Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.8
CVE-2025-22068

In the Linux kernel, the following vulnerability has been resolved: ublk: make sure ubq->canceling is set when queue is frozen Now ublk driver depe…

Fix: 6.12.23 / 6.13.11+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 7.8
CVE-2025-22035

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free in print_graph_function_flags during tracer switchin…

Fix: 4.15 / 4.20+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 7.0
CVE-2025-22036

In the Linux kernel, the following vulnerability has been resolved: exfat: fix random stack corruption after get_block When get_block is called wit…

Fix: 6.12.23 / 6.13.11+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 8.8
CVE-2025-22040

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix session use-after-free in multichannel connection There is a race co…

Fix: 6.1.134 / 6.6.87+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 8.8
CVE-2025-22041

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_sessions_deregister() In multichannel mode, …

Fix: 6.1.134 / 6.6.87+
Fix from $1,950 2025-04-16
Linux Kernel MEDIUM 5.5
CVE-2025-22024

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix management of listener transports Currently, when no active threads a…

Fix: 6.12.23 / 6.13.11+
Fix from $1,600 2025-04-16
Linux Kernel HIGH 7.8
CVE-2024-58093

In the Linux kernel, the following vulnerability has been resolved: PCI/ASPM: Fix link state exit during switch upstream function removal Before 45…

Fix: 5.5 / 5.11+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 7.8
CVE-2025-22020

In the Linux kernel, the following vulnerability has been resolved: memstick: rtsx_usb_ms: Fix slab-use-after-free in rtsx_usb_ms_drv_remove This f…

Fix: 5.4.292 / 5.10.236+
Fix from $1,950 2025-04-16
Linux Kernel HIGH 7.8
CVE-2025-22023

In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Don't skip on Stopped - Length Invalid Up until commit d56b0b2ab142 …

Fix: 6.12.22 / 6.13.10+
Fix from $1,950 2025-04-16
Safari HIGH 8.8
CVE-2023-42970

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS …

Fix: 10.0 / 14.0+
Fix from $1,950 2025-04-11
365 Apps HIGH 7.8
CVE-2025-29823

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.8
CVE-2025-29824 KEVEPSS 14%

Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-29820

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.3
CVE-2025-29792

Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27748

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27749

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27750

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27751

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27745

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27746

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

Fix: 16.0.10417.20003+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.1
CVE-2025-27491

Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 11 22h2 HIGH 7.0
CVE-2025-27492

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker t…

Fix: 10.0.20348.3453 / 10.0.22621.5189+
Fix from $1,950 2025-04-08
Windows 10 21h2 HIGH 7.8
CVE-2025-27729

Use after free in Windows Shell allows an unauthorized attacker to execute code locally.

Fix: 10.0.19044.5737 / 10.0.19045.5737+
Fix from $1,950 2025-04-08
Windows 10 1809 HIGH 7.8
CVE-2025-27730

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.7136 / 10.0.19044.5737+
Fix from $1,950 2025-04-08
Windows Server 2012 HIGH 8.1
CVE-2025-27480EPSS 10%

Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.7969 / 10.0.17763.7136+
Fix from $1,950 2025-04-08
Windows 10 1809 HIGH 7.8
CVE-2025-27476

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.7136 / 10.0.19044.5737+
Fix from $1,950 2025-04-08
Windows 10 1809 HIGH 7.8
CVE-2025-27467

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.7136 / 10.0.19044.5737+
Fix from $1,950 2025-04-08
Animate HIGH 7.8
CVE-2025-27200

Animate versions 24.0.7, 23.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the cont…

Fix: 23.0.11 / 24.0.8+
Fix from $1,950 2025-04-08
365 Copilot HIGH 7.5
CVE-2025-26687

Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.8
CVE-2025-26679

Use after free in RPC Endpoint Mapper Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08