The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
6,899 vulnerabilities with CWE-416
CVE-2026-4691
CRITICAL
Use-after-free in the CSS Parsing and Computation component
CVSS 9.8
CVE-2026-4688
CRITICAL
Sandbox escape due to use-after-free in the Disability Access APIs component
CVSS 10.0
CVE-2026-4684
HIGH
Race condition, use-after-free in the Graphics: WebRender component
CVSS 7.5
CVE-2026-4752
MEDIUM
Use After Free in No-Chicken Echo-Mate
CVSS 6.4
CVE-2026-4737
HIGH
Use-After-Free Vulnerability in No-Chicken/Echo-Mate
CVE-2026-4680
HIGH
Google Chrome < 146.0.7680.165 - Use After Free
CVSS 8.8
CVE-2026-4678
HIGH
Google Chrome < 146.0.7680.165 - Use After Free
CVSS 8.8
CVE-2026-4676
HIGH
Google Chrome < 146.0.7680.165 - Use After Free
CVSS 8.8
CVE-2026-30007
MEDIUM
XnSoft NConvert 7.230 - Use After Free
CVSS 6.2
CVE-2026-33150
HIGH
Use After Free in libfuse
CVSS 7.8
CVE-2026-32942
HIGH
PJSIP has ICE session use-after-free race conditions
CVE-2026-4458
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4456
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4454
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4449
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4446
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4445
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-4441
HIGH
Google Chrome < 146.0.7680.153 - Use After Free
CVSS 8.8
CVE-2026-31972
CRITICAL
samtools mpileup has use-after-free leading to an invalid read
CVSS 9.8
CVE-2026-4148
HIGH
ExpressionContext use-after-free in classic engine $lookup and $graphLookup aggregation operators
CVSS 8.8
CVE-2026-4271
MEDIUM
Libsoup: libsoup: denial of service via use-after-free in http/2 server
CVSS 5.3
CVE-2026-32724
MEDIUM
PX4 autopilot <1.17.0-rc1 - Use After Free
CVSS 5.3
CVE-2026-3979
MEDIUM
quickjs-ng quickjs <=0.12.1 - Use After Free
CVSS 5.3
CVE-2026-3936
HIGH
Google Chrome Android <146.0.7680.71 - Use After Free
CVSS 8.8
CVE-2026-3924
HIGH
Google Chrome <146.0.7680.71 - Use After Free
CVSS 7.5
Details
Vulnerabilities
6,899
Exploit Likelihood
High