CWE-672

Operation on a Resource after Expiration or Release

Parent: CWE-666 - Operation on Resource in Wrong Phase of Lifetime

The product uses, accesses, or otherwise operates on a resource after that resource has been expired, released, or revoked.

66 vulnerabilities with CWE-672
CVE-2026-1237
juju - Privilege Escalation
CVE-2025-69415 HIGH
Plex Media Server <1.42.2.10156 - Info Disclosure
CVSS 7.1
CVE-2025-58149 HIGH
libxl - Info Disclosure
CVSS 7.5
CVE-2025-55669 HIGH
BIG-IP - DoS
CVSS 7.5
CVE-2025-10060 MEDIUM
MongoDB Server <6.0.25-8.0.12 - Info Disclosure
CVSS 6.5
CVE-2025-39698 MEDIUM
Linux Kernel < 6.12.44 - Use After Free
CVSS 5.5
CVE-2025-53901 LOW
Wasmtime <24.0.4, 33.0.2, 34.0.2 - Memory Corruption
CVSS 3.5
CVE-2025-38290 MEDIUM
Linux Kernel < 6.6.94 - Race Condition
CVSS 5.5
CVE-2025-6031 HIGH
Amazon Cloud Cam - SSRF
CVSS 7.5
CVE-2025-31253 HIGH
Apple Ipados < 18.5 - Denial of Service
CVSS 7.1
CVE-2025-2517
OpenText ArcSight - Info Disclosure
CVE-2025-30351 LOW
Directus <11.5.0 - Privilege Escalation
CVSS 3.5
CVE-2025-21117 MEDIUM
Dell Avamar >=19.4 - Privilege Escalation
CVSS 6.6
CVE-2024-57929 HIGH
Linux Kernel - Buffer Overflow
CVSS 7.1
CVE-2024-47571 HIGH
Fortinet FortiManager <7.4.0 - Privilege Escalation
CVSS 8.1
CVE-2025-22149
JWK Set <0.6.0 - Info Disclosure
CVE-2024-56674 MEDIUM
Linux Kernel - Unknown
CVSS 5.5
CVE-2024-49955 MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2024-49953 MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2024-39792 HIGH
NGINX Plus - Memory Corruption
CVSS 7.5
CVE-2024-31895 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
CVSS 4.3
CVE-2024-31894 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
CVSS 4.3
CVE-2024-31893 MEDIUM
IBM App Connect Enterprise <12.0.12.1 - Info Disclosure
CVSS 4.3
CVE-2021-47294 MEDIUM
Linux kernel - Info Disclosure
CVSS 5.5
CVE-2024-4693 MEDIUM
QEMU Virtio PCI Bindings - Use After Free
CVSS 5.5
Details
Vulnerabilities 66