Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2025-1432
A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malicious actor can leverage this v…
Autocad
2022.1.6 / 2023.1.7+
CRITICAL 9.8
CVE-2025-25568
SoftEtherVPN 5.02.5187 is vulnerable to Use after Free in the Command.c file via the CheckNetworkAcceptThread function. NOTE: the Supplier disputes t…
Vpn
No fix yet
MEDIUM 5.5
CVE-2025-21861
In the Linux kernel, the following vulnerability has been resolved:
mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize…
Linux Kernel
6.12.17 / 6.13.5+
HIGH 7.8
CVE-2025-21855
In the Linux kernel, the following vulnerability has been resolved:
ibmvnic: Don't reference skb after sending to VIOS
Previously, after successful…
Linux Kernel
6.1.130 / 6.6.80+
HIGH 7.8
CVE-2025-21856
In the Linux kernel, the following vulnerability has been resolved:
s390/ism: add release function for struct device
According to device_release() …
Linux Kernel
6.6.80 / 6.12.17+
HIGH 7.8
CVE-2025-21858
In the Linux kernel, the following vulnerability has been resolved:
geneve: Fix use-after-free in geneve_find_dev().
syzkaller reported a use-after…
Linux Kernel
6.1.130 / 6.6.80+
HIGH 7.8
CVE-2025-2013
Ashlar-Vellum Cobalt CO File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…
Cobalt
Mitigation only
HIGH 7.8
CVE-2025-27181
Substance3D - Modeler versions 1.15.0 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the…
Substance 3d Modeler
1.15.0+
HIGH 7.8
CVE-2025-27174
Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by a Use After Free vulnerability that could result in arbi…
Acrobat
20.005.30763 / 24.001.30235+
HIGH 7.8
CVE-2025-27159
Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by a Use After Free vulnerability that could result in arbi…
Acrobat
20.005.30763 / 24.001.30235+
HIGH 7.8
CVE-2025-27160
Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by a Use After Free vulnerability that could result in arbi…
Acrobat
20.005.30763 / 24.001.30235+
HIGH 8.8
CVE-2025-0151
Use after free in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access.
Workplace Desktop
6.1.16 / 6.2.12+
HIGH 7.8
CVE-2025-26630
Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-26629
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-24082
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.0
CVE-2025-24983 KEV
Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.20947 / 10.0.14393.7876+
HIGH 7.8
CVE-2025-24081
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-24079
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-24080
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-24072
Use after free in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.20947 / 10.0.14393.7876+
HIGH 7.8
CVE-2025-24077
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.0
CVE-2025-24078
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 8.1
CVE-2025-24064
Use after free in DNS Server allows an unauthorized attacker to execute code over a network.
Windows Server 2008
10.0.14393.7876 / 10.0.17763.7009+
HIGH 7.8
CVE-2025-24044
Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.20947 / 10.0.14393.7876+
HIGH 7.8
CVE-2025-24046
Use after free in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.20947 / 10.0.14393.7876+
HIGH 7.8
CVE-2025-23402
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V23…
Teamcenter Visualization
14.3.0.13 / 2302.0021+
HIGH 8.8
CVE-2025-2136
Use after free in Inspector in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…
Chrome
134.0.6998.88+
HIGH 7.8
CVE-2024-12837
Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory.
Mitigation only
HIGH 7.8
CVE-2024-58083
In the Linux kernel, the following vulnerability has been resolved:
KVM: Explicitly verify target vCPU is online in kvm_get_vcpu()
Explicitly verif…
Linux Kernel
4.15 / 4.20+
HIGH 7.8
CVE-2024-58072
In the Linux kernel, the following vulnerability has been resolved:
wifi: rtlwifi: remove unused check_buddy_priv
Commit 2461c7d60f9f ("rtlwifi: Up…
Linux Kernel
5.4.291 / 5.10.235+