Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2024-5498

Use after free in Presentation API in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 125.0.6422.141+
Fix from $1,950 2024-05-30
Chrome HIGH 8.8
CVE-2024-5157

Use after free in Scheduling in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft…

Fix: 125.0.6422.76+
Fix from $1,950 2024-05-22
Chrome MEDIUM 6.5
CVE-2024-4948

Use after free in Dawn in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 125.0.6422.60+
Fix from $1,600 2024-05-15
Chrome MEDIUM 6.5
CVE-2024-4949

Use after free in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 125.0.6422.60+
Fix from $1,600 2024-05-15
Chrome CRITICAL 9.6
CVE-2024-4671 KEVEPSS 8%

Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 124.0.6367.201+
Fix from $2,300 2024-05-14
Chrome CRITICAL 9.6
CVE-2024-4558

Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 14.6 / 17.6+
Fix from $2,300 2024-05-07
Protobuf CRITICAL 9.8
CVE-2024-2410

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken …

Fix: 4.25.0+
Fix from $2,300 2024-05-03
Chrome HIGH 8.8
CVE-2024-4331

Use after free in Picture In Picture in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 124.0.6367.118+
Fix from $1,950 2024-05-01
Chrome HIGH 8.8
CVE-2024-4368

Use after free in Dawn in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 124.0.6367.118+
Fix from $1,950 2024-05-01
Chrome MEDIUM 6.5
CVE-2024-4060

Use after free in Dawn in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 124.0.6367.78+
Fix from $1,600 2024-05-01
Chrome MEDIUM 6.5
CVE-2024-3914

Use after free in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 124.0.6367.60+
Fix from $1,600 2024-04-17
Chrome HIGH 8.8
CVE-2024-3834

Use after free in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 124.0.6367.60+
Fix from $1,950 2024-04-17
Chrome HIGH 8.8
CVE-2024-3837

Use after free in QUIC in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 124.0.6367.60+
Fix from $1,950 2024-04-17
Chrome MEDIUM 6.5
CVE-2024-3515

Use after free in Dawn in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 123.0.6312.122+
Fix from $1,600 2024-04-10
Chrome HIGH 8.8
CVE-2024-3158

Use after free in Bookmarks in Google Chrome prior to 123.0.6312.105 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 123.0.6312.105+
Fix from $1,950 2024-04-06
Chrome HIGH 8.8
CVE-2024-2883

Use after free in ANGLE in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 123.0.6312.86+
Fix from $1,950 2024-03-26
Chrome HIGH 8.8
CVE-2024-2885

Use after free in Dawn in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 123.0.6312.86+
Fix from $1,950 2024-03-26
Chrome HIGH 7.5
CVE-2024-2886

Use after free in WebCodecs in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page…

Fix: 123.0.6312.86+
Fix from $1,950 2024-03-26
Chrome HIGH 8.8
CVE-2024-2627

Use after free in Canvas in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 123.0.6312.58+
Fix from $1,950 2024-03-20
Chrome HIGH 8.8
CVE-2024-2400

Use after free in Performance Manager in Google Chrome prior to 122.0.6261.128 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 122.0.6261.128+
Fix from $1,950 2024-03-13
Android HIGH 8.4
CVE-2024-27213

In BroadcastSystemMessage of servicemgr.cpp, there is a possible Remote Code Execution due to a use after free. This could lead to local escalation o…

Mitigation only
Fix from $1,950 2024-03-11
Android HIGH 8.4
CVE-2024-25985

In bigo_unlocked_ioctl of bigo.c, there is a possible UAF due to a missing bounds check. This could lead to local escalation of privilege with no add…

Mitigation only
Fix from $1,950 2024-03-11
Android HIGH 8.4
CVE-2024-27205

there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileg…

No fix yet
Fix from $1,950 2024-03-11
Chrome HIGH 8.8
CVE-2024-2176

Use after free in FedCM in Google Chrome prior to 122.0.6261.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 122.0.6261.111+
Fix from $1,950 2024-03-06
Chrome HIGH 8.8
CVE-2024-1670EPSS 9%

Use after free in Mojo in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1673

Use after free in Accessibility in Google Chrome prior to 122.0.6261.57 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Android HIGH 7.8
CVE-2023-21165

In DevmemIntUnmapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2023-40107

In ARTPWriter of ARTPWriter.cpp, there is a possible use after free due to uninitialized data. This could lead to local escalation of privilege with …

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40114

In multiple functions of MtpFfsHandle.cpp , there is a possible out of bounds write due to a use after free. This could lead to local escalation of p…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40115

In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with…

Patch available
Fix from $1,950 2024-02-15