Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 7.5
CVE-2026-7349

Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an attacker on the local network segment to execute arbitrary code inside a s…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.3
CVE-2026-7350

Use after free in WebMIDI in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.3
CVE-2026-7352

Use after free in Media in Google Chrome on Android prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to pot…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.8
CVE-2026-7335

Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.8
CVE-2026-7336

Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted …

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 7.5
CVE-2026-7338

Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an attacker on the local network segment to potentially exploit heap corrupti…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.8
CVE-2026-7341

Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted …

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.8
CVE-2026-7342

Use after free in WebView in Google Chrome on Android prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox vi…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 7.5
CVE-2026-7343

Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to pot…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome HIGH 8.8
CVE-2026-7344

Use after free in Accessibility in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer proces…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Chrome CRITICAL 9.6
CVE-2026-7333

Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 147.0.7727.138+
Fix from $2,300 2026-04-28
Chrome HIGH 8.8
CVE-2026-7334

Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 147.0.7727.138+
Fix from $1,950 2026-04-28
Firefox HIGH 7.3
CVE-2026-7322

Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presum…

Fix: 115.35.1 / 140.10.1+
Fix from $1,950 2026-04-28
Pdf Editor MEDIUM 5.5
CVE-2026-5939

A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to crash and resulting in an arbi…

Fix: 14.0.4 / 2026.1.1+
Fix from $1,600 2026-04-27
Pdf Editor MEDIUM 5.5
CVE-2026-5940

Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, leading to program crashes.

Fix: 13.2.4 / 14.0.4+
Fix from $1,600 2026-04-27
Pdf Editor MEDIUM 5.5
CVE-2026-5942

Flaws in page lifecycle management allow document structure changes to desynchronize internal component states, causing subsequent operations to acce…

Fix: 13.2.4 / 14.0.4+
Fix from $1,600 2026-04-27
Pdf Editor HIGH 7.8
CVE-2026-5943

Document structural anomalies caused inconsistencies between page element relationships and internal index states. When scripts triggered document mo…

Fix: 13.2.4 / 14.0.4+
Fix from $1,950 2026-04-27
Firefox HIGH 7.5
CVE-2026-6785

Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showe…

Fix: 115.35.0 / 140.10.0+
Fix from $1,950 2026-04-26
Firefox HIGH 7.5
CVE-2026-6786

Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory…

Fix: 140.10.0 / 150.0+
Fix from $1,950 2026-04-26
Linux Kernel HIGH 7.8
CVE-2026-31665

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: fix use-after-free in timeout object destroy nft_ct_timeout_…

Fix: 5.10.253 / 5.15.203+
Fix from $1,950 2026-04-24
Linux Kernel CRITICAL 9.8
CVE-2026-31669

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix slab-use-after-free in __inet_lookup_established The ehash table loo…

Fix: 5.15.203 / 6.1.169+
Fix from $2,300 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31650

In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix use-after-free on disconnect The vub300 driver maintains an ex…

Fix: 6.18.23 / 6.19.13+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31652

In the Linux kernel, the following vulnerability has been resolved: mm/damon/stat: deallocate damon_call() failure leaking damon_ctx damon_stat_sta…

Fix: 6.18.23 / 6.19.13+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31644

In the Linux kernel, the following vulnerability has been resolved: net: lan966x: fix use-after-free and leak in lan966x_fdma_reload() When lan966x…

Fix: 6.12.82 / 6.18.23+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31597

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix use-after-free in ocfs2_fault() when VM_FAULT_RETRY filemap_fault() …

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24
Linux Kernel CRITICAL 9.8
CVE-2026-31589

In the Linux kernel, the following vulnerability has been resolved: mm: call ->free_folio() directly in folio_unmap_invalidate() We can only call f…

Fix: 6.19.14 / 7.0.1+
Fix from $2,300 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31583

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free in em28xx_v4l2_open() em28xx_v4l2_open() read…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31584

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: fix use-after-free in encoder release path The fops_vc…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31586

In the Linux kernel, the following vulnerability has been resolved: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() cgwb_release_workfn…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31587

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm: move component registration to unmanaged version q6apm compo…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24