Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2023-4349

Use after free in Device Trust Connectors in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Android MEDIUM 6.4
CVE-2023-20787

In thermal, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privil…

Mitigation only
Fix from $1,600 2023-08-07
Android MEDIUM 6.4
CVE-2023-20788

In thermal, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privil…

Mitigation only
Fix from $1,600 2023-08-07
Chrome HIGH 8.8
CVE-2023-4076

Use after free in WebRTC in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted WebR…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-4074

Use after free in Blink Task Scheduling in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-4075

Use after free in Cast in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-3731

Use after free in Diagnostics in Google Chrome on ChromeOS prior to 115.0.5790.131 allowed an attacker who convinced a user to install a malicious ex…

Fix: 115.0.5790.131+
Fix from $1,950 2023-08-01
Chrome HIGH 8.8
CVE-2023-3727

Use after free in WebRTC in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Chrome HIGH 8.8
CVE-2023-3728

Use after free in WebRTC in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Chrome HIGH 8.8
CVE-2023-3729

Use after free in Splitscreen in Google Chrome on ChromeOS prior to 115.0.5790.131 allowed a remote attacker who convinced a user to engage in specif…

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Chrome HIGH 8.8
CVE-2023-3730

Use after free in Tab Groups in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who convinced a user to engage in specific UI interact…

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Chrome CRITICAL 9.6
CVE-2022-4924

Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 97.0.4692.71+
Fix from $2,300 2023-07-29
Chrome HIGH 8.8
CVE-2022-4916

Use after free in Media in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (C…

Fix: 103.0.5060.53+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4918

Use after free in UI in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro…

Fix: 102.0.5005.61+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4919

Use after free in Base Internals in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to perform arbitrary read/write via a crafted HTML…

Fix: 101.0.4951.41+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4921

Use after free in Accessibility in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific UI gestur…

Fix: 99.0.4844.51+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4317

Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch…

Fix: 96.0.4664.93+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4319

Use after free in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch…

Fix: 93.0.4577.82+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4320

Use after free in Blink in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the renderer process to perform arbitra…

Fix: 92.0.4515.107+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4322

Use after free in DevTools in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to execut…

Fix: 91.0.4472.77+
Fix from $1,950 2023-07-29
Android MEDIUM 6.7
CVE-2023-35693

In incfs_kill_sb of fs/incfs/vfs.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege w…

Patch available
Fix from $1,600 2023-07-13
Android HIGH 7.8
CVE-2023-21147

In lwis_i2c_device_disable of lwis_device_i2c.c, there is a possible UAF due to a logic error in the code. This could lead to local escalation of pri…

Mitigation only
Fix from $1,950 2023-06-28
Android MEDIUM 6.7
CVE-2023-21146

there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with System execution privileges …

Mitigation only
Fix from $1,600 2023-06-28
Chrome HIGH 8.8
CVE-2023-3421

Use after free in Media in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 114.0.5735.198+
Fix from $1,950 2023-06-26
Chrome HIGH 8.8
CVE-2023-3422

Use after free in Guest View in Google Chrome prior to 114.0.5735.198 allowed an attacker who convinced a user to install a malicious extension to po…

Fix: 114.0.5735.198+
Fix from $1,950 2023-06-26
Android HIGH 8.8
CVE-2023-21108

In sdpu_build_uuid_seq of sdp_discovery.cc, there is a possible out of bounds write due to a use after free. This could lead to remote code execution…

Patch available
Fix from $1,950 2023-06-15
Android HIGH 7.8
CVE-2023-21120

In multiple functions of cdm_engine.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,950 2023-06-15
Android HIGH 7.0
CVE-2023-21101

In multiple functions of WVDrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privileg…

Mitigation only
Fix from $1,950 2023-06-15
Chrome HIGH 8.8
CVE-2023-3214

Use after free in Autofill payments in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 114.0.5735.133+
Fix from $1,950 2023-06-13
Chrome HIGH 8.8
CVE-2023-3215EPSS 14%

Use after free in WebRTC in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 114.0.5735.133+
Fix from $1,950 2023-06-13