Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Unclassified HIGH 7.8
CVE-2025-33217

NVIDIA Display Driver for Windows contains a vulnerability where an attacker could trigger a use after free. A successful exploit of this vulnerabili…

Mitigation only
Fix from $1,950 2026-01-28
Unclassified HIGH 7.8
CVE-2025-33220

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause heap memory access after the memory is …

Mitigation only
Fix from $1,950 2026-01-28
Suricata CRITICAL 9.1
CVE-2026-22264

Suricata is a network IDS, IPS and NSM engine. Prior to version 8.0.3 and 7.0.14, an unsigned integer overflow can lead to a heap use-after-free cond…

Fix: 7.0.14 / 8.0.3+
Fix from $2,300 2026-01-27
Firefox HIGH 8.8
CVE-2026-24869

Use-after-free in the Layout: Scrolling and Overflow component. This vulnerability was fixed in Firefox 147.0.2.

Fix: 147.0.2+
Fix from $1,950 2026-01-27
Linux Kernel HIGH 7.8
CVE-2026-23012

In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: remove call_control in inactive contexts If damon_call() is exec…

Fix: 6.18.7+
Fix from $1,950 2026-01-25
Linux Kernel HIGH 7.8
CVE-2026-23013

In the Linux kernel, the following vulnerability has been resolved: net: octeon_ep_vf: fix free_irq dev_id mismatch in IRQ rollback octep_vf_reques…

Fix: 6.12.67 / 6.18.7+
Fix from $1,950 2026-01-25
Linux Kernel HIGH 7.8
CVE-2026-23010

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix use-after-free in inet6_addr_del(). syzbot reported use-after-free of…

Fix: 6.1.162 / 6.6.122+
Fix from $1,950 2026-01-25
Linux Kernel HIGH 7.8
CVE-2026-23001

In the Linux kernel, the following vulnerability has been resolved: macvlan: fix possible UAF in macvlan_forward_source() Add RCU protection on (st…

Fix: 5.10.249 / 5.15.199+
Fix from $1,950 2026-01-25
Linux Kernel HIGH 7.8
CVE-2025-71162

In the Linux kernel, the following vulnerability has been resolved: dmaengine: tegra-adma: Fix use-after-free A use-after-free bug exists in the Te…

Fix: 5.10.249 / 5.15.199+
Fix from $1,950 2026-01-25
Ddk CRITICAL 9.8
CVE-2025-13952

A web page that contains unusual GPU shader code is loaded from the Internet into the GPU compiler process triggers a write use-after-free crash in t…

Fix: 25.3+
Fix from $2,300 2026-01-24
Linux Kernel HIGH 7.8
CVE-2026-22995

In the Linux kernel, the following vulnerability has been resolved: ublk: fix use-after-free in ublk_partition_scan_work A race condition exists be…

Fix: 6.18.6+
Fix from $1,950 2026-01-23
Linux Kernel HIGH 7.8
CVE-2026-22980

In the Linux kernel, the following vulnerability has been resolved: nfsd: provide locking for v4_end_grace Writing to v4_end_grace can race with se…

Fix: 5.10.248 / 5.15.198+
Fix from $1,950 2026-01-23
Linux Kernel HIGH 7.8
CVE-2025-71159

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free warning in btrfs_get_or_create_delayed_node() Previou…

Fix: 6.18.6+
Fix from $1,950 2026-01-23
8180 Ip Audio Alerter Firmware CRITICAL 9.8
CVE-2026-0794

ALGO 8180 IP Audio Alerter SIP Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co…

Mitigation only
Fix from $2,300 2026-01-23
Unclassified HIGH 7.8
CVE-2025-15062

Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2026-01-23
Chrome HIGH 8.8
CVE-2026-0908

Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 144.0.7559.59 / 144.0.7559.60+
Fix from $1,950 2026-01-20
Freerdp CRITICAL 9.8
CVE-2026-23883

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, `xf_Pointer_New` frees `cursorPixels` on failure, then `poi…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Freerdp CRITICAL 9.8
CVE-2026-23884

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, offscreen bitmap deletion leaves `gdi->drawing` pointing to…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Quickjs HIGH 8.8
CVE-2026-1144

A vulnerability was detected in quickjs-ng quickjs up to 0.11.0. Affected is an unknown function of the file quickjs.c of the component Atomics Ops H…

Fix: after 0.11.0
Fix from $1,950 2026-01-19
Assimp HIGH 7.8
CVE-2025-15538

A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. Affected by this vulnerability is the function Assimp::LW…

Fix: after 6.0.2
Fix from $1,950 2026-01-18
Junos MEDIUM 6.5
CVE-2026-21921

A Use After Free vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based attacker aut…

Fix: 22.4+
Fix from $1,600 2026-01-15
Junos HIGH 7.1
CVE-2026-21908

A Use After Free vulnerability was identified in the 802.1X authentication daemon (dot1xd) of Juniper Networks Junos OS and Junos OS Evolved that cou…

Mitigation only
Fix from $1,950 2026-01-15
Ecostruxure Power Build Rapsody HIGH 7.8
CVE-2025-13845

CWE-416: Use After Free vulnerability that could cause remote code execution when the end user imports the malicious project file (SSD file) into Rap…

Fix: after 2.8.8.0100
Fix from $1,950 2026-01-15
Freerdp HIGH 8.1
CVE-2026-22856

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a race in the serial channel IRP thread tracking allows a heap use‑…

Fix: 3.20.1+
Fix from $1,950 2026-01-14
Freerdp CRITICAL 9.8
CVE-2026-22857

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a heap use-after-free occurs in irp_thread_func because the IRP is …

Fix: 3.20.1+
Fix from $2,300 2026-01-14
Freerdp MEDIUM 5.9
CVE-2026-22851

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a race condition between the RDPGFX dynamic virtual channel thread …

Fix: 3.20.1+
Fix from $1,600 2026-01-14
Freeimage CRITICAL 9.8
CVE-2025-70968

FreeImage 3.18.0 contains a Use After Free in PluginTARGA.cpp;loadRLE().

Mitigation only
Fix from $2,300 2026-01-14
Linux Kernel HIGH 7.8
CVE-2025-71110

In the Linux kernel, the following vulnerability has been resolved: mm/slub: reset KASAN tag in defer_free() before accessing freed memory When CON…

Fix: 6.18.3+
Fix from $1,950 2026-01-14
Substance 3d Stager HIGH 7.8
CVE-2026-21287

Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.6+
Fix from $1,950 2026-01-13
Windows Software Development Kit HIGH 7.0
CVE-2026-21219

Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.

Fix: 10.0.26100.7463+
Fix from $1,950 2026-01-13