CWE-416
CVEs classified under CWE-416, newest first.
1092 CVEsRSS
CVE-2026-81988High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-81986High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-81985High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-81984Medium· 5.5Acrobat Reader is affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory
Acrobat Reader is affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user int…
CVE-2026-81976High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-81973High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-80162Medium· 5.5Acrobat Reader is affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory
Acrobat Reader is affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user int…
CVE-2026-79909High· 7.8Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user
Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2026-85360High· 7.0Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-83997High· 8.1Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
CVE-2026-83979High· 7.8Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-83968High· 7.8Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-83940High· 7.0Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
CVE-2026-81954High· 7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-80093High· 7.0Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-80081High· 8.8Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.
CVE-2026-78525High· 8.8Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
CVE-2026-78523Medium· 5.9Use after free in Windows DNS allows an unauthorized attacker to deny service over a network.
Use after free in Windows DNS allows an unauthorized attacker to deny service over a network.
CVE-2026-78514High· 8.8Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-78507High· 8.8Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-78457High· 7.0Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.
Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.
CVE-2026-78450High· 8.1Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
CVE-2026-78449High· 8.1Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
CVE-2026-78446Medium· 5.3Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.
Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.
CVE-2026-78445Critical· 9.8Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network.
Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network.
CVE-2026-77905High· 7.0Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.
Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.
CVE-2026-77899High· 7.0Use after free in Windows Security Center allows an authorized attacker to elevate privileges locally.
Use after free in Windows Security Center allows an authorized attacker to elevate privileges locally.
CVE-2026-77894High· 7.0Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-77505High· 8.1Use after free in DNS Server allows an unauthorized attacker to execute code over a network.
Use after free in DNS Server allows an unauthorized attacker to execute code over a network.
CVE-2026-77485High· 7.0Use after free in SQL Server allows an authorized attacker to elevate privileges locally.
Use after free in SQL Server allows an authorized attacker to elevate privileges locally.