VulnSea

CWE-416

CVEs classified under CWE-416, newest first.

1092 CVEsRSS

CVE-2026-67385High· 8.8
2w ago

Use after free in SQL Server allows an authorized attacker to execute code over a network.

Use after free in SQL Server allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · sql_server_2017EPSS 0.91%via NVD
CVE-2026-62694High· 7.0
2w ago

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.26%via NVD
CVE-2026-50349High· 7.0
2w ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.20%via NVD
CVE-2026-62813High· 7.5
2w ago

Use after free in Active Directory Domain Services allows an authorized attacker to execute code over a network.

Use after free in Active Directory Domain Services allows an authorized attacker to execute code over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.66%via NVD
CVE-2026-56177High· 7.8
2w ago

Use after free in Windows Server allows an authorized attacker to elevate privileges locally.

Use after free in Windows Server allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.33%via NVD
CVE-2026-62697High· 7.8
2w ago

Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_21h2EPSS 0.33%via NVD
CVE-2026-56172High· 7.8
2w ago

Use after free in Windows VHD miniport driver allows an authorized attacker to elevate privileges locally.

Use after free in Windows VHD miniport driver allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1809EPSS 0.33%via NVD
CVE-2026-82063Medium· 5.3
2w ago

A use-after-free security issue in the cursor management component of MongoDB Server allows an authenticated user to cause a denial of service

A use-after-free security issue in the cursor management component of MongoDB Server allows an authenticated user to cause a denial of service. Under specific timing conditions during cursor operations, a stale pointer to a freed resourc…

▾ Sunlitmongodb · mongodbEPSS 0.37%via NVD
CVE-2026-82061High· 8.1
2w ago

A use-after-free security issue exists in the server's query execution memory tracking subsystem

A use-after-free security issue exists in the server's query execution memory tracking subsystem. An authenticated user with read privileges can trigger a write to freed heap memory through a sequence of standard database commands, leadi…

▾ Twilightmongodb · mongodbEPSS 0.53%via NVD
CVE-2026-82056Medium· 5.3
2w ago

A race condition in MongoDB server's text index query parsing can cause a heap use-after-free read when handling upsert retry paths

A race condition in MongoDB server's text index query parsing can cause a heap use-after-free read when handling upsert retry paths. Under certain concurrent index lifecycle operations, a raw pointer to internal text index metadata may b…

▾ Sunlitmongodb · mongodbEPSS 0.33%via NVD
CVE-2026-9034High· 7.8
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operat…

Use After Free vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operat…

▾ TwilightArm Ltd · Bifrost GPU Userspace DriverEPSS 0.16%via NVD
CVE-2026-7477High· 7.8
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

▾ TwilightArm Ltd · Bifrost GPU Kernel DriverEPSS 0.16%via NVD
CVE-2026-7476High· 7.8
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing…

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing…

▾ TwilightArm Ltd · Bifrost GPU Kernel DriverEPSS 0.16%via NVD
CVE-2026-5729High· 7.8
2w ago

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU processing operations to access already freed memory. …

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU processing operations to access already freed memory. …

▾ TwilightArm Ltd · Valhall GPU Kernel DriverEPSS 0.16%via NVD
CVE-2026-12387Medium· 5.1
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

▾ SunlitArm Ltd · Bifrost GPU Kernel DriverEPSS 0.11%via NVD
CVE-2026-12285Medium· 4.0
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

▾ SunlitArm Ltd · Bifrost GPU Kernel DriverEPSS 0.11%via NVD
CVE-2026-11891Medium· 5.1
2w ago

Use After Free vulnerability in Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operations, including via WebGL or WebGPU, t…

Use After Free vulnerability in Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operations, including via WebGL or WebGPU, t…

▾ SunlitArm Ltd · Valhall GPU Userspace DriverEPSS 0.11%via NVD
CVE-2026-0001Medium· 4.4PoC
2w ago

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing op…

▾ TwilightArm Ltd · Bifrost GPU Kernel DriverEPSS 0.17%via NVD
CVE-2026-86713High· 7.1PoC
2w ago

