Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.0 CVE-2026-21221 Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows a… Windows 11 24h2 10.0.26100.7623 / 10.0.26100.32230+ Fix from $1,9502026-01-13 HIGH 8.4 CVE-2026-20953 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20950 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20083+ Fix from $1,9502026-01-13 HIGH 8.4 CVE-2026-20952 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20924 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20920 Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.20348.4648 / 10.0.22631.6491+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20923 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20873 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac… Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20874 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac… Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20877 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20918 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac… Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20867 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac… Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20870 Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.7623 / 10.0.26100.32230+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20871 Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.6809 / 10.0.19045.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20861 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attac… Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20865 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.5 CVE-2026-20854 Use after free in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to execute code over a network. Windows 11 24h2 10.0.26100.7623 / 10.0.26100.32230+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20858 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.8276 / 10.0.19044.6809+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20859 Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. Windows 11 24h2 10.0.26100.7623 / 10.0.26100.32230+ Fix from $1,9502026-01-13 HIGH 7.0 CVE-2026-20842 Use after free in Windows DWM allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.6809 / 10.0.19045.6809+ Fix from $1,9502026-01-13 HIGH 7.4 CVE-2026-20844 Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,9502026-01-13 HIGH 7.0 CVE-2026-20830 Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows a… Windows Server 2025 10.0.26100.7623+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20822 Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-10865 Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of reference counting to cause a pot… Ddk 25.3+ Fix from $1,9502026-01-13 HIGH 8.8 CVE-2025-58411 Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources reference counting crea… Ddk 25.3+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-71099 In the Linux kernel, the following vulnerability has been resolved: drm/xe/oa: Fix potential UAF in xe_oa_add_config_ioctl() In xe_oa_add_config_io… Linux Kernel 6.12.64 / 6.18.4+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-71071 In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: fix use-after-free on probe deferral The driver is dropping the… Linux Kernel 6.1 / 6.1.160+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-71073 In the Linux kernel, the following vulnerability has been resolved: Input: lkkbd - disable pending work before freeing device lkkbd_interrupt() sch… Linux Kernel 6.12.64 / 6.18.3+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-71075 In the Linux kernel, the following vulnerability has been resolved: scsi: aic94xx: fix use-after-free in device removal path The asd_pci_remove() f… Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2025-68817 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency Under hig… Linux Kernel 5.15.199 / 6.1.160+ Fix from $1,9502026-01-13