Vulnerability index

Browse CVEs

7,918 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.8 CVE-2026-62711 Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-62705 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter Driver allows an authorized attack… Windows 11 24h2 10.0.26100.9106 / 10.0.26200.9106+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-62707 Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 MEDIUM 6.4 CVE-2026-62708 Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack. Windows 11 24h2 10.0.26100.9106 / 10.0.26100.33222+ Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-62701 Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61939 Use after free in Winlogon allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-62690 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.9115 / 10.0.19044.7663+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-62693 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attac… Windows 11 24h2 10.0.26100.9106 / 10.0.26200.9106+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61938 Use after free in Windows Installer allows an authorized attacker to elevate privileges locally. Windows 11 24h2 No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-61934 Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.22631.7517 / 10.0.26100.9106+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61927 Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.9106 / 10.0.26100.33222+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61929 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.22631.7517 / 10.0.26100.9106+ Fix from $4,9002026-08-11 MEDIUM 6.6 CVE-2026-61920 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute c… Windows 10 1607 No fix yet Fix from $4,0002026-08-11 HIGH 7.0 CVE-2026-61361 Use after free in Windows DHCP Client allows an authorized attacker to execute code locally. Windows 11 24h2 10.0.26100.9106 / 10.0.26100.33222+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-61357 Use after free in Application Information Services allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.9106 / 10.0.26100.33222+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61348 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-61349 Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-61346 Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.9115 / 10.0.19044.7663+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-59122 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke… Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-59125 Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 MEDIUM 5.9 CVE-2026-24099 Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. System software adver… No fix yet Fix from $4,0002026-08-11 HIGH 8.3 CVE-2026-53415 Use after Free in the annotator function of Zoom Clients may allow a meeting participant to achieve remote code execution of another participant via … No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50060 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50061 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.7 CVE-2026-71968 OP-TEE OS through 4.10.0, fixed in commit 8794043, contains a use-after-free vulnerability in the Trusted Application loader that allows attackers wi… No fix yet Fix from $4,0002026-08-10 HIGH 8.7 CVE-2026-71847 Ruby JSON is a JSON implementation for Ruby. From 2.20.0 until 2.21.2, Ruby's JSON native C extension clears the consumed JSON::ResumableParser input… No fix yet Fix from $1,9502026-08-07 HIGH 8.1 CVE-2026-43631 llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the vocab pointer of llama-server when the --sleep-idle-se… No fix yet Fix from $1,9502026-08-06 HIGH 8.1 CVE-2026-43632 llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokenization endpoints (/tokeni… No fix yet Fix from $1,9502026-08-06 HIGH 7.8 CVE-2026-1289 A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vul… No fix yet Fix from $1,9502026-08-06 CRITICAL 9.6 CVE-2026-19175 Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted H… Chrome 151.0.7922.109+ Fix from $2,3002026-08-06