CWE-416
8,553 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Use After Free
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
CVEs (8,553)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Redhat 3Enterprise Linux Hardened ImagesOpenshift Container PlatformSep 1, 2026 Aug 12, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.c of the GNU linker (ld), a component of binutils. The root cause is that plugin_maybe_claim() in ld/plugin.c frees the...Show more |
Use after free in Blink in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) |
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) |
Use after free in Extensions in Google Chrome prior to 151.0.7922.137 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (...Show more |
Use after free in TabStrip in Google Chrome on Mac prior to 151.0.7922.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium sec...Show more |
Use after free in V8 in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) |
In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operations are concurrent. |
An issue in MongoDB Server's query execution engine could allow an authenticated user with read and write privileges to cause an internal reference to be used after the underlying memory has been freed, when running cert...Show more |
An issue in MongoDB Server's $graphLookup aggregation stage could allow an authenticated user able to issue aggregation and memory-management commands to cause an internal reference to be used after the underlying memory...Show more |
An issue in MongoDB Server's geospatial validation could allow an authenticated user with write privileges to cause an internal reference to be used after the underlying memory has been freed, through concurrent operatio...Show more |
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated user with write privileges to cause an internal reference to be used after the underlying memory has been freed. Subsequen...Show more |
A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kernel memory, potentially resulting in loss of availability |
1Microsoft 6365 Apps Microsoft 365Office 2019+3 moreAug 14, 2026 Aug 11, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreAug 16, 2026 Aug 11, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreAug 16, 2026 Aug 11, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
1Microsoft 5Windows 10 1809 Windows 11 26h1Windows Server 2019+2 moreAug 20, 2026 Aug 11, 2026 N/A· v4 8.1 HIGH· v3 N/A· v2 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Device Health Attestation (DHA) allows an unauthorized attacker to execute code over a network. |
1Microsoft 6Windows 10 1607 Windows 10 1809Windows Server 2016+3 moreSep 2, 2026 Aug 11, 2026 N/A· v4 8.1 HIGH· v3 N/A· v2 Use after free in Windows DNS allows an unauthorized attacker to execute code over a network. |
1Microsoft 5Windows 11 23h2 Windows 11 24h2Windows 11 25h2+2 moreAug 14, 2026 Aug 11, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. |
1Microsoft 2Windows 11 24h2 Windows 11 25h2Aug 13, 2026 Aug 11, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. |
1Microsoft 2Windows 11 24h2 Windows 11 25h2Aug 13, 2026 Aug 11, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally. |