VulnSea

CWE-416

CVEs classified under CWE-416, newest first.

1092 CVEsRSS

CVE-2026-20859High· 7.8
8mo ago

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_24h2EPSS 0.48%via NVD
CVE-2026-20858High· 7.8
8mo ago

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1809EPSS 0.30%via NVD
CVE-2026-20854High· 7.5
8mo ago

Use after free in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to execute code over a network.

Use after free in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · windows_11_24h2EPSS 1.1%via NVD
CVE-2026-20844High· 7.4
8mo ago

Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally.

Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.33%via NVD
CVE-2026-20842High· 7.0
8mo ago

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_21h2EPSS 0.40%via NVD
CVE-2026-20822High· 7.8
8mo ago

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.40%via NVD
CVE-2026-0882High· 8.8
8mo ago

Use-after-free in the IPC component

Use-after-free in the IPC component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.

▾ Twilightmozilla · firefoxEPSS 0.47%via NVD
CVE-2025-14860Critical· 9.8
9mo ago

Use-after-free in the Disability Access APIs component

Use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 146.0.1.

▾ Midnightmozilla · firefoxEPSS 0.32%via NVD
CVE-2025-43511Medium· 6.5
9mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously craft…

▾ Sunlitapple · ipadosEPSS 0.46%via NVD
CVE-2025-62221High· 7.8CISA KEV0dayPoC
9mo ago

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

▾ Abyssalmicrosoft · windows_10_1809EPSS 2.5%via NVD
CVE-2025-13638High· 8.8
10mo ago

Use after free in Media Stream in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page

Use after free in Media Stream in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)

▾ Twilightgoogle · chromeEPSS 0.26%via NVD
CVE-2025-13633High· 8.8
10mo ago

Use after free in Digital Credentials in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page

Use after free in Digital Credentials in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity:…

▾ Twilightgoogle · chromeEPSS 0.41%via NVD
CVE-2025-65955Medium· 4.9
10mo ago

ImageMagick is free and open-source software used for editing and manipulating digital images

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-9 and 6.9.13-34, there is a vulnerability in ImageMagick’s Magick++ layer that manifests when Options::fontFamily is invoked wi…

▾ Sunlitimagemagick · imagemagickEPSS 0.16%via NVD
CVE-2025-48593High· 8.0PoC
10mo ago

In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free

In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed…

▾ Midnightgoogle · androidEPSS 0.89%via NVD
CVE-2025-61662High· 7.8
10mo ago

A Use-After-Free vulnerability has been discovered in GRUB's gettext module

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condi…

▾ Twilightgnu · grub2EPSS 0.20%via NVD
CVE-2025-40149Medium· 5.0⚖ disputed
10mo ago

kernel: tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock() (CVE-2025-40149)

A flaw was found in the Linux kernel’s TLS implementation (net/tls/tls_device.c). The function get_netdev_for_sock() is invoked during setsockopt(), which is not executed under RCU (Read-Copy-Update) protection. It previously used sk_dst_g…

▾ SunlitRed Hat · Red Hat Enterprise Linux BaseOS (v. 10)EPSS 0.16%via CSAF
CVE-2023-43000High· 8.8CISA KEVPoC
10mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.5, iOS 16.6 and iPadOS 16.6, Safari 16.6, iOS 15.8.7 and iPadOS 15.8.7. Processing maliciously crafted web content may lead to …

▾ Abyssalapple · safariEPSS 3.9%via NVD
CVE-2025-43434Medium· 4.3
10mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously craft…

▾ Sunlitapple · safariEPSS 1.2%via NVD
CVE-2025-43457Medium· 6.5
10mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously crafted web content may lead to an …

▾ Sunlitapple · safariEPSS 0.57%via NVD
CVE-2025-43438Medium· 4.3
10mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously craft…

▾ Sunlitapple · safariEPSS 1.0%via NVD
CVE-2025-62230High· 7.3
11mo ago

A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup

A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detaching related resources, leading to a use-after-free conditio…

▾ TwilightEPSS 0.26%via NVD
CVE-2025-12105High· 7.5
11mo ago

A flaw was found in the asynchronous message queue handling of the libsoup library, widely used by GNOME and WebKit-based applications to manage HTTP/2 communications

A flaw was found in the asynchronous message queue handling of the libsoup library, widely used by GNOME and WebKit-based applications to manage HTTP/2 communications. When network operations are aborted at specific timing intervals, an …

▾ TwilightEPSS 0.46%via NVD
CVE-2022-50507High· 7.8
11mo ago

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate data run offset This adds sanity checks for data run offset

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate data run offset This adds sanity checks for data run offset. We should make sure data run offset is legit before trying to unpack them, otherwise we…

▾ Twilightlinux · linux_kernelEPSS 0.16%via NVD
CVE-2025-11234High· 7.5
12mo ago

A flaw was found in QEMU

A flaw was found in QEMU. If the QIOChannelWebsock object is freed while it is waiting to complete a handshake, a GSource is leaked. This can lead to the callback firing later on and triggering a use-after-free in the use of the channel.…

▾ TwilightRed Hat · qemuEPSS 0.86%via NVD
CVE-2025-10729None
12mo ago

The module will parse a <pattern> node which is not a child of a structural node

The module will parse a <pattern> node which is not a child of a structural node. The node will be deleted after creation but might be accessed later leading to a use after free.

▾ SunlitEPSS 0.22%via NVD
CVE-2025-10501High· 8.8
1y ago

Use after free in WebRTC in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page

Use after free in WebRTC in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

▾ Twilightgoogle · chromeEPSS 0.28%via NVD
CVE-2025-10500High· 8.8
1y ago

Use after free in Dawn in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page

Use after free in Dawn in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

▾ Twilightgoogle · chromeEPSS 0.27%via NVD
CVE-2025-8410High· 7.4
1y ago

Use After Free vulnerability in RTI Connext Professional (Security Plugins) allows File Manipulation

Use After Free vulnerability in RTI Connext Professional (Security Plugins) allows File Manipulation. This issue affects Connext Professional: from 7.5.0 before 7.6.0.

▾ Twilightrti · connext_professionalEPSS 0.21%via NVD
CVE-2022-50378High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: drm/meson: reorder driver deinit sequence to fix use-after-free bug Unloading the driver triggers the following KASAN warning: [ +0.006275] =========================…

In the Linux kernel, the following vulnerability has been resolved: drm/meson: reorder driver deinit sequence to fix use-after-free bug Unloading the driver triggers the following KASAN warning: [ +0.006275] =========================…

▾ Twilightlinux · linux_kernelEPSS 0.16%via NVD
CVE-2025-7993High· 7.80day
1y ago

Ashlar-Vellum Cobalt LI File Parsing Use-After-Free Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt LI File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required…

▾ Abyssalashlar · cobaltEPSS 0.22%via NVD
CWE-416 vulnerabilities (CVEs) — page 31 · VulnSea