The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,483 vulnerabilities with CWE-416
CVE-2026-27911
HIGH
Windows User Interface Core Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-27909
HIGH
Windows Search Service Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-27908
HIGH
Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-26182
HIGH
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-26181
HIGH
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-26177
HIGH
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-26174
HIGH
Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-26173
HIGH
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-26172
HIGH
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-26168
HIGH
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-26167
HIGH
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-26165
HIGH
Windows Shell Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-23657
HIGH
Microsoft Word Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-27283
HIGH
InDesign Desktop | Use After Free (CWE-416)
CVSS 7.8
CVE-2026-40311
MEDIUM
ImageMagick: Heap-use-after-free via XMP profile could result in a crash when printing values
CVSS 5.5
CVE-2026-6100
CRITICAL
Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure
CVE-2026-31426
HIGH
ACPI: EC: clean up handlers on probe failure in acpi_ec_setup()
CVSS 7.0
CVE-2026-31419
HIGH
net: bonding: fix use-after-free in bond_xmit_broadcast()
CVSS 7.8
CVE-2026-34859
MEDIUM
Huawei HarmonyOS <4.3.0 - Use After Free
CVSS 5.9
CVE-2026-34854
MEDIUM
Huawei HarmonyOS <6.0.0 - Use After Free
CVSS 5.7
CVE-2026-6068
CRITICAL
NASM - Use-After-Free in Response File Processing
CVSS 9.6
CVE-2026-5460
MEDIUM
Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3
CVSS 6.5
CVE-2026-34734
HIGH
HDF5: H5T__conv_struct Use After Free
CVSS 7.8
CVE-2026-34983
MEDIUM
Wasmtime 43.0.0 wasmtime::Linker Clone - Use-After-Free
CVSS 5.0
CVE-2026-34757
MEDIUM
libpng 1.0.9-1.6.56 Chunk Setters - Use-After-Free
CVSS 5.1
Details
Vulnerabilities
7,483
Exploit Likelihood
High