Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
MEDIUM 6.5 CVE-2026-26203 PJSIP is a free and open source multimedia communication library. Versions prior to 2.17 have a critical heap buffer underflow vulnerability in PJSIP… Pjsip 2.17+ Fix from $1,6002026-02-19 HIGH 7.8 CVE-2026-2660 A vulnerability was identified in FascinatedBox lily up to 2.3. Affected by this issue is the function shorthash_for_name of the file src/lily_symtab… Lily after 2.3 Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23223 In the Linux kernel, the following vulnerability has been resolved: xfs: fix UAF in xchk_btree_check_block_owner We cannot dereference bs->cur when… Linux Kernel 6.12.72 / 6.18.11+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23224 In the Linux kernel, the following vulnerability has been resolved: erofs: fix UAF issue for file-backed mounts w/ directio option [ 9.269940][ … Linux Kernel 6.12.72 / 6.18.11+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23226 In the Linux kernel, the following vulnerability has been resolved: ksmbd: add chann_lock to protect ksmbd_chann_list xarray ksmbd_chann_list xarra… Linux Kernel 6.18.11 / 6.19.1+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23227 In the Linux kernel, the following vulnerability has been resolved: drm/exynos: vidi: use ctx->lock to protect struct vidi_context member variables … Linux Kernel 6.12.77 / 6.18.11+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23221 In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix use-after-free in driver_override_show() The driver_override_s… Linux Kernel 5.15.201 / 6.1.164+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-23216 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() In isc… Linux Kernel 5.10.250 / 5.15.200+ Fix from $1,9502026-02-18 HIGH 7.0 CVE-2026-25087 Use After Free vulnerability in Apache Arrow C++. This issue affects Apache Arrow C++ from 15.0.0 through 23.0.0. It can be triggered when reading a… Arrow 23.0.1+ Fix from $1,9502026-02-17 HIGH 7.8 CVE-2026-23209 In the Linux kernel, the following vulnerability has been resolved: macvlan: fix error recovery in macvlan_common_newlink() valis provided a nice r… Linux Kernel 5.10.250 / 5.15.200+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23192 In the Linux kernel, the following vulnerability has been resolved: linkwatch: use __dev_put() in callers to prevent UAF After linkwatch_do_dev() c… Linux Kernel 6.18.10+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23193 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In … Linux Kernel 5.10.250 / 5.15.200+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23195 In the Linux kernel, the following vulnerability has been resolved: cgroup/dmem: avoid pool UAF An UAF issue was observed: BUG: KASAN: slab-use-af… Linux Kernel 6.18.10+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23184 In the Linux kernel, the following vulnerability has been resolved: binder: fix UAF in binder_netlink_report() Oneway transactions sent to frozen t… Linux Kernel 6.18.10+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23185 In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: cancel mlo_scan_start_wk mlo_scan_start_wk is not canceled … Linux Kernel 6.18.10+ Fix from $1,9502026-02-14 HIGH 7.0 CVE-2026-23191 In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Fix racy access at PCM trigger The PCM trigger callback of aloop d… Linux Kernel 6.12.70 / 6.18.10+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23171 In the Linux kernel, the following vulnerability has been resolved: bonding: fix use-after-free due to enslave fail after slave array update Fix a … Linux Kernel 6.18.9+ Fix from $1,9502026-02-14 HIGH 7.8 CVE-2026-23158 In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix UAF in configfs release path The gpio-virtuser configfs rel… Linux Kernel 6.12.69 / 6.18.9+ Fix from $1,9502026-02-14 HIGH 8.8 CVE-2026-2441 KEVEPSS 22% Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML… Chrome 145.0.7632.75 / 145.0.7632.76+ Fix from $1,9502026-02-13 HIGH 7.8 CVE-2026-23111 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() … Linux Kernel 4.20 / 5.5+ Fix from $1,9502026-02-13 MEDIUM 6.5 CVE-2026-20644 The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, ma… Safari 18.7.5 / 26.3+ Fix from $1,6002026-02-11 HIGH 8.8 CVE-2026-2321 Use after free in Ozone in Google Chrome prior to 145.0.7632.45 allowed a remote attacker who convinced a user to engage in specific UI gestures to p… Chrome 145.0.7632.45+ Fix from $1,9502026-02-11 HIGH 8.8 CVE-2026-2313 Use after free in CSS in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 145.0.7632.45+ Fix from $1,9502026-02-11 HIGH 7.8 CVE-2026-21351 After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o… After Effects 25.6.4+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21326 After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o… After Effects 25.6.4+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21329 After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o… After Effects 25.6.4+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21320 After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o… After Effects 25.6.4+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21323 After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o… After Effects 25.6.4+ Fix from $1,9502026-02-10 HIGH 7.0 CVE-2026-21253 Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8868 / 10.0.17763.8389+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21251 Use after free in Windows Cluster Client Failover allows an authorized attacker to elevate privileges locally. Windows Server 2016 10.0.14393.8868 / 10.0.17763.8389+ Fix from $1,9502026-02-10