Vulnerability index

Browse CVEs

7,925 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome CRITICAL 9.6
CVE-2026-14390

Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML …

Fix: 150.0.7871.46+
Fix from $2,300 2026-07-01
Chrome HIGH 8.8
CVE-2026-14393

Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Chrome HIGH 8.8
CVE-2026-14394

Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Edge Chromium HIGH 8.3
CVE-2026-50521

Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.

Fix: 149.0.4022.67+
Fix from $1,950 2026-07-01
Imagemagick MEDIUM 5.5
CVE-2026-55510

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, when identif…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Triton Inference Server HIGH 7.5
CVE-2026-24266

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A successful exploit of this vu…

Fix: after 26.03
Fix from $1,950 2026-07-01
Linux Kernel HIGH 7.8
CVE-2026-53341

In the Linux kernel, the following vulnerability has been resolved: fhandle: fix UAF due to unlocked ->mnt_ns read in may_decode_fh() may_decode_fh…

Fix: 6.12.95 / 6.18.36+
Fix from $1,950 2026-07-01
Unclassified MEDIUM 6.3
CVE-2026-54899

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. Prior to version 3.17.2, disabling symbol_keys on a reused Oj::Par…

Mitigation only
Fix from $1,600 2026-07-01
Unclassified MEDIUM 6.3
CVE-2026-54901

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, Oj::Parser in usual mode does not mar…

Mitigation only
Fix from $1,600 2026-07-01
Unclassified MEDIUM 6.3
CVE-2026-54902

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. Prior to version 3.17.2, is vulnerable to Use-After-Free when in S…

Mitigation only
Fix from $1,600 2026-07-01
Chrome HIGH 8.8
CVE-2026-14149

Use after free in Audio in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page.…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14113

Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to po…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.8
CVE-2026-14121

Use after free in Chromoting in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via malicious netwo…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome HIGH 8.8
CVE-2026-14102

Use after free in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-14103

Use after free in SSL in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from …

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome HIGH 8.8
CVE-2026-14107

Use after free in Scheduling in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft…

Fix: 150.0.7871.46+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14108

Use after free in PDFium in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted P…

Fix: 150.0.7871.46+
Fix from $1,950 2026-06-30
Chrome HIGH 8.1
CVE-2026-14111

Use after free in WebProtect in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to exe…

Fix: 150.0.7871.46+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14091

Use after free in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted…

Fix: 150.0.7871.46+
Fix from $1,950 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14093

Use after free in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perf…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome HIGH 7.8
CVE-2026-14094

Use after free in Installer in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalation via …

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14099

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific …

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 7.5
CVE-2026-14064

Use after free in PageInfo in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14067

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTM…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-14048

Use after free in Chromecast in Google Chrome prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive…

Fix: 150.0.7871.46+
Fix from $1,600 2026-06-30
Chrome HIGH 8.8
CVE-2026-14040

Use after free in BrowserTag in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14043

Use after free in GetUserMedia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14044

Use after free in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome HIGH 8.8
CVE-2026-14024

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gest…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14025

Use after free in Views in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestur…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30