Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2025-10200
Use after free in Serviceworker in Google Chrome on Desktop prior to 140.0.7339.127 allowed a remote attacker to potentially exploit heap corruption …
Chrome
140.0.7339.127+
HIGH 7.8
CVE-2025-54258
Substance3D - Modeler versions 1.22.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the…
Substance 3d Modeler
1.22.4+
HIGH 7.8
CVE-2025-54257
Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Use After Free vulnerability that could result in arbi…
Acrobat
20.005.30791 / 20.005.30793+
HIGH 7.8
CVE-2025-54242
Premiere Pro versions 25.3, 24.6.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the co…
Premiere Pro
24.6.8 / 25.4+
HIGH 7.8
CVE-2025-55228
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to…
Windows 10 21h2
10.0.19044.6332 / 10.0.19045.6332+
HIGH 7.8
CVE-2025-55224
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to…
Windows 10 1809
10.0.17763.7792 / 10.0.19044.6332+
HIGH 7.0
CVE-2025-55223
Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to eleva…
Windows 10 1809
10.0.17763.7792 / 10.0.19044.6332+
HIGH 7.3
CVE-2025-54911
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 7.8
CVE-2025-54912
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 7.8
CVE-2025-54913
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an auth…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 7.8
CVE-2025-54906
Free of memory not on the heap in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-54908
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-54902
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20047+
HIGH 7.8
CVE-2025-54903
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20047+
HIGH 7.8
CVE-2025-54904
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20047+
HIGH 7.8
CVE-2025-54896
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
16.0.10417.20047+
HIGH 7.0
CVE-2025-54108
Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows a…
Windows 11 24h2
10.0.26100.6508+
HIGH 7.8
CVE-2025-54111
Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 7.0
CVE-2025-54112
Use after free in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 7.4
CVE-2025-54103
Use after free in Windows Management Services allows an unauthorized attacker to elevate privileges locally.
Windows 10 21h2
10.0.19044.6332 / 10.0.19045.6332+
HIGH 7.0
CVE-2025-54105
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized a…
Windows 11 24h2
10.0.25398.1849 / 10.0.26100.6508+
HIGH 7.8
CVE-2025-54102
Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.8422 / 10.0.17763.7792+
HIGH 7.8
CVE-2025-54092
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to eleva…
Windows 10 1809
10.0.17763.7792 / 10.0.19044.6332+
HIGH 7.0
CVE-2025-53807
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized atta…
Windows 10 1809
10.0.17763.7792 / 10.0.19044.6332+
HIGH 7.0
CVE-2025-53802
Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
Windows 10 21h2
10.0.19044.6332 / 10.0.19045.6332+
HIGH 8.1
CVE-2025-36854
A vulnerability ( CVE-2024-38229 https://www.cve.org/CVERecord ) exists in EOL ASP.NET when closing an HTTP/3 stream while application code is writin…
Mitigation only
MEDIUM 5.3
CVE-2025-3212
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Dri…
5th Gen Gpu Architecture Kernel Driver
Mitigation only
HIGH 7.8
CVE-2025-39717
In the Linux kernel, the following vulnerability has been resolved:
open_tree_attr: do not allow id-mapping changes without OPEN_TREE_CLONE
As desc…
Linux Kernel
6.16.4+
MEDIUM 5.5
CVE-2025-39721
In the Linux kernel, the following vulnerability has been resolved:
crypto: qat - flush misc workqueue during device shutdown
Repeated loading and …
Linux Kernel
6.6.103 / 6.12.44+
HIGH 7.8
CVE-2025-39711
In the Linux kernel, the following vulnerability has been resolved:
media: ivsc: Fix crash at shutdown due to missing mei_cldev_disable() calls
Bot…
Linux Kernel
6.6.103 / 6.12.44+