Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Wasmi HIGH 7.8
CVE-2025-66627

Wasmi is a WebAssembly interpreter focused on constrained and embedded systems. In versions 0.41.0, 0.41.1, 0.42.0 through 0.47.1, 0.50.0 through 0.5…

Fix: 0.41.2 / 0.47.1+
Fix from $1,950 2025-12-09
Firefox CRITICAL 9.8
CVE-2025-14326

Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146.

Fix: 146.0+
Fix from $2,300 2025-12-09
Firefox CRITICAL 9.8
CVE-2025-14321

Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 1…

Fix: 140.6.0 / 146.0+
Fix from $2,300 2025-12-09
C Ares MEDIUM 5.9
CVE-2025-62408

c-ares is an asynchronous resolver library. Versions 1.32.3 through 1.34.5 terminate a query after maximum attempts when using read_answer() and pro…

Fix: 1.34.6+
Fix from $1,600 2025-12-08
Imagemagick MEDIUM 6.1
CVE-2025-65955

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-9 and 6.9.13-34, there is a vulnerabili…

Fix: 6.9.13-34 / 7.1.2-9+
Fix from $1,600 2025-12-02
Chrome HIGH 8.8
CVE-2025-13638

Use after free in Media Stream in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 143.0.7499.40+
Fix from $1,950 2025-12-02
Chrome HIGH 8.8
CVE-2025-13633

Use after free in Digital Credentials in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who had compromised the renderer process to p…

Fix: 143.0.7499.40+
Fix from $1,950 2025-12-02
Android MEDIUM 6.7
CVE-2025-20775

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,600 2025-12-02
Android MEDIUM 6.7
CVE-2025-20770

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,600 2025-12-02
Android MEDIUM 6.7
CVE-2025-20772

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,600 2025-12-02
Android MEDIUM 6.7
CVE-2025-20773

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has al…

Mitigation only
Fix from $1,600 2025-12-02
Streaming Media MEDIUM 6.5
CVE-2025-65407

A use-after-free in the MPEG1or2Demux::newElementaryStream() function of Live555 Streaming Media v2018.09.02 allows attackers to cause a Denial of Se…

No fix yet
Fix from $1,600 2025-12-01
Streaming Media MEDIUM 6.5
CVE-2025-65405

A use-after-free in the ADTSAudioFileSource::samplingFrequency() function of Live555 Streaming Media v2018.09.02 allows attackers to cause a Denial o…

No fix yet
Fix from $1,600 2025-12-01
Ddk MEDIUM 5.9
CVE-2025-58408

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger reads of stale data that can lead to kernel exce…

Fix: after 25.2
Fix from $1,600 2025-12-01
5th Gen Gpu Architecture Kernel Driver MEDIUM 5.1
CVE-2025-6349

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged u…

Mitigation only
Fix from $1,600 2025-12-01
Emui HIGH 7.1
CVE-2025-58311

UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

No fix yet
Fix from $1,950 2025-11-28
Harmonyos MEDIUM 5.5
CVE-2025-58303

UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2025-11-28
Harmonyos MEDIUM 5.5
CVE-2025-58307

UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2025-11-28
Unclassified MEDIUM 6.0
CVE-2025-65953

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. Prior to version 0.22.5, a Heap-Use-After-Free (UAF) vulnerability exists in th…

Mitigation only
Fix from $1,600 2025-11-25
Async Mqtt MEDIUM 5.5
CVE-2025-65503

Use after free in endpoint destructors in Redboltz async_mqtt 10.2.5 allows local users to cause a denial of service via triggering SSL initializatio…

Patch available
Fix from $1,600 2025-11-24
Grub2 HIGH 7.8
CVE-2025-61662

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remai…

Fix: after 2.14
Fix from $1,950 2025-11-18
Android HIGH 8.0
CVE-2025-48593

In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free. This could lead to remote code …

Mitigation only
Fix from $1,950 2025-11-18
Chrome HIGH 7.5
CVE-2024-9126

Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote attacker who convinced a user to engage in specific UI ge…

Fix: 127.0.6533.88+
Fix from $1,950 2025-11-14
Mruby MEDIUM 5.5
CVE-2025-13120

A vulnerability has been found in mruby up to 3.4.0. This vulnerability affects the function sort_cmp of the file src/array.c. Such manipulation lead…

Fix: after 3.4.0
Fix from $1,600 2025-11-13
Unclassified MEDIUM 6.9
CVE-2011-10034

AUTOMGEN versions up to and including 8.0.0.7 (also referenced as 8.022) contain a vulnerability in that project file handling frees an object and su…

No fix yet
Fix from $1,600 2025-11-12
3ds Max HIGH 7.8
CVE-2025-11797

A maliciously crafted DWG file, when parsed through Autodesk 3ds Max, can force a Use-After-Free vulnerability. A malicious actor can leverage this v…

Fix: 2026.3+
Fix from $1,950 2025-11-12
Linux Kernel HIGH 7.8
CVE-2025-40149

In the Linux kernel, the following vulnerability has been resolved: tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). get_netdev_…

Fix: 5.15.199 / 6.1.161+
Fix from $1,950 2025-11-12
Substance 3d Stager HIGH 7.8
CVE-2025-64531

Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.6+
Fix from $1,950 2025-11-11
Substance 3d Stager HIGH 7.8
CVE-2025-61834

Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.6+
Fix from $1,950 2025-11-11
Format Plugins MEDIUM 5.5
CVE-2025-61842

Format Plugins versions 1.1.1 and earlier are affected by a Use After Free vulnerability that could lead to memory exposure. An attacker could levera…

Mitigation only
Fix from $1,600 2025-11-11