Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-41218 |
|
Use-After-Free in f5 (CVE-2026-41218)
vulnerability in f5 (CVE-2026-41218). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40701 |
|
Use-After-Free in nginx (CVE-2026-40701)
vulnerability in nginx (CVE-2026-40701). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.30.1` or later.
|
| CVE-2026-8336 |
|
Use-After-Free in mongodb (CVE-2026-8336)
vulnerability in mongodb (CVE-2026-8336). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.2.9, 8.3.2` or later.
|
| CVE-2026-8201 |
|
Use-After-Free in mongodb (CVE-2026-8201)
vulnerability in mongodb (CVE-2026-8201). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.34, 8.0.23, 8.2.9, 8.3.2` or later.
|
| CVE-2026-45185 |
|
Use-After-Free in exim (CVE-2026-45185)
vulnerability in exim (CVE-2026-45185). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42825 |
|
Use-After-Free in microsoft (CVE-2026-42825)
vulnerability in microsoft (CVE-2026-42825). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41095 |
|
Use after free in Data Deduplication allows an authorized attacker to elevate privileges locally.
Use after free in Data Deduplication allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-40410 |
|
Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.
Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-40418 |
|
Use-After-Free in microsoft (CVE-2026-40418)
vulnerability in microsoft (CVE-2026-40418). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40419 |
|
Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.
Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-40415 |
|
Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
|
| CVE-2026-40408 |
|
Use-After-Free in microsoft (CVE-2026-40408)
vulnerability in microsoft (CVE-2026-40408). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40406 |
|
Use-After-Free in microsoft (CVE-2026-40406)
vulnerability in microsoft (CVE-2026-40406). Confidential information can be exposed externally.
|
| CVE-2026-40402 |
|
Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.
Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.
|
| CVE-2026-40382 |
|
Use-After-Free in microsoft (CVE-2026-40382)
vulnerability in microsoft (CVE-2026-40382). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40366 |
|
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
| CVE-2026-40359 |
|
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
|
| CVE-2026-40358 |
|
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
|
| CVE-2026-40361 |
|
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
| CVE-2026-35416 |
|
Use-After-Free in microsoft (CVE-2026-35416)
vulnerability in microsoft (CVE-2026-35416). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35418 |
|
Vulnerability in microsoft (CVE-2026-35418)
vulnerability in microsoft (CVE-2026-35418). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34638 |
|
Use-After-Free in adobe (CVE-2026-34638)
vulnerability in adobe (CVE-2026-34638). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34347 |
|
Use-After-Free in microsoft (CVE-2026-34347)
vulnerability in microsoft (CVE-2026-34347). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34345 |
|
Vulnerability in microsoft (CVE-2026-34345)
vulnerability in microsoft (CVE-2026-34345). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34338 |
|
Use-After-Free in microsoft (CVE-2026-34338)
vulnerability in microsoft (CVE-2026-34338). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34337 |
|
Vulnerability in microsoft (CVE-2026-34337)
vulnerability in microsoft (CVE-2026-34337). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34330 |
|
Vulnerability in microsoft (CVE-2026-34330)
vulnerability in microsoft (CVE-2026-34330). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34333 |
|
Vulnerability in microsoft (CVE-2026-34333)
vulnerability in microsoft (CVE-2026-34333). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34332 |
|
Use-After-Free in microsoft (CVE-2026-34332)
vulnerability in microsoft (CVE-2026-34332). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34340 |
|
Use-After-Free in microsoft (CVE-2026-34340)
vulnerability in microsoft (CVE-2026-34340). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34331 |
|
Vulnerability in microsoft (CVE-2026-34331)
vulnerability in microsoft (CVE-2026-34331). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33840 |
|
Use-After-Free in microsoft (CVE-2026-33840)
vulnerability in microsoft (CVE-2026-33840). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33835 |
|
Use-After-Free in microsoft (CVE-2026-33835)
vulnerability in microsoft (CVE-2026-33835). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32161 |
|
Vulnerability in microsoft (CVE-2026-32161)
vulnerability in microsoft (CVE-2026-32161). Successful exploitation can lead to full system takeover.
|
| CVE-2025-27723 |
|
Use-After-Free in dos (CVE-2025-27723)
vulnerability in dos (CVE-2025-27723). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8390 |
|
Use-After-Free in mozilla (CVE-2026-8390)
vulnerability in mozilla (CVE-2026-8390). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43668 |
|
Use-After-Free in apple (CVE-2026-43668)
vulnerability in apple (CVE-2026-43668). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28969 |
|
Use-After-Free in apple (CVE-2026-28969)
vulnerability in apple (CVE-2026-28969). Confidential information can be exposed externally.
|
| CVE-2026-28994 |
|
Use-After-Free in apple (CVE-2026-28994)
vulnerability in apple (CVE-2026-28994). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28946 |
|
Use-After-Free in apple (CVE-2026-28946)
vulnerability in apple (CVE-2026-28946). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28947 |
|
Use-After-Free in apple (CVE-2026-28947)
vulnerability in apple (CVE-2026-28947). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28942 |
|
Use-After-Free in apple (CVE-2026-28942)
vulnerability in apple (CVE-2026-28942). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28883 |
|
Use-After-Free in apple (CVE-2026-28883)
vulnerability in apple (CVE-2026-28883). Confidential information can be exposed externally.
|
| CVE-2026-7261 |
|
Use-After-Free in libphp (CVE-2026-7261)
vulnerability in libphp (CVE-2026-7261). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.2.31, 8.3.31, 8.4.21, 8.5.6` or later.
|
| CVE-2026-6722 |
|
Use-After-Free in libphp (CVE-2026-6722)
vulnerability in libphp (CVE-2026-6722). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.2.31, 8.3.31, 8.4.21, 8.5.6` or later.
|
| CVE-2026-6297 |
|
Use-After-Free in Google chrome (CVE-2026-6297)
vulnerability in Google chrome (CVE-2026-6297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7363 |
|
Use-After-Free in Google chrome (CVE-2026-7363)
vulnerability in Google chrome (CVE-2026-7363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43458 |
|
Use-After-Free in linux (CVE-2026-43458)
vulnerability in linux (CVE-2026-43458). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43459 |
|
Use-After-Free in linux (CVE-2026-43459)
vulnerability in linux (CVE-2026-43459). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43447 |
|
Use-After-Free in linux (CVE-2026-43447)
vulnerability in linux (CVE-2026-43447). Successful exploitation can lead to full system takeover.
|