CVE & Exploit Intelligence Database

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,847 CVEs tracked 53,242 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,802 vendors 42,493 researchers
6,619 results Clear all
CVE-2011-1449 EPSS 0.02
Google Chrome <11.0.696.57 - Use After Free
Use-after-free vulnerability in the WebSockets implementation in Google Chrome before 11.0.696.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CWE-416 May 03, 2011
CVE-2011-1440 EPSS 0.02
Google Chrome <11.0.696.57 - Use After Free
Use-after-free vulnerability in Google Chrome before 11.0.696.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the ruby element and Cascading Style Sheets (CSS) token sequences.
CWE-416 May 03, 2011
CVE-2011-1301 EPSS 0.03
Google Chrome < 10.0.648.205 - Use After Free
Use-after-free vulnerability in the GPU process in Google Chrome before 10.0.648.205 allows remote attackers to execute arbitrary code via unknown vectors.
CWE-416 Apr 15, 2011
CVE-2011-1236 7.8 HIGH EPSS 0.01
Microsoft Windows 2003 Server - Use After Free
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, a different vulnerability than other "Vulnerability Type 1" CVEs listed in MS11-034, aka "Win32k Use After Free Vulnerability."
CWE-399 Apr 13, 2011
CVE-2011-0671 8.4 HIGH EPSS 0.01
Microsoft Windows 2003 Server - Use After Free
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, a different vulnerability than other "Vulnerability Type 1" CVEs listed in MS11-034, aka "Win32k Use After Free Vulnerability."
CWE-399 Apr 13, 2011
CVE-2011-1293 EPSS 0.01
Google Chrome < 10.0.648.204 - Use After Free
Use-after-free vulnerability in the HTMLCollection implementation in Google Chrome before 10.0.648.204 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CWE-416 Mar 25, 2011
CVE-2011-1292 EPSS 0.01
Google Chrome < 10.0.648.204 - Use After Free
Use-after-free vulnerability in the frame-loader implementation in Google Chrome before 10.0.648.204 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CWE-416 Mar 25, 2011
CVE-2011-1195 EPSS 0.02
Google Chrome < 10.0.648.127 - Use After Free
Use-after-free vulnerability in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to "document script lifetime handling."
CWE-416 Mar 11, 2011
CVE-2011-1191 EPSS 0.02
Google Chrome < 10.0.648.127 - Use After Free
Use-after-free vulnerability in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of DOM URLs.
CWE-416 Mar 11, 2011
CVE-2011-1124 EPSS 0.02
Google Chrome < 9.0.597.107 - Use After Free
Use-after-free vulnerability in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to blocked plug-ins.
CWE-416 Mar 01, 2011
CVE-2011-1059 EPSS 0.01
Google Chrome < 11.0.672.2 - Use After Free
Use-after-free vulnerability in WebCore in WebKit before r77705, as used in Google Chrome before 11.0.672.2 and other products, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors that entice a user to resubmit a form, related to improper handling of provisional items by the HistoryController component, aka rdar problem 8938557.
CWE-416 Feb 22, 2011
CVE-2011-0982 EPSS 0.03
Google Chrome < 9.0.597.94 - Use After Free
Use-after-free vulnerability in Google Chrome before 9.0.597.94 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG font faces.
CWE-416 Feb 10, 2011
CVE-2011-0777 EPSS 0.01
Google Chrome < 9.0.597.84 - Use After Free
Use-after-free vulnerability in Google Chrome before 9.0.597.84 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to image loading.
CWE-416 Feb 04, 2011
CVE-2010-3452 EPSS 0.10
OpenOffice.org <3.3 - Use After Free
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.
CWE-416 Jan 28, 2011
CVE-2010-3451 EPSS 0.10
OpenOffice.org <3.3 - Use After Free
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed tables in an RTF document.
CWE-416 Jan 28, 2011
CVE-2011-0475 EPSS 0.07
Google Chrome OS < 8.0.552.344 - Use After Free
Use-after-free vulnerability in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a PDF document.
CWE-416 Jan 14, 2011
CVE-2011-0346 8.1 HIGH EPSS 0.61
Microsoft Internet Explorer - Use After Free
Use-after-free vulnerability in the ReleaseInterface function in MSHTML.DLL in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the DOM implementation and the BreakAASpecial and BreakCircularMemoryReferences functions, as demonstrated by cross_fuzz, aka "MSHTML Memory Corruption Vulnerability."
CWE-399 Jan 07, 2011
CVE-2010-4493 EPSS 0.02
Google Chrome < 8.0.552.215 - Use After Free
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events.
CWE-416 Dec 07, 2010
CVE-2010-4492 EPSS 0.02
Google Chrome < 8.0.552.215 - Use After Free
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animations.
CWE-416 Dec 07, 2010
CVE-2010-4169 EPSS 0.00
Linux Kernel < 2.6.37 - Use After Free
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
CWE-416 Nov 22, 2010