Vulnerability index

Browse CVEs

7,918 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Windows 10 1607 HIGH 7.8
CVE-2026-62711

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-62705

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter Driver allows an authorized attack…

Fix: 10.0.26100.9106 / 10.0.26200.9106+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62707

Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 11 24h2 MEDIUM 6.4
CVE-2026-62708

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.

Fix: 10.0.26100.9106 / 10.0.26100.33222+
Fix from $4,000 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-62701

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-61939

Use after free in Winlogon allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1809 HIGH 7.0
CVE-2026-62690

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack…

Fix: 10.0.17763.9115 / 10.0.19044.7663+
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-62693

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attac…

Fix: 10.0.26100.9106 / 10.0.26200.9106+
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-61938

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

No fix yet
Fix from $4,900 2026-08-11
Windows 11 23h2 HIGH 7.8
CVE-2026-61934

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.22631.7517 / 10.0.26100.9106+
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-61927

Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.26100.9106 / 10.0.26100.33222+
Fix from $4,900 2026-08-11
Windows 11 23h2 HIGH 7.0
CVE-2026-61929

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.22631.7517 / 10.0.26100.9106+
Fix from $4,900 2026-08-11
Windows 10 1607 MEDIUM 6.6
CVE-2026-61920

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute c…

No fix yet
Fix from $4,000 2026-08-11
Windows 11 24h2 HIGH 7.0
CVE-2026-61361

Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.

Fix: 10.0.26100.9106 / 10.0.26100.33222+
Fix from $4,900 2026-08-11
Windows 11 24h2 HIGH 7.8
CVE-2026-61357

Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.

Fix: 10.0.26100.9106 / 10.0.26100.33222+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-61348

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.8
CVE-2026-61349

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1809 HIGH 7.0
CVE-2026-61346

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.9115 / 10.0.19044.7663+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-59122

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke…

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Windows 10 1607 HIGH 7.0
CVE-2026-59125

Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9418 / 10.0.17763.9115+
Fix from $4,900 2026-08-11
Unclassified MEDIUM 5.9
CVE-2026-24099

Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. System software adver…

No fix yet
Fix from $4,000 2026-08-11
Unclassified HIGH 8.3
CVE-2026-53415

Use after Free in the annotator function of Zoom Clients may allow a meeting participant to achieve remote code execution of another participant via …

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.8
CVE-2026-50060

A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.8
CVE-2026-50061

A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a…

No fix yet
Fix from $4,900 2026-08-11
Unclassified MEDIUM 6.7
CVE-2026-71968

OP-TEE OS through 4.10.0, fixed in commit 8794043, contains a use-after-free vulnerability in the Trusted Application loader that allows attackers wi…

No fix yet
Fix from $4,000 2026-08-10
Unclassified HIGH 8.7
CVE-2026-71847

Ruby JSON is a JSON implementation for Ruby. From 2.20.0 until 2.21.2, Ruby's JSON native C extension clears the consumed JSON::ResumableParser input…

No fix yet
Fix from $1,950 2026-08-07
Unclassified HIGH 8.1
CVE-2026-43631

llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the vocab pointer of llama-server when the --sleep-idle-se…

No fix yet
Fix from $1,950 2026-08-06
Unclassified HIGH 8.1
CVE-2026-43632

llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokenization endpoints (/tokeni…

No fix yet
Fix from $1,950 2026-08-06
Unclassified HIGH 7.8
CVE-2026-1289

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vul…

No fix yet
Fix from $1,950 2026-08-06
Chrome CRITICAL 9.6
CVE-2026-19175

Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted H…

Fix: 151.0.7922.109+
Fix from $2,300 2026-08-06