Vulnerability index

Browse CVEs

7,925 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Windows 10 1809 HIGH 7.8
CVE-2026-42991

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack…

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Remote Desktop Client HIGH 7.5
CVE-2026-44801

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Fix: 1.2.7214 / 2.0.1193.0+
Fix from $1,950 2026-06-09
Windows 10 1809 HIGH 7.8
CVE-2026-42983

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Windows 10 1809 HIGH 7.0
CVE-2026-42984

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Remote Desktop Client HIGH 8.8
CVE-2026-42985

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Fix: 1.2.7214 / 2.0.1193.0+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-42986

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows Server 2012 HIGH 8.1
CVE-2026-42987

Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1809 HIGH 7.8
CVE-2026-42978

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack…

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Windows 10 1809 HIGH 7.8
CVE-2026-42979

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack…

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.0
CVE-2026-42911

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Remote Desktop Client HIGH 7.5
CVE-2026-42913

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker …

Fix: 1.2.7214 / 10.0.20348.5256+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-42905

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Remote Desktop Client HIGH 7.5
CVE-2026-42909

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker …

Fix: 1.2.7214 / 2.0.1193.0+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.0
CVE-2026-42836

Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an autho…

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.0
CVE-2026-34335

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46330

In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This reverts commit d7cd421da9da2cc…

Fix: 6.19.4+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46319

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flo…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46323

In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags bet…

Fix: 6.1.176 / 6.6.142+
Fix from $1,950 2026-06-09
Unclassified MEDIUM 6.4
CVE-2026-41982

Race condition vulnerability in the IPC module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2026-06-09
Chrome HIGH 8.8
CVE-2026-11698

Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11699

Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.3
CVE-2026-11700

Use after free in Tracing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11687

Use after free in Dawn in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.3
CVE-2026-11692

Use after free in Read Anything in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 149.0.7827.102+
Fix from $1,950 2026-06-09
Chrome HIGH 7.5
CVE-2026-11694

Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to execut…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.3
CVE-2026-11679

Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to po…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11680

Use after free in Media in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via …

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11681

Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 149.0.7827.102+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11683

Use after free in WebCodecs in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome HIGH 8.8
CVE-2026-11670

Use after free in PDF in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09