Vulnerability index

Browse CVEs

7,933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
MEDIUM 5.5 CVE-2025-38386 In the Linux kernel, the following vulnerability has been resolved: ACPICA: Refuse to evaluate a method if arguments are missing As reported in [1]… Linux Kernel 5.4.296 / 5.10.240+ Fix from $1,6002025-07-25 HIGH 7.8 CVE-2025-38377 In the Linux kernel, the following vulnerability has been resolved: rose: fix dangling neighbour pointers in rose_rt_device_down() There are two bu… Linux Kernel 5.4.296 / 5.10.240+ Fix from $1,9502025-07-25 HIGH 7.8 CVE-2025-38378 In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe In probe app… Linux Kernel 6.15.6+ Fix from $1,9502025-07-25 HIGH 7.8 CVE-2025-38369 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver bef… Linux Kernel 6.6.96 / 6.12.36+ Fix from $1,9502025-07-25 CRITICAL 9.8 CVE-2025-47917 Mbed TLS before 3.6.4 allows a use-after-free in certain situations of applications that are developed in accordance with the documentation. The func… Mbed Tls 3.6.4+ Fix from $2,3002025-07-20 HIGH 7.8 CVE-2025-38350 In the Linux kernel, the following vulnerability has been resolved: net/sched: Always pass notifications when child class becomes empty Certain cla… Linux Kernel 5.4.296 / 5.10.240+ Fix from $1,9502025-07-19 HIGH 7.8 CVE-2025-38349 In the Linux kernel, the following vulnerability has been resolved: eventpoll: don't decrement ep refcount while still holding the ep mutex Jann Ho… Linux Kernel 6.6.99 / 6.12.39+ Fix from $1,9502025-07-18 HIGH 8.8 CVE-2025-7657 Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… Chrome 138.0.7204.157+ Fix from $1,9502025-07-15 HIGH 7.8 CVE-2025-7042 Use After Free vulnerability exists in the IPT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability … Mitigation only Fix from $1,9502025-07-15 HIGH 7.8 CVE-2025-6973 Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability c… Mitigation only Fix from $1,9502025-07-15 HIGH 7.8 CVE-2025-6971 Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnera… Mitigation only Fix from $1,9502025-07-15 HIGH 7.8 CVE-2025-6972 Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnera… Mitigation only Fix from $1,9502025-07-15 HIGH 7.5 CVE-2025-3631 An IBM MQ 9.3 and 9.4 Client connecting to an MQ Queue Manager can cause a SIGSEGV in the AMQRMPPA channel process terminating it. Mq Appliance 9.4.0.12 / 9.4.3+ Fix from $1,9502025-07-11 HIGH 7.5 CVE-2025-52946 A Use After Free vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Juniper Networks Junos OS Evolved allows an atta… Junos 21.2 / 22.4+ Fix from $1,9502025-07-11 HIGH 7.8 CVE-2025-7425 A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT function… Mitigation only Fix from $1,9502025-07-10 HIGH 7.8 CVE-2025-38346 In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix UAF when lookup kallsym after ftrace disabled The following issue h… Linux Kernel 5.4.295 / 5.10.239+ Fix from $1,9502025-07-10 HIGH 7.8 CVE-2025-38323 In the Linux kernel, the following vulnerability has been resolved: net: atm: add lec_mutex syzbot found its way in net/atm/lec.c, and found an err… Linux Kernel 5.4.295 / 5.10.239+ Fix from $1,9502025-07-10 HIGH 7.8 CVE-2025-38289 In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Avoid potential ndlp use-after-free in dev_loss_tmo_callbk Smatch d… Linux Kernel 6.12.37 / 6.15.3+ Fix from $1,9502025-07-10 HIGH 7.8 CVE-2025-38259 In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd9335: Fix missing free of regulator supplies Driver gets and e… Linux Kernel 6.1.143 / 6.6.96+ Fix from $1,9502025-07-09 HIGH 7.8 CVE-2025-38250 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix use-after-free in vhci_flush() syzbot reported use-aft… Linux Kernel 6.6.97 / 6.12.36+ Fix from $1,9502025-07-09 HIGH 7.8 CVE-2025-38248 In the Linux kernel, the following vulnerability has been resolved: bridge: mcast: Fix use-after-free during router port configuration The bridge m… Linux Kernel 6.15.5+ Fix from $1,9502025-07-09 HIGH 7.8 CVE-2025-49733 Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 10 1809 10.0.17763.7558 / 10.0.19044.6093+ Fix from $1,9502025-07-08 HIGH 8.1 CVE-2025-49735 Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network. Windows Server 2012 10.0.14393.8148 / 10.0.17763.7434+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49724EPSS 8% Use after free in Windows Connected Devices Platform Service allows an unauthorized attacker to execute code over a network. Windows 10 1809 10.0.17763.7558 / 10.0.19044.6093+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49725 Use after free in Windows Notification allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49726 Use after free in Windows Notification allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49711 Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20027+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49703 Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49698 Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-07-08 HIGH 7.0 CVE-2025-49699 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $1,9502025-07-08