Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2023-10-11 CVE-2023-5218 Use After Free vulnerability in multiple products
Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-416
8.8
2023-10-11 CVE-2023-5473 Use After Free vulnerability in multiple products
Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
6.3
2023-10-11 CVE-2023-5476 Use After Free vulnerability in multiple products
Use after free in Blink History in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8
2023-10-11 CVE-2023-35660 Use After Free vulnerability in Google Android
In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after free.
local
low complexity
google CWE-416
6.7
2023-10-11 CVE-2023-5535 Use After Free vulnerability in multiple products
Use After Free in GitHub repository vim/vim prior to v9.0.2010.
local
low complexity
vim fedoraproject CWE-416
7.8
2023-10-11 CVE-2023-38216 Use After Free vulnerability in Adobe Bridge
Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-416
5.5
2023-10-11 CVE-2023-44095 Use After Free vulnerability in Huawei Emui and Harmonyos
Use-After-Free (UAF) vulnerability in the surfaceflinger module.Successful exploitation of this vulnerability can cause system crash.
network
low complexity
huawei CWE-416
7.5
2023-10-10 CVE-2023-41675 Use After Free vulnerability in Fortinet Fortios and Fortiproxy
A use after free vulnerability [CWE-416] in FortiOS version 7.2.0 through 7.2.4 and version 7.0.0 through 7.0.10 and FortiProxy version 7.2.0 through 7.2.2 and version 7.0.0 through 7.0.8 may allow an unauthenticated remote attacker to crash the WAD process via multiple crafted packets reaching proxy policies or firewall policies with proxy mode alongside SSL deep packet inspection.
network
low complexity
fortinet CWE-416
5.3
2023-10-08 CVE-2023-40632 Use After Free vulnerability in Google Android 13.0
In jpg driver, there is a possible use after free due to a logic error.
network
low complexity
google CWE-416
7.5
2023-10-06 CVE-2023-45322 Use After Free vulnerability in Xmlsoft Libxml2
libxml2 through 2.11.5 has a use-after-free that can only occur after a certain memory allocation fails.
network
low complexity
xmlsoft CWE-416
6.5