Vulnerability index

Browse CVEs

7,925 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2026-11633

Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code via a malicious perip…

Fix: 149.0.7827.103+
Fix from $1,950 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11634

Use after free in Gamepad in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Openvpn HIGH 7.4
CVE-2026-40215

A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak hea…

Fix: 2.6.20 / 2.7.2+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46308

In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: fix use-after-free in scpsys_get_bus_protection_legacy() In…

Fix: 6.18.30 / 7.0.7+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46301

In the Linux kernel, the following vulnerability has been resolved: spi: topcliff-pch: fix use-after-free on unbind Give the driver a chance to flu…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46285

In the Linux kernel, the following vulnerability has been resolved: mtd: docg3: fix use-after-free in docg3_release() In docg3_release(), the docg3…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 8.4
CVE-2026-46288

In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_changeset() The variable 'paren…

Fix: 6.12.86 / 6.18.27+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46280

In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to avoid use-after-free Patch s…

Fix: 6.1.176 / 6.6.140+
Fix from $1,950 2026-06-08
HTTP Server HIGH 7.3
CVE-2026-48913

Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted. This issue affects Apache HTTP Server: …

Fix: 2.4.68+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46274

In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_rem…

Fix: 5.9 / 6.6.141+
Fix from $1,950 2026-06-08
HTTP Server CRITICAL 9.8
CVE-2026-29167

Use After Free vulnerability in Apache HTTP Server with mod_ldap in per-directory configuration This issue affects Apache HTTP Server: from 2.4.0 th…

Fix: 2.4.68+
Fix from $2,300 2026-06-08
Enterprise Linux HIGH 7.8
CVE-2026-50260

A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple SyncCounters and awaits on those …

Fix: 21.1.23 / 24.1.12+
Fix from $1,950 2026-06-05
Enterprise Linux HIGH 7.8
CVE-2026-50261

A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multiple SyncCounters can trigger a …

Fix: 21.1.23 / 24.1.12+
Fix from $1,950 2026-06-05
Enterprise Linux MEDIUM 5.5
CVE-2026-50263

A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing …

Fix: 21.1.23 / 24.1.12+
Fix from $1,600 2026-06-05
Enterprise Linux HIGH 7.8
CVE-2026-50257

A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger…

Fix: 21.1.23 / 24.1.12+
Fix from $1,950 2026-06-05
Chrome HIGH 8.8
CVE-2026-11303

Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted P…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome HIGH 8.8
CVE-2026-11304

Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome HIGH 8.8
CVE-2026-11305

Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted P…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome HIGH 8.8
CVE-2026-11306

Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted P…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome HIGH 8.8
CVE-2026-11307

Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted P…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome CRITICAL 9.6
CVE-2026-11293

Use after free in Input in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML …

Fix: 149.0.7827.53+
Fix from $2,300 2026-06-05
Chrome HIGH 8.8
CVE-2026-11262

Use after free in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chro…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-05
Chrome CRITICAL 9.6
CVE-2026-11250

Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process t…

Fix: 149.0.7827.53+
Fix from $2,300 2026-06-05
Chrome HIGH 8.1
CVE-2026-11224

Use after free in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious netwo…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.8
CVE-2026-11230

Use after free in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome MEDIUM 6.5
CVE-2026-11208

Use after free in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process m…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-04
Chrome HIGH 8.8
CVE-2026-11201

Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to …

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.1
CVE-2026-11185

Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to execute arb…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.8
CVE-2026-11188

Use after free in USB in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a craf…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.8
CVE-2026-11177

Use after free in Omnibox in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04