VulnSea

CWE-416

CVEs classified under CWE-416, newest first.

1092 CVEsRSS

CVE-2026-58632High· 7.8
2mo ago

Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-58629High· 7.0
2mo ago

DirectX Graphics Kernel Elevation of Privilege Vulnerability

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.26%via CVEORG
CVE-2026-57093High· 7.0
2mo ago

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.28%via NVD
CVE-2026-57092Critical· 9.9
2mo ago

Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.

Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.

▾ Midnightmicrosoft · windows_10_1607EPSS 0.91%via NVD
CVE-2026-57089High· 7.5
2mo ago

Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute code over a network.

Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute code over a network.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.66%via NVD
CVE-2026-56649Medium· 5.9
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to execute code over a network.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to execute code over a network.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.70%via NVD
CVE-2026-56648High· 7.5
2mo ago

Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network.

Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.51%via NVD
CVE-2026-50322High· 7.0
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_24h2EPSS 0.20%via NVD
CVE-2026-50321High· 7.8
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.21%via NVD
CVE-2026-49784High· 7.0
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.20%via NVD
CVE-2026-49171High· 7.5
2mo ago

Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.

Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-49169High· 8.0
2mo ago

Use after free in DNS Server allows an authorized attacker to execute code over a network.

Use after free in DNS Server allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · windows_server_2025EPSS 0.75%via NVD
CVE-2026-49167Medium· 4.7
2mo ago

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ Sunlitmicrosoft · windows_10_1809EPSS 0.35%via NVD
CVE-2026-49166High· 7.8
2mo ago

Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_24h2EPSS 0.33%via NVD
CVE-2026-49162High· 7.0
2mo ago

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_24h2EPSS 0.26%via NVD
CVE-2026-48572High· 7.0
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_23h2EPSS 0.20%via NVD
CVE-2026-48571High· 7.0
2mo ago

Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.

Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_23h2EPSS 0.26%via NVD
CVE-2026-44800High· 7.8
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_23h2EPSS 0.20%via NVD
CVE-2026-42900High· 8.1
2mo ago

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.54%via NVD
CVE-2026-10667High· 7.8
2mo ago

Zephyr's dynamic kernel-object tracking (kernel/userspace/userspace.c, formerly kernel/userspace.c) maintains a doubly-linked list (obj_list) of dynamically allocated kernel objects

Zephyr's dynamic kernel-object tracking (kernel/userspace/userspace.c, formerly kernel/userspace.c) maintains a doubly-linked list (obj_list) of dynamically allocated kernel objects. Iteration over this list in k_object_wordlist_foreach(…

▾ TwilightEPSS 0.15%via NVD
CVE-2026-10663Medium· 6.1
2mo ago

In Zephyr's experimental USB host stack (CONFIG_USB_HOST_STACK), usbh_device_disconnect() (subsys/usb/host/usbh_device.c) freed the root usb_device slab object without clearing the cached pointer ctx->root

In Zephyr's experimental USB host stack (CONFIG_USB_HOST_STACK), usbh_device_disconnect() (subsys/usb/host/usbh_device.c) freed the root usb_device slab object without clearing the cached pointer ctx->root. The bus removal handler dev_re…

▾ SunlitEPSS 0.24%via NVD
CVE-2026-61861Low· 3.7
2mo ago

ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory allocation fails

ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory allocation fails. Attackers can trigger memory allocation failures to cause a dangling pointer to reference freed memory, p…

▾ SunlitEPSS 0.55%via NVD
CVE-2026-34196None
2mo ago

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an integer overflow and map two GPU virtual addresses to the same physical address

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an integer overflow and map two GPU virtual addresses to the same physical address. One of these virutal mappings can be freed along with …

▾ SunlitEPSS 0.17%via NVD
CVE-2026-15194Low· 3.3
2mo ago

A security flaw has been discovered in Open5GS 2.7.7

A security flaw has been discovered in Open5GS 2.7.7. This affects the function amf_context_final of the file src/amf/context.c of the component AMF. Performing a manipulation results in use after free. The attack is only possible with l…

▾ SunlitEPSS 0.16%via NVD
GHSA-q95x-7g78-rccvMedium
2mo ago

OneRingBuf has a Use After Free Vulnerability

OneRingBuf has a Use After Free Vulnerability

▾ Sunlitoneringbuf · oneringbufvia GHSA
CVE-2026-57986High· 7.5
2mo ago

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.61%via CVEORG
CVE-2026-57984High· 7.5
2mo ago

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.61%via CVEORG
CVE-2026-57981High· 8.8
2mo ago

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.82%via CVEORG
CVE-2026-58276High· 7.5
2mo ago

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.61%via CVEORG
CVE-2026-57992High· 7.5
2mo ago

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.61%via CVEORG
CWE-416 vulnerabilities (CVEs) — page 22 · VulnSea