Vulnerability index

Browse CVEs

7,925 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Nokogiri MEDIUM 5.3
CVE-2026-57437

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::XPathContext did not keep its sour…

Fix: 1.19.4+
Fix from $1,600 2026-06-25
Nokogiri HIGH 8.2
CVE-2026-57236

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, calling Document#encoding= with an invalid encodi…

Fix: 1.19.4+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53272

In the Linux kernel, the following vulnerability has been resolved: erofs: fix use-after-free on sbi->sync_decompress z_erofs_decompress_kickoff() …

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53273

In the Linux kernel, the following vulnerability has been resolved: tee: optee: prevent use-after-free when the client exits before the supplicant …

Fix: 5.5 / 5.10.259+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 8.8
CVE-2026-53275

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Fix use-after-free when processing MLD queries When processing an …

Fix: 5.15.210 / 6.1.176+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53276

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix a use-after-free of the hci_conn pointer In iso_sock_rebind…

Fix: 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53264

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: use RCU with deferred freeing for action lifecycle When NEW…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 8.0
CVE-2026-53256

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() rfcomm_get_sock…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53259

In the Linux kernel, the following vulnerability has been resolved: ipv6: anycast: insert aca into global hash under idev->lock syzbot reported a s…

Fix: 6.18.36 / 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel CRITICAL 9.8
CVE-2026-53260

In the Linux kernel, the following vulnerability has been resolved: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). syzbot re…

Fix: 7.0.13+
Fix from $2,300 2026-06-25
Linux Kernel CRITICAL 9.8
CVE-2026-53247

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown mtk_fre…

Fix: 6.6.143 / 6.12.94+
Fix from $2,300 2026-06-25
Linux Kernel HIGH 8.8
CVE-2026-53248

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Fix use-after-free in metadata dst teardown airoha_metadata_dst_fr…

Fix: 6.18.36 / 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53234

In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: Fix use-after-free during device removal The driver was using d…

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53239

In the Linux kernel, the following vulnerability has been resolved: xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() Fix …

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 8.8
CVE-2026-53240

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: fix use-after-free on first_skb in __input_process_payload __input…

Fix: 6.18.36 / 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53212

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix use-after-free on object destroy nft_tunnel_obj_dest…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 8.8
CVE-2026-53198

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL A defer…

Fix: 6.1.176 / 6.6.143+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53192

In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Fix UAF at snd_timer_user_params() At releasing a timer object, e.…

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53193

In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Forcibly close timer instances at closing When snd_timer object is…

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53185

In the Linux kernel, the following vulnerability has been resolved: zram: fix use-after-free in zram_bvec_write_partial() zram_read_page() picks th…

Fix: 6.6.143 / 6.12.94+
Fix from $1,950 2026-06-25
Linux Kernel CRITICAL 9.8
CVE-2026-53175

In the Linux kernel, the following vulnerability has been resolved: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush On netns t…

Fix: 6.18.36 / 7.0.13+
Fix from $2,300 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53157

In the Linux kernel, the following vulnerability has been resolved: net: phonet: free phonet_device after RCU grace period phonet_device_destroy() …

Fix: 5.10.260 / 5.15.211+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53160

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix use-after-free race in fastrpc_map_create fastrpc_map_lookup…

Fix: 6.1.176 / 6.6.143+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53161

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix use-after-free of fastrpc_user in workqueue context There is…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53156

In the Linux kernel, the following vulnerability has been resolved: nvmem: core: fix use-after-free bugs in error paths Fix several instances of er…

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Nsd HIGH 7.5
CVE-2026-12245

NSD from version 4.13.0 has a heap use-after-free bug in logging errors on TLS connections, causing a crash of the server process, which can be trigg…

Fix: 4.14.3+
Fix from $1,950 2026-06-25
OpenBSD HIGH 7.8
CVE-2026-57589

sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free …

Fix: after 7.9
Fix from $1,950 2026-06-25
Gpac MEDIUM 5.0
CVE-2025-60466

A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause…

Fix: 26.02.0+
Fix from $1,600 2026-06-25
Gpac HIGH 7.5
CVE-2025-60467

A use-after-free in the gf_filter_pid_inst_swap_delete_task function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attacke…

Fix: 26.02.0+
Fix from $1,950 2026-06-24
Chrome HIGH 8.8
CVE-2026-13038

Use after free in Autofill in Google Chrome on Windows prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a crafted HTML…

Fix: 149.0.7827.197+
Fix from $1,950 2026-06-24