Vulnerability index

Browse CVEs

7,925 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.8 CVE-2026-42991 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-44801 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42983 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-42984 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-42985 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42986 Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 8.1 CVE-2026-42987 Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network. Windows Server 2012 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42978 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42979 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-42911 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42913 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker … Remote Desktop Client 1.2.7214 / 10.0.20348.5256+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42905 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42909 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker … Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-42836 Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an autho… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-34335 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-46330 In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This reverts commit d7cd421da9da2cc… Linux Kernel 6.19.4+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-46319 In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flo… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-46323 In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags bet… Linux Kernel 6.1.176 / 6.6.142+ Fix from $1,9502026-06-09 MEDIUM 6.4 CVE-2026-41982 Race condition vulnerability in the IPC module. Impact: Successful exploitation of this vulnerability may affect availability. No fix yet Fix from $1,6002026-06-09 HIGH 8.8 CVE-2026-11698 Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11699 Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.3 CVE-2026-11700 Use after free in Tracing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially … Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11687 Use after free in Dawn in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a crafted… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.3 CVE-2026-11692 Use after free in Read Anything in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potent… Chrome 149.0.7827.102+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-11694 Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to execut… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.3 CVE-2026-11679 Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to po… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11680 Use after free in Media in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via … Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11681 Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a craf… Chrome 149.0.7827.102+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11683 Use after free in WebCodecs in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-11670 Use after free in PDF in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF… Chrome 149.0.7827.103+ Fix from $1,9502026-06-09