / 8.0.20+ Fix from $1,9502026-03-17 MEDIUM 5.1 CVE-2026-23868 Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handling. The conditions ne… Giflib after 6.1.1 Fix from $1,6002026-03-10 HIGH 7.5 CVE-2025-69650 GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT r… Binutils after 2.46 Fix from $1,9502026-03-06 MEDIUM 5.5 CVE-2026-28537 Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability. Harmonyos Mitigation only Fix from $1,6002026-03-05 HIGH 7.8 CVE-2025-71238 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix bsg_done() causing double free Kernel panic observed on syst… Linux Kernel 5.10.251 / 5.15.201+ Fix from $1,9502026-03-04 MEDIUM 5.0 CVE-2025-61145 libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c. Libtiff 4.7.1+ Fix from $1,6002026-02-23 MEDIUM 5.5 CVE-2025-12343 A flaw was found in FFmpeg’s TensorFlow backend within the libavfilter/dnn_backend_tf.c source file. The issue occurs in the dnn_execute_model_tf() f… Ffmpeg 8.1+ Fix from $1,6002026-02-18 HIGH 7.8 CVE-2026-23162 In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure After a successful auxiliary_dev… Linux Kernel 6.18.9+ Fix from $1,9502026-02-14 HIGH 7.5 CVE-2026-25556 MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during displa… Mupdf after 1.27.0 Fix from $1,9502026-02-06 HIGH 7.8 CVE-2026-23098 In the Linux kernel, the following vulnerability has been resolved: netrom: fix double-free in nr_route_frame() In nr_route_frame(), old_skb is imm… Linux Kernel 5.10.249 / 5.15.199+ Fix from $1,9502026-02-04 HIGH 7.8 CVE-2026-23068 In the Linux kernel, the following vulnerability has been resolved: spi: spi-sprd-adi: Fix double free in probe error path The driver currently use… Linux Kernel 6.1.162 / 6.6.122+ Fix from $1,9502026-02-04 MEDIUM 5.5 CVE-2026-20415 In imgsys, there is a possible memory corruption due to improper locking. This could lead to local denial of service if a malicious actor has already… Android Mitigation only Fix from $1,6002026-02-02 MEDIUM 6.5 CVE-2025-57785 A Double Free in XSLT `show_index` has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data wh… Hiawatha Webserver Mitigation only Fix from $1,6002026-01-26 HIGH 7.5 CVE-2026-21918 A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allows an unauthenticated, networ… Junos 22.4+ Fix from $1,9502026-01-15