The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,502 vulnerabilities with CWE-416
CVE-2025-0997
HIGH
Google Chrome < 133.0.6943.98 - Use-After-Free in Navigation via Crafted Chrome Extension
CVSS 8.1
CVE-2025-0995
HIGH
Google Chrome < 133.0.6943.98 - Use-After-Free in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-21700
HIGH
Linux kernel - Privilege Escalation
CVSS 7.8
CVE-2025-0899
HIGH
PDF-XChange Editor < 10.4.1.389 - Use-After-Free in AcroForm Handling
CVSS 8.8
CVE-2025-21406
HIGH
Windows Telephony Service - Remote Code Execution via Use-After-Free
CVSS 8.8
CVE-2025-21397
HIGH
Microsoft 365 Apps - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21394
HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21392
HIGH
Microsoft 365 Apps and Office - Remote Code Execution
CVSS 7.8
CVE-2025-21387
HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21386
HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21379
HIGH
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.3194 - Remote Code Execution via DHCP Client Service Use-After-Free
CVSS 7.1
CVE-2025-21367
HIGH
Windows 10/11, Server 2019/2022/2025 - Elevation of Privilege via Win32 Kernel Use-After-Free
CVSS 7.8
CVE-2025-21159
HIGH
Adobe Illustrator < 28.7.4 - Use-After-Free
CVSS 7.8
CVE-2025-21693
HIGH
Linux Kernel 5.11-6.12.11 - Use-After-Free in zswap CPU Hotunplug
CVSS 7.8
CVE-2025-0304
HIGH
OpenHarmony <4.1.2 - Use After Free
CVSS 8.8
CVE-2025-0445
MEDIUM
Google Chrome <133.0.6943.53 - Use After Free
CVSS 5.4
CVE-2025-0444
MEDIUM
Google Chrome <133.0.6943.53 - Use After Free
CVSS 6.3
CVE-2025-1012
HIGH
Firefox < 115.20.0, 115.20-115.*, 128.7-128.*, >=135 - Use-After-Free via Concurrent Delazification
CVSS 7.5
CVE-2025-1010
HIGH
Firefox < 115.20.0, < 135.0 and Thunderbird >=128.0.1 <128.7.0, >=131.0 <135.0 - Use-After-Free via Custom Highlight API
CVSS 8.8
CVE-2025-1009
CRITICAL
Firefox < 115.20.0 and < 135.0 - Use-After-Free via Crafted XSLT Data
CVSS 9.8
CVE-2025-24898
MEDIUM
Rust-OpenSSL <0.10.70 - Use After Free
CVE-2025-0015
HIGH
Arm Ltd Valhall GPU Kernel Driver <r52p0 - Use After Free
CVSS 7.8
CVE-2025-21671
HIGH
Linux Kernel 6.1.122-6.1.126, 6.6.68-6.6.73, 6.12.7-6.12.10 - Use-After-Free in zram Table Handling
CVSS 7.8
CVE-2025-0762
HIGH
Google Chrome <132.0.6834.159 - Use After Free
CVSS 8.8
CVE-2025-24085
CRITICAL
KEV
iPadOS < 17.7.6 - Use-After-Free
CVSS 10.0
Details
Vulnerabilities
7,502
Exploit Likelihood
High