Vulnerabilities (CVE)

Filtered by CWE-416
Total 7839 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-12921 1 Azeotech 1 Daqfactory 2026-07-16 N/A 7.8 HIGH
In AzeoTech DAQFactory versions 21.1 and prior, a Use After Free vulnerability can be exploited by an attacker using specially crafted .ctl files which can result in code execution.
CVE-2026-55018 1 Microsoft 6 365 Apps, Microsoft 365, Office 2016 and 3 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-50467 1 Microsoft 6 365 Apps, Microsoft 365, Office 2016 and 3 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-47290 1 Microsoft 5 365 Apps, Office 2016, Office 2019 and 2 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-55128 1 Microsoft 8 365 Apps, Microsoft 365, Office 2019 and 5 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-6424 2026-07-16 N/A N/A
Use-after-free vulnerability in ESET Linux products potentially allowed an attacker to trigger kernel panic on the system
CVE-2026-42530 1 F5 4 Nginx Gateway Fabric, Nginx Ingress Controller, Nginx Instance Manager and 1 more 2026-07-16 N/A 8.1 HIGH
NGINX Open Source has a vulnerability in the ngx_http_v3_module module. When NGINX Open Source is configured to use the HTTP/3 QUIC module, a remote unauthenticated attacker along with conditions beyond their control can use a specially crafted HTTP/3 session to reopen a QPACK encoder stream. This may cause a Use-after-Free in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2024-58093 1 Linux 1 Linux Kernel 2026-07-16 N/A 7.8 HIGH
In the Linux kernel, the following vulnerability has been resolved: PCI/ASPM: Fix link state exit during switch upstream function removal Before 456d8aa37d0f ("PCI/ASPM: Disable ASPM on MFD function removal to avoid use-after-free"), we would free the ASPM link only after the last function on the bus pertaining to the given link was removed. That was too late. If function 0 is removed before sibling function, link->downstream would point to free'd memory after. After above change, we freed the ASPM parent link state upon any function removal on the bus pertaining to a given link. That is too early. If the link is to a PCIe switch with MFD on the upstream port, then removing functions other than 0 first would free a link which still remains parent_link to the remaining downstream ports. The resulting GPFs are especially frequent during hot-unplug, because pciehp removes devices on the link bus in reverse order. On that switch, function 0 is the virtual P2P bridge to the internal bus. Free exactly when function 0 is removed -- before the parent link is obsolete, but after all subordinate links are gone. [kwilczynski: commit log]
CVE-2026-55948 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-47642 1 Microsoft 6 365 Apps, Microsoft 365, Office 2019 and 3 more 2026-07-16 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-54131 1 Microsoft 6 365 Apps, Microsoft 365, Office 2019 and 3 more 2026-07-15 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-56434 2026-07-15 N/A 6.5 MEDIUM
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ssi_module module. This vulnerability may exist when the Server-Side Includes (SSI), proxy_pass, and proxy_buffering off directives are configured. With this configuration, an unauthenticated attacker with man-in-the-middle (MITM) ability to control responses from an upstream server may be able to cause a use-after-free in the NGINX worker process. This issue may lead to limited modification of memory or a restart of the NGINX worker process. Impact: This vulnerability may allow remote attackers to have limited control to modify memory contents or restart the NGINX worker process. There is no control plane exposure; this is a data plane issue only. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2026-61860 2026-07-15 N/A 3.7 LOW
ImageMagick before 7.1.2-26 and 6.9.13-51 contains a use-after-free vulnerability that occurs when freetype initialization fails: the method does not exit and continues to use memory that was already freed. This can be triggered during image processing and may lead to a denial of service.
CVE-2026-54112 1 Microsoft 9 Windows 10 1809, Windows 10 21h2, Windows 10 22h2 and 6 more 2026-07-15 N/A 7.8 HIGH
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-58633 1 Microsoft 1 Windows 11 26h1 2026-07-15 N/A 7.8 HIGH
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-15764 2 Google, Linux 2 Chrome, Linux Kernel 2026-07-15 N/A 7.5 HIGH
Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-58634 1 Microsoft 1 Windows 11 26h1 2026-07-15 N/A 7.8 HIGH
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-15765 1 Google 1 Chrome 2026-07-15 N/A 7.5 HIGH
Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-15772 1 Google 2 Android, Chrome 2026-07-15 N/A 8.3 HIGH
Use after free in GPU in Google Chrome on Android prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-15773 2 Google, Microsoft 2 Chrome, Windows 2026-07-15 N/A 9.6 CRITICAL
Use after free in Core in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)