Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2022-02-14 CVE-2022-25139 Use After Free vulnerability in F5 NJS
njs through 0.7.0, used in NGINX, was discovered to contain a heap use-after-free in njs_await_fulfilled.
network
low complexity
f5 CWE-416
7.5
2022-02-12 CVE-2022-0289 Use After Free vulnerability in Google Chrome
Use after free in Safe browsing in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0290 Use After Free vulnerability in Google Chrome
Use after free in Site isolation in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0293 Use After Free vulnerability in Google Chrome
Use after free in Web packaging in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0295 Use After Free vulnerability in Google Chrome
Use after free in Omnibox in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interactions to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0296 Use After Free vulnerability in Google Chrome
Use after free in Printing in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interactions to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0297 Use After Free vulnerability in Google Chrome
Use after free in Vulkan in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0298 Use After Free vulnerability in Google Chrome
Use after free in Scheduling in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0300 Use After Free vulnerability in Google Chrome
Use after free in Text Input Method Editor in Google Chrome on Android prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2022-02-12 CVE-2022-0301 Use After Free vulnerability in Google Chrome
Heap buffer overflow in DevTools in Google Chrome prior to 97.0.4692.99 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
local
low complexity
google CWE-416
7.8