Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Windows 10 1507 HIGH 7.8
CVE-2025-50153

Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 MEDIUM 6.7
CVE-2025-49743

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized atta…

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,600 2025-08-12
Illustrator MEDIUM 5.5
CVE-2025-49568

Illustrator versions 28.7.8, 29.6.1 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. Exp…

Fix: 28.7.9 / 29.7+
Fix from $1,600 2025-08-12
Linux Kernel HIGH 7.8
CVE-2025-38500

In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md xfrm interface co…

Fix: 6.1.148 / 6.6.101+
Fix from $1,950 2025-08-12
Vim HIGH 8.8
CVE-2025-55157

Vim is an open source, command line text editor. In versions from 9.1.1231 to before 9.1.1400, When processing nested tuples in Vim script, an error …

Fix: 9.1.1400+
Fix from $1,950 2025-08-11
Netwide Assembler HIGH 7.8
CVE-2025-8842

A vulnerability has been found in NASM Netwide Assember 2.17rc0. Affected by this issue is the function do_directive of the file preproc.c. The manip…

No fix yet
Fix from $1,950 2025-08-11
Jasper HIGH 7.8
CVE-2025-8837

A vulnerability was identified in JasPer up to 4.2.5. This affects the function jpc_dec_dump of the file src/libjasper/jpc/jpc_dec.c of the component…

Fix: after 4.2.5
Fix from $1,950 2025-08-11
Openharmony HIGH 7.8
CVE-2025-27128

in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.

Fix: after 5.0.3
Fix from $1,950 2025-08-11
Openharmony HIGH 7.8
CVE-2025-24298

in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.

Fix: after 5.0.3
Fix from $1,950 2025-08-11
Ddk HIGH 7.5
CVE-2025-46709

Possible memory leak or kernel exceptions caused by reading kernel heap data after free or NULL pointer dereference kernel exception.

Fix: after 25.1
Fix from $1,950 2025-08-09
Chrome HIGH 8.8
CVE-2025-8576

Use after free in Extensions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted C…

Fix: 139.0.7258.66+
Fix from $1,950 2025-08-07
Chrome HIGH 8.8
CVE-2025-8578

Use after free in Cast in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 139.0.7258.66+
Fix from $1,950 2025-08-07
Fastconnect 6800 Firmware HIGH 7.8
CVE-2025-21474

Memory corruption while processing commands from A2dp sink command queue.

Mitigation only
Fix from $1,950 2025-08-06
Fastconnect 6900 Firmware HIGH 7.8
CVE-2025-21458

Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.

Patch available
Fix from $1,950 2025-08-06
Ar8035 Firmware HIGH 7.8
CVE-2025-21456

Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.

Mitigation only
Fix from $1,950 2025-08-06
Harmonyos HIGH 7.5
CVE-2025-54635

Vulnerability of returning released pointers in the distributed notification service. Impact: Successful exploitation of this vulnerability may affec…

Mitigation only
Fix from $1,950 2025-08-06
Unclassified HIGH 7.0
CVE-2025-23281

NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker with local unprivileged access that can win a race condition might b…

Mitigation only
Fix from $1,950 2025-08-02
Chrome HIGH 8.8
CVE-2025-8292

Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 138.0.7204.183+
Fix from $1,950 2025-07-30
Ipados CRITICAL 9.8
CVE-2025-43222

A use-after-free issue was addressed by removing the vulnerable code. This issue is fixed in iPadOS 17.7.9, macOS Sequoia 15.6, macOS Sonoma 14.7.7, …

Fix: 13.7.7 / 14.7.7+
Fix from $2,300 2025-07-30
Safari MEDIUM 6.5
CVE-2025-43216

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, ma…

Fix: 2.6 / 11.6+
Fix from $1,600 2025-07-30
Shared Components HIGH 7.8
CVE-2025-6636

A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Use-After-Free vulnerability. A malicious actor can levera…

Mitigation only
Fix from $1,950 2025-07-29
Linux Kernel HIGH 7.8
CVE-2025-38485

In the Linux kernel, the following vulnerability has been resolved: iio: accel: fxls8962af: Fix use after free in fxls8962af_fifo_flush fxls8962af_…

Fix: 6.1.147 / 6.6.100+
Fix from $1,950 2025-07-28
Linux Kernel HIGH 7.8
CVE-2025-38488

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free in crypt_message when using async crypto The CV…

Fix: 5.10.241 / 5.15.190+
Fix from $1,950 2025-07-28
Linux Kernel HIGH 7.8
CVE-2025-38476

In the Linux kernel, the following vulnerability has been resolved: rpl: Fix use-after-free in rpl_do_srh_inline(). Running lwt_dst_cache_ref_loop.…

Fix: 5.10.241 / 5.15.190+
Fix from $1,950 2025-07-28
Linux Kernel HIGH 7.8
CVE-2025-38471

In the Linux kernel, the following vulnerability has been resolved: tls: always refresh the queue when reading sock After recent changes in net-nex…

Fix: 6.1 / 6.1.147+
Fix from $1,950 2025-07-28
Libtiff HIGH 7.8
CVE-2025-8176

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file…

Fix: after 4.7.0
Fix from $1,950 2025-07-26
Linux Kernel HIGH 7.8
CVE-2025-38464

In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_conn_close(). syzbot reported a null-ptr-deref…

Fix: 5.4.296 / 5.10.240+
Fix from $1,950 2025-07-25
Linux Kernel MEDIUM 5.5
CVE-2025-38449

In the Linux kernel, the following vulnerability has been resolved: drm/gem: Acquire references on GEM handles for framebuffers A GEM handle can be…

Fix: 6.6.99 / 6.12.39+
Fix from $1,600 2025-07-25
Linux Kernel HIGH 7.8
CVE-2025-38437

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential use-after-free in oplock/lease break ack If ksmbd_iov_pin_…

Fix: 6.1.146 / 6.6.99+
Fix from $1,950 2025-07-25
Linux Kernel HIGH 7.8
CVE-2025-38443

In the Linux kernel, the following vulnerability has been resolved: nbd: fix uaf in nbd_genl_connect() error path There is a use-after-free issue i…

Fix: 5.15.189 / 6.1.146+
Fix from $1,950 2025-07-25