Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 8.8 CVE-2025-10200 Use after free in Serviceworker in Google Chrome on Desktop prior to 140.0.7339.127 allowed a remote attacker to potentially exploit heap corruption … Chrome 140.0.7339.127+ Fix from $1,9502025-09-10 HIGH 7.8 CVE-2025-54258 Substance3D - Modeler versions 1.22.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the… Substance 3d Modeler 1.22.4+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54257 Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Use After Free vulnerability that could result in arbi… Acrobat 20.005.30791 / 20.005.30793+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54242 Premiere Pro versions 25.3, 24.6.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the co… Premiere Pro 24.6.8 / 25.4+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-55228 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 21h2 10.0.19044.6332 / 10.0.19045.6332+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-55224 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to… Windows 10 1809 10.0.17763.7792 / 10.0.19044.6332+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-55223 Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to eleva… Windows 10 1809 10.0.17763.7792 / 10.0.19044.6332+ Fix from $1,9502025-09-09 HIGH 7.3 CVE-2025-54911 Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21128 / 10.0.14393.8422+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54912 Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21128 / 10.0.14393.8422+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54913 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an auth… Windows 10 1507 10.0.10240.21128 / 10.0.14393.8422+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54906 Free of memory not on the heap in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54908 Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54902 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20047+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54903 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20047+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54904 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20047+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54896 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20047+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-54108 Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows a… Windows 11 24h2 10.0.26100.6508+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54111 Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21128 / 10.0.14393.8422+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-54112 Use after free in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21128 / 10.0.14393.8422+ Fix from $1,9502025-09-09 HIGH 7.4 CVE-2025-54103 Use after free in Windows Management Services allows an unauthorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.6332 / 10.0.19045.6332+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-54105 Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized a… Windows 11 24h2 10.0.25398.1849 / 10.0.26100.6508+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54102 Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8422 / 10.0.17763.7792+ Fix from $1,9502025-09-09 HIGH 7.8 CVE-2025-54092 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to eleva… Windows 10 1809 10.0.17763.7792 / 10.0.19044.6332+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-53807 Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized atta… Windows 10 1809 10.0.17763.7792 / 10.0.19044.6332+ Fix from $1,9502025-09-09 HIGH 7.0 CVE-2025-53802 Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.6332 / 10.0.19045.6332+ Fix from $1,9502025-09-09 HIGH 8.1 CVE-2025-36854 A vulnerability ( CVE-2024-38229 https://www.cve.org/CVERecord ) exists in EOL ASP.NET when closing an HTTP/3 stream while application code is writin… Mitigation only Fix from $1,9502025-09-08 MEDIUM 5.3 CVE-2025-3212 Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Dri… 5th Gen Gpu Architecture Kernel Driver Mitigation only Fix from $1,6002025-09-08 HIGH 7.8 CVE-2025-39717 In the Linux kernel, the following vulnerability has been resolved: open_tree_attr: do not allow id-mapping changes without OPEN_TREE_CLONE As desc… Linux Kernel 6.16.4+ Fix from $1,9502025-09-05 MEDIUM 5.5 CVE-2025-39721 In the Linux kernel, the following vulnerability has been resolved: crypto: qat - flush misc workqueue during device shutdown Repeated loading and … Linux Kernel 6.6.103 / 6.12.44+ Fix from $1,6002025-09-05 HIGH 7.8 CVE-2025-39711 In the Linux kernel, the following vulnerability has been resolved: media: ivsc: Fix crash at shutdown due to missing mei_cldev_disable() calls Bot… Linux Kernel 6.6.103 / 6.12.44+ Fix from $1,9502025-09-05