PX4 Autopilot through 1.17.0 contains a use-after-free vulnerability in the load_mon module's stop path where exit_and_cleanup() deletes the LoadMon object and frees the performance counter before perf_end() attempts to access it

PX4 Autopilot through 1.17.0 contains a use-after-free vulnerability in the load_mon module's stop path where exit_and_cleanup() deletes the LoadMon object and frees the performance counter before perf_end() attempts to access it. Attack…

▾ MidnightPX4 · PX4-AutopilotEPSS 0.38%via NVD
CVE-2026-86425Low· 3.3
2w ago

ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the Layer method of PerlMagick

ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the Layer method of PerlMagick. An attacker who supplies a crafted list of images can trigger memory access after deallocation, result…

▾ Sunlitimagemagick · imagemagickEPSS 0.15%via NVD
CVE-2026-82325Medium· 6.8
2w ago

A use-after-free vulnerability in the OpenVPN ovpn-dco-win driver version 2.5.0 through 2.8.6 allows local authenticated users to cause a system crash via crafted control messages

A use-after-free vulnerability in the OpenVPN ovpn-dco-win driver version 2.5.0 through 2.8.6 allows local authenticated users to cause a system crash via crafted control messages

▾ SunlitOpenVPN · ovpn-dco-winEPSS 0.14%via NVD
CVE-2026-86423Low· 3.3
2w ago

ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the GetList method of PerlMagick

ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the GetList method of PerlMagick. A crafted call to the GetList method can trigger the use-after-free, resulting in a crash (denial of…

▾ Sunlitimagemagick · imagemagickEPSS 0.11%via NVD
CVE-2026-20517Medium· 6.7
2w ago

In geniezone, there is a possible escalation of privilege due to use after free

In geniezone, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploita…

▾ SunlitMediaTek, Inc. · MediaTek chipsetEPSS 0.11%via NVD
CVE-2026-20515Medium· 5.5
2w ago

In gpu, there is a possible system crash due to use after free

In gpu, there is a possible system crash due to use after free. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS11122991; Issue ID: MSV-8132.

▾ SunlitEPSS 0.11%via NVD
CVE-2026-20511Medium· 6.7
2w ago

In SurfaceFlinger, there is a possible memory corruption due to use after free

In SurfaceFlinger, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitat…

▾ SunlitMediaTek, Inc. · MediaTek chipsetEPSS 0.11%via NVD
CVE-2026-20507Medium· 6.7
2w ago

In Audio HAL, there is a possible escalation of privilege due to use after free

In Audio HAL, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploita…

▾ SunlitMediaTek, Inc. · MediaTek chipsetEPSS 0.11%via NVD
CVE-2026-20506Medium· 6.7
2w ago

In Audio HAL, there is a possible escalation of privilege due to use after free

In Audio HAL, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploita…

▾ SunlitMediaTek, Inc. · MediaTek chipsetEPSS 0.11%via NVD
CVE-2026-80229High· 7.5
3w ago

When performing transfers via libcurl’s multi interface, pooled TLS connections can outlive their originating easy handles

When performing transfers via libcurl’s multi interface, pooled TLS connections can outlive their originating easy handles. In OpenSSL 3 provider configurations, libcurl attaches an allocated library context to the easy handle's state an…

▾ Twilighthaxx · curlEPSS 0.56%via NVD
CVE-2026-18924Critical· 9.1PoC⚖ disputed
3w ago

A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup process.

A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup process.

▾ Abyssalhaxx · curlEPSS 0.58%via NVD
CVE-2026-86096Medium· 5.9
3w ago

PX4 Autopilot through 1.17.0 contains a use-after-free vulnerability in TemperatureCalibration::start() due to a race condition between task spawning and object deletion

PX4 Autopilot through 1.17.0 contains a use-after-free vulnerability in TemperatureCalibration::start() due to a race condition between task spawning and object deletion. Attackers can trigger the calibration process via shell commands t…

▾ SunlitPX4 · PX4-AutopilotEPSS 0.33%via NVD
CWE-416 vulnerabilities (CVEs) — page 12 · VulnSea