Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Phantompdf HIGH 7.8
CVE-2021-31460

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.37598
Fix from $1,950 2021-05-07
3d HIGH 7.8
CVE-2021-31470

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Foxit Reader HIGH 7.8
CVE-2021-31441

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Foxit Reader HIGH 7.8
CVE-2021-31450

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Foxit Reader HIGH 7.8
CVE-2021-31451

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Foxit Reader HIGH 7.8
CVE-2021-31453

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Foxit Reader HIGH 7.8
CVE-2021-31455

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
Phantompdf HIGH 7.8
CVE-2021-31456

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.37598
Fix from $1,950 2021-05-07
Phantompdf HIGH 7.8
CVE-2021-31457

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.1.37598
Fix from $1,950 2021-05-07
Fsm10055 Firmware HIGH 7.8
CVE-2020-11295

Use after free in camera If the threadmanager is being cleaned up while the worker thread is processing objects in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,950 2021-05-07
Apq8009w Firmware HIGH 7.8
CVE-2021-1891

A possible use-after-free occurrence in audio driver can happen when pointers are not properly handled in Snapdragon Auto, Snapdragon Compute, Snapdr…

Patch available
Fix from $1,950 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2021-1905 KEV

Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snap…

Patch available
Fix from $1,950 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2021-1927

Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Patch available
Fix from $1,950 2021-05-07
Debian Linux CRITICAL 9.8
CVE-2021-20204

A heap memory corruption problem (use after free) can be triggered in libgetdata v0.10.0 when processing maliciously crafted dirfile databases. This …

Mitigation only
Fix from $2,300 2021-05-06
Exim CRITICAL 9.8
CVE-2020-28018EPSS 57%

Exim 4 before 4.94.2 allows Use After Free in smtp_reset in certain situations that may be common for builds with OpenSSL.

Fix: 4.94.2+
Fix from $2,300 2021-05-06
Chrome HIGH 8.8
CVE-2021-21232

Use after free in Dev Tools in Google Chrome prior to 90.0.4430.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 90.0.4430.93+
Fix from $1,950 2021-04-30
Debian Linux MEDIUM 5.5
CVE-2021-21417

fluidsynth is a software synthesizer based on the SoundFont 2 specifications. A use after free violation was discovered in fluidsynth, that can be tr…

Fix: 2.1.8+
Fix from $1,600 2021-04-29
Chrome CRITICAL 9.6
CVE-2021-21201

Use after free in permissions in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 90.0.4430.72+
Fix from $2,300 2021-04-26
Chrome HIGH 8.6
CVE-2021-21202

Use after free in extensions in Google Chrome prior to 90.0.4430.72 allowed an attacker who convinced a user to install a malicious extension to pote…

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21203

Use after free in Blink in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21204

Use after free in Blink in Google Chrome on OS X prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21206 KEVEPSS 9%

Use after free in Blink in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 89.0.4389.128+
Fix from $1,950 2021-04-26
Chrome HIGH 8.6
CVE-2021-21207

Use after free in IndexedDB in Google Chrome prior to 90.0.4430.72 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21213

Use after free in WebMIDI in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21214

Use after free in Network API in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted C…

Fix: 90.0.4430.72+
Fix from $1,950 2021-04-26
Chrome CRITICAL 9.6
CVE-2021-21226

Use after free in navigation in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially…

Fix: 90.0.4430.85+
Fix from $2,300 2021-04-26
Leocad MEDIUM 5.5
CVE-2021-31804

LeoCAD before 21.03 sometimes allows a use-after-free during the opening of a new document.

Fix: 21.03+
Fix from $1,600 2021-04-26
Connect Secure CRITICAL 10.0
CVE-2021-22893 KEVEPSS 47%

Pulse Connect Secure 9.0R3/9.1R1 and higher is vulnerable to an authentication bypass vulnerability exposed by the Windows File Share Browser and Pul…

Mitigation only
Fix from $2,300 2021-04-23
Junos MEDIUM 5.9
CVE-2021-0270

On PTX Series and QFX10k Series devices with the "inline-jflow" feature enabled, a use after free weakness in the Packet Forwarding Engine (PFE) micr…

Mitigation only
Fix from $1,600 2021-04-22
Junos MEDIUM 6.5
CVE-2021-0262

Through routine static code analysis of the Juniper Networks Junos OS software codebase, the Secure Development Life Cycle team identified a Use Afte…

Mitigation only
Fix from $1,600 2021-04-22