The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
8,051 vulnerabilities with CWE-416
CVE-2026-51304
HIGH
SQLite 3.41 - Use-After-Free and Remote Code Execution via ORDER BY Clause Parsing
CVSS 7.5
CVE-2026-51303
CRITICAL
SQLite < 3.41 - Use-After-Free via ExprList Object Dangling Pointer in SQL Statement Parsing
CVSS 9.8
CVE-2026-51302
HIGH
SQLite 3.41 - Use-After-Free in Expression Evaluation Logic via Malicious SQL Statement
CVSS 7.5
CVE-2026-51300
CRITICAL
SQLite 3.41 - Use-After-Free and Information Disclosure via Malicious SQL Expression Parsing
CVSS 9.1
CVE-2026-51298
MEDIUM
SQLite 3.41 - Use-After-Free in JSON Extraction Function Leading to Denial of Service
CVSS 6.2
CVE-2026-51297
HIGH
SQLite 3.41 - Use-After-Free in JSON Parser via Malicious JSON Payload
CVSS 8.8
CVE-2026-51296
HIGH
SQLite 3.41 - Use-After-Free in JSON Module via jsonRemoveFunc
CVSS 7.5
CVE-2026-49743
HIGH
GPU DDK - Write UAF of sync checkpoint in GPU kick function after export fence file descriptor is prematurely closed
CVSS 7.8
CVE-2026-16806
HIGH
Google Chrome - Use After Free
CVSS 8.8
CVE-2026-16805
HIGH
Google Chrome - Use After Free
CVSS 8.8
CVE-2026-16804
HIGH
Google Chrome - Use After Free
CVSS 8.3
CVE-2026-13071
MEDIUM
Server-Side JavaScript Aggregation Expression Memory Safety Issue Leading to Process Termination
CVSS 6.5
CVE-2026-52863
MEDIUM
NLnet Labs Unbound < 1.25.2 - respip/dns64 Use-After-Free Denial of Service
CVSS 5.9
CVE-2026-50046
MEDIUM
Possible heap use-after-free in an error path when a DoT forwarded query is jostled out
CVSS 5.9
CVE-2026-16424
CRITICAL
Google Chrome - Use After Free
CVSS 9.6
CVE-2026-16423
HIGH
Google Chrome - Use After Free
CVSS 8.8
CVE-2026-59850
MEDIUM
Libssh: libssh: use-after-free via data callbacks on closed channels
CVSS 4.3
CVE-2026-16367
CRITICAL
Sandbox escape due to invalid pointer in the Disability Access APIs component
CVSS 10.0
CVE-2026-16362
HIGH
Use-after-free in the WebRTC: Audio/Video component
CVSS 8.8
CVE-2026-16356
CRITICAL
Sandbox escape due to use-after-free in the Disability Access APIs component
CVSS 9.8
CVE-2026-16353
CRITICAL
Invalid pointer in the DOM: Bindings (WebIDL) component
CVSS 9.8
CVE-2026-16352
CRITICAL
Sandbox escape due to use-after-free in the Disability Access APIs component
CVSS 9.8
CVE-2026-16351
CRITICAL
Sandbox escape due to use-after-free in the DOM: Navigation component
CVSS 9.8
CVE-2026-60080
HIGH
Apache Fory: Rust MetaString heap use-after-free
CVSS 7.3
CVE-2026-63729
MEDIUM
TeX Live SyncTeX Parser Heap Use-After-Free via Malformed SyncTeX File
CVSS 6.6
Details
Vulnerabilities
8,051
Exploit Likelihood
High