CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,502 vulnerabilities with CWE-416
CVE-2025-0997 HIGH
Google Chrome < 133.0.6943.98 - Use-After-Free in Navigation via Crafted Chrome Extension
CVSS 8.1
CVE-2025-0995 HIGH
Google Chrome < 133.0.6943.98 - Use-After-Free in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-21700 HIGH
Linux kernel - Privilege Escalation
CVSS 7.8
CVE-2025-0899 HIGH
PDF-XChange Editor < 10.4.1.389 - Use-After-Free in AcroForm Handling
CVSS 8.8
CVE-2025-21406 HIGH
Windows Telephony Service - Remote Code Execution via Use-After-Free
CVSS 8.8
CVE-2025-21397 HIGH
Microsoft 365 Apps - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21394 HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21392 HIGH
Microsoft 365 Apps and Office - Remote Code Execution
CVSS 7.8
CVE-2025-21387 HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21386 HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2025-21379 HIGH
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.3194 - Remote Code Execution via DHCP Client Service Use-After-Free
CVSS 7.1
CVE-2025-21367 HIGH
Windows 10/11, Server 2019/2022/2025 - Elevation of Privilege via Win32 Kernel Use-After-Free
CVSS 7.8
CVE-2025-21159 HIGH
Adobe Illustrator < 28.7.4 - Use-After-Free
CVSS 7.8
CVE-2025-21693 HIGH
Linux Kernel 5.11-6.12.11 - Use-After-Free in zswap CPU Hotunplug
CVSS 7.8
CVE-2025-0304 HIGH
OpenHarmony <4.1.2 - Use After Free
CVSS 8.8
CVE-2025-0445 MEDIUM
Google Chrome <133.0.6943.53 - Use After Free
CVSS 5.4
CVE-2025-0444 MEDIUM
Google Chrome <133.0.6943.53 - Use After Free
CVSS 6.3
CVE-2025-1012 HIGH
Firefox < 115.20.0, 115.20-115.*, 128.7-128.*, >=135 - Use-After-Free via Concurrent Delazification
CVSS 7.5
CVE-2025-1010 HIGH
Firefox < 115.20.0, < 135.0 and Thunderbird >=128.0.1 <128.7.0, >=131.0 <135.0 - Use-After-Free via Custom Highlight API
CVSS 8.8
CVE-2025-1009 CRITICAL
Firefox < 115.20.0 and < 135.0 - Use-After-Free via Crafted XSLT Data
CVSS 9.8
CVE-2025-24898 MEDIUM
Rust-OpenSSL <0.10.70 - Use After Free
CVE-2025-0015 HIGH
Arm Ltd Valhall GPU Kernel Driver <r52p0 - Use After Free
CVSS 7.8
CVE-2025-21671 HIGH
Linux Kernel 6.1.122-6.1.126, 6.6.68-6.6.73, 6.12.7-6.12.10 - Use-After-Free in zram Table Handling
CVSS 7.8
CVE-2025-0762 HIGH
Google Chrome <132.0.6834.159 - Use After Free
CVSS 8.8
CVE-2025-24085 CRITICAL KEV
iPadOS < 17.7.6 - Use-After-Free
CVSS 10.0
Details
Vulnerabilities 7,502
Exploit Likelihood High