Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2026-26203
PJSIP is a free and open source multimedia communication library. Versions prior to 2.17 have a critical heap buffer underflow vulnerability in PJSIP…
Pjsip
2.17+
HIGH 7.8
CVE-2026-2660
A vulnerability was identified in FascinatedBox lily up to 2.3. Affected by this issue is the function shorthash_for_name of the file src/lily_symtab…
Lily
after 2.3
HIGH 7.8
CVE-2026-23223
In the Linux kernel, the following vulnerability has been resolved:
xfs: fix UAF in xchk_btree_check_block_owner
We cannot dereference bs->cur when…
Linux Kernel
6.12.72 / 6.18.11+
HIGH 7.8
CVE-2026-23224
In the Linux kernel, the following vulnerability has been resolved:
erofs: fix UAF issue for file-backed mounts w/ directio option
[ 9.269940][ …
Linux Kernel
6.12.72 / 6.18.11+
HIGH 7.8
CVE-2026-23226
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: add chann_lock to protect ksmbd_chann_list xarray
ksmbd_chann_list xarra…
Linux Kernel
6.18.11 / 6.19.1+
HIGH 7.8
CVE-2026-23227
In the Linux kernel, the following vulnerability has been resolved:
drm/exynos: vidi: use ctx->lock to protect struct vidi_context member variables …
Linux Kernel
6.12.77 / 6.18.11+
HIGH 7.8
CVE-2026-23221
In the Linux kernel, the following vulnerability has been resolved:
bus: fsl-mc: fix use-after-free in driver_override_show()
The driver_override_s…
Linux Kernel
5.15.201 / 6.1.164+
HIGH 7.8
CVE-2026-23216
In the Linux kernel, the following vulnerability has been resolved:
scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count()
In isc…
Linux Kernel
5.10.250 / 5.15.200+
HIGH 7.0
CVE-2026-25087
Use After Free vulnerability in Apache Arrow C++.
This issue affects Apache Arrow C++ from 15.0.0 through 23.0.0. It can be triggered when reading a…
Arrow
23.0.1+
HIGH 7.8
CVE-2026-23209
In the Linux kernel, the following vulnerability has been resolved:
macvlan: fix error recovery in macvlan_common_newlink()
valis provided a nice r…
Linux Kernel
5.10.250 / 5.15.200+
HIGH 7.8
CVE-2026-23192
In the Linux kernel, the following vulnerability has been resolved:
linkwatch: use __dev_put() in callers to prevent UAF
After linkwatch_do_dev() c…
Linux Kernel
6.18.10+
HIGH 7.8
CVE-2026-23193
In the Linux kernel, the following vulnerability has been resolved:
scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count()
In …
Linux Kernel
5.10.250 / 5.15.200+
HIGH 7.8
CVE-2026-23195
In the Linux kernel, the following vulnerability has been resolved:
cgroup/dmem: avoid pool UAF
An UAF issue was observed:
BUG: KASAN: slab-use-af…
Linux Kernel
6.18.10+
HIGH 7.8
CVE-2026-23184
In the Linux kernel, the following vulnerability has been resolved:
binder: fix UAF in binder_netlink_report()
Oneway transactions sent to frozen t…
Linux Kernel
6.18.10+
HIGH 7.8
CVE-2026-23185
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mld: cancel mlo_scan_start_wk
mlo_scan_start_wk is not canceled …
Linux Kernel
6.18.10+
HIGH 7.0
CVE-2026-23191
In the Linux kernel, the following vulnerability has been resolved:
ALSA: aloop: Fix racy access at PCM trigger
The PCM trigger callback of aloop d…
Linux Kernel
6.12.70 / 6.18.10+
HIGH 7.8
CVE-2026-23171
In the Linux kernel, the following vulnerability has been resolved:
bonding: fix use-after-free due to enslave fail after slave array update
Fix a …
Linux Kernel
6.18.9+
HIGH 7.8
CVE-2026-23158
In the Linux kernel, the following vulnerability has been resolved:
gpio: virtuser: fix UAF in configfs release path
The gpio-virtuser configfs rel…
Linux Kernel
6.12.69 / 6.18.9+
HIGH 8.8
CVE-2026-2441 KEVEPSS 22%
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML…
Chrome
145.0.7632.75 / 145.0.7632.76+
HIGH 7.8
CVE-2026-23111
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate()
…
Linux Kernel
4.20 / 5.5+
MEDIUM 6.5
CVE-2026-20644
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, ma…
Safari
18.7.5 / 26.3+
HIGH 8.8
CVE-2026-2321
Use after free in Ozone in Google Chrome prior to 145.0.7632.45 allowed a remote attacker who convinced a user to engage in specific UI gestures to p…
Chrome
145.0.7632.45+
HIGH 8.8
CVE-2026-2313
Use after free in CSS in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…
Chrome
145.0.7632.45+
HIGH 7.8
CVE-2026-21351
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o…
After Effects
25.6.4+
HIGH 7.8
CVE-2026-21326
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o…
After Effects
25.6.4+
HIGH 7.8
CVE-2026-21329
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o…
After Effects
25.6.4+
HIGH 7.8
CVE-2026-21320
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o…
After Effects
25.6.4+
HIGH 7.8
CVE-2026-21323
After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context o…
After Effects
25.6.4+
HIGH 7.0
CVE-2026-21253
Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.8868 / 10.0.17763.8389+
HIGH 7.8
CVE-2026-21251
Use after free in Windows Cluster Client Failover allows an authorized attacker to elevate privileges locally.
Windows Server 2016
10.0.14393.8868 / 10.0.17763.8389+