CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,489 vulnerabilities with CWE-416
CVE-2025-53152 HIGH
Windows 10 1507-22H2, Windows 11 22H2-23H2, Windows Server 2008-2016 - Use-After-Free in Desktop Windows Manager
CVSS 7.8
CVE-2025-53151 HIGH
Windows Kernel - Use-After-Free Privilege Escalation
CVSS 7.8
CVE-2025-53147 HIGH
Windows 10/11, Server 2008 - Use-After-Free in WinSock AFD
CVSS 7.0
CVE-2025-53142 HIGH
Windows 11 22H2-24H2 and Windows Server 2022 23H2/2025 - Use-After-Free in Brokering File System
CVSS 7.0
CVE-2025-53140 HIGH
Windows Kernel Transaction Manager - Use-After-Free Privilege Escalation
CVSS 7.0
CVE-2025-53137 HIGH
Windows 10 1507-24H2 and Windows Server 2008 - Use-After-Free in Ancillary Function Driver for WinSock
CVSS 7.0
CVE-2025-53133 HIGH
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.4851 - Authenticated Use-After-Free in PrintWorkflowUserSvc
CVSS 7.8
CVE-2025-53132 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Privilege Escalation via Win32K GRFX Race Condition
CVSS 7.8
CVE-2025-50177 HIGH
Windows Message Queuing - Use After Free
CVSS 8.1
CVE-2025-50167 HIGH
Windows Hyper-V - Privilege Escalation
CVSS 7.0
CVE-2025-50159 HIGH
Remote Access Point-to-Point Protocol (PPP) EAP-TLS - Privilege Esc...
CVSS 7.3
CVE-2025-50153 HIGH
Desktop Windows Manager - Privilege Escalation
CVSS 7.8
CVE-2025-49761 HIGH
Windows Kernel - Use-After-Free
CVSS 7.8
CVE-2025-49743 MEDIUM
Windows 10/11 & Server 2008 Privilege Escalation via Graphics Race Condition
CVSS 6.7
CVE-2025-49568 MEDIUM
Illustrator 28.0-28.7.8 and 29.6.1 - Use-After-Free via Malicious File
CVSS 5.5
CVE-2025-38500 HIGH
Linux Kernel 6.1-6.1.148, 6.2-6.6.101, 6.7-6.12.41, 6.13-6.15.9 - Use-After-Free in xfrm Interface
CVSS 7.8
CVE-2025-55157 HIGH
Vim 9.1.1231-9.1.1400 - Use-After-Free in Tuple Reference Management
CVSS 8.8
CVE-2025-8842 MEDIUM
NASM Netwide Assembler 2.17rc0 - Use-After-Free in do_directive Function
CVSS 5.3
CVE-2025-8837 MEDIUM
JasPer < 4.2.5 - Use-After-Free in JPEG2000 File Handler
CVSS 5.3
CVE-2025-27128 HIGH
OpenHarmony <5.0.3 - Use After Free
CVSS 8.4
CVE-2025-24298 HIGH
OpenHarmony < 5.0.3 - Use-After-Free
CVSS 8.4
CVE-2025-46709 HIGH
Imaginationtech DDK 1.17 through 25.1 - Memory Leak or Kernel Exception
CVSS 7.5
CVE-2025-8578 HIGH
Google Chrome < 139.0.7258.66 - Use-After-Free in Cast via Crafted HTML Page
CVSS 8.8
CVE-2025-8576 HIGH
Google Chrome < 139.0.7258.66 - Use-After-Free in Extensions via Crafted Chrome Extension
CVSS 8.8
CVE-2025-21474 HIGH
Qualcomm FastConnect and QCA Firmware - Use-After-Free in A2DP Sink Command Queue
CVSS 7.8
Details
Vulnerabilities 7,489
Exploit Likelihood High