Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome Os MEDIUM 6.5
CVE-2025-1704

ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenrol…

No fix yet
Fix from $1,600 2025-04-16
Chrome HIGH 8.8
CVE-2025-3620

Use after free in USB in Google Chrome prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 135.0.7049.95+
Fix from $1,950 2025-04-16
Chrome HIGH 8.8
CVE-2025-3066

Use after free in Site Isolation in Google Chrome prior to 135.0.7049.84 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 135.0.7049.52+
Fix from $1,950 2025-04-02
Chrome HIGH 8.8
CVE-2025-2476

Use after free in Lens in Google Chrome prior to 134.0.6998.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 134.0.6998.117+
Fix from $1,950 2025-03-19
Chrome HIGH 8.8
CVE-2025-2136

Use after free in Inspector in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 134.0.6998.88+
Fix from $1,950 2025-03-10
Chrome HIGH 8.8
CVE-2025-1916

Use after free in Profiles in Google Chrome prior to 134.0.6998.35 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 134.0.6998.35+
Fix from $1,950 2025-03-05
Chrome HIGH 8.8
CVE-2025-1006

Use after free in Network in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted web…

Fix: 133.0.6943.126+
Fix from $1,950 2025-02-19
Chrome HIGH 8.8
CVE-2025-0995

Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 133.0.69943.98+
Fix from $1,950 2025-02-15
Chrome HIGH 8.1
CVE-2025-0997

Use after free in Navigation in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted C…

Fix: 133.0.6943.98+
Fix from $1,950 2025-02-15
Chrome MEDIUM 6.3
CVE-2025-0444

Use after free in Skia in Google Chrome prior to 133.0.6943.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 133.0.6943.53+
Fix from $1,600 2025-02-04
Chrome MEDIUM 5.4
CVE-2025-0445

Use after free in V8 in Google Chrome prior to 133.0.6943.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 133.0.6943.53+
Fix from $1,600 2025-02-04
Chrome HIGH 8.8
CVE-2025-0762

Use after free in DevTools in Google Chrome prior to 132.0.6834.159 allowed a remote attacker to potentially exploit heap corruption via a crafted Ch…

Fix: 132.0.6834.159+
Fix from $1,950 2025-01-29
Android HIGH 8.4
CVE-2024-40649

In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel wi…

Mitigation only
Fix from $1,950 2025-01-28
Android HIGH 8.4
CVE-2024-40651

In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel wi…

No fix yet
Fix from $1,950 2025-01-28
Android HIGH 8.4
CVE-2024-40669

In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execut…

No fix yet
Fix from $1,950 2025-01-28
Android HIGH 8.4
CVE-2024-40670

In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execut…

No fix yet
Fix from $1,950 2025-01-28
Android HIGH 8.4
CVE-2024-34748

In _DevmemXReservationPageAddress of devicemem_server.c, there is a possible use-after-free due to improper casting. This could lead to local escalat…

Mitigation only
Fix from $1,950 2025-01-28
Android HIGH 7.8
CVE-2023-35685

In DevmemIntMapPages of devicemem_server.c, there is a possible physical page uaf due to a logic error in the code. This could lead to local escalati…

No fix yet
Fix from $1,950 2025-01-08
Chrome HIGH 8.8
CVE-2024-12694

Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 131.0.6778.204+
Fix from $1,950 2024-12-18
Android HIGH 7.8
CVE-2024-47040

There is a possible UAF due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges ne…

Mitigation only
Fix from $1,950 2024-12-18
Chrome HIGH 8.8
CVE-2024-12382

Use after free in Translate in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 131.0.6778.139+
Fix from $1,950 2024-12-12
Android MEDIUM 6.7
CVE-2018-9439

In __unregister_prot_hook and packet_release of af_packet.c, there is a possible use-after-free due to improper locking. This could lead to local…

Mitigation only
Fix from $1,600 2024-12-05
Android MEDIUM 6.5
CVE-2018-9483

In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote informatio…

Patch available
Fix from $1,600 2024-11-20
Android HIGH 7.8
CVE-2018-9428

In startDevice of AAudioServiceStreamBase.cpp there is a possible out of bounds write due to a use after free. This could lead to local arbitrary cod…

Mitigation only
Fix from $1,950 2024-11-19
Android HIGH 7.8
CVE-2018-9417

In f_hidg_read and hidg_disable of f_hid.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privil…

Patch available
Fix from $1,950 2024-11-19
Android HIGH 7.8
CVE-2018-9344

In several functions of DescramblerImpl.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2024-11-19
Android HIGH 7.8
CVE-2024-34747

In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation…

Mitigation only
Fix from $1,950 2024-11-13
Chrome HIGH 8.8
CVE-2024-11112

Use after free in Media in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 131.0.6778.69+
Fix from $1,950 2024-11-12
Chrome HIGH 8.8
CVE-2024-11113

Use after free in Accessibility in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 131.0.6778.69+
Fix from $1,950 2024-11-12
Chrome HIGH 8.8
CVE-2024-10827

Use after free in Serial in Google Chrome prior to 130.0.6723.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 130.0.6723.116+
Fix from $1,950 2024-11-06