Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-416 · Use after freeDefinition on MITRE ↗Clear

93 results·Page 2 / 2

CVE-2019-13720
2022-05-23
Google Chrome WebAudio Use-After-Free Vulnerability
Google

Google Chrome WebAudio contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-06-13
CVE-2014-0322
2022-05-04
Microsoft Internet Explorer Use-After-Free Vulnerability
Microsoft

Use-after-free vulnerability in Microsoft Internet Explorer allows remote attackers to execute code.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-25
CVE-2015-5123
2022-04-13
Adobe Flash Player Use-After-Free Vulnerability
Adobe

Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allows remote attackers to execute code or cause a denial-of-service (DoS).

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-04
CVE-2015-5122
2022-04-13
Adobe Flash Player Use-After-Free Vulnerability
Adobe

Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allows remote attackers to execute code or cause a denial-of-service (DoS).

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-04
CVE-2015-0313
2022-04-13
Adobe Flash Player Use-After-Free Vulnerability
Adobe

Use-after-free vulnerability in Adobe Flash Player allows remote attackers to execute code.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-04
CVE-2021-31166
2022-04-06
Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability
Microsoft

Microsoft HTTP Protocol Stack contains a vulnerability in http.sys that allows for remote code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-04-27
CVE-2021-34486
2022-03-28
Microsoft Windows Event Tracing Privilege Escalation Vulnerability
Microsoft

Microsoft Windows Event Tracing contains an unspecified vulnerability which can allow for privilege escalation.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2013-2551
2022-03-28
Microsoft Internet Explorer Use-After-Free VulnerabilityRansomware
Microsoft

Use-after-free vulnerability in Microsoft Internet Explorer allows remote attackers to execute remote code via a crafted web site that triggers access to a deleted object.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2016-7892
2022-03-25
Adobe Flash Player Use-After-Free Vulnerability
Adobe

Adobe Flash Player has an exploitable use-after-free vulnerability in the TextField class.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2022-26486
2022-03-07
Mozilla Firefox Use-After-Free Vulnerability
Mozilla

Mozilla Firefox contains a use-after-free vulnerability in WebGPU IPC Framework which can be exploited to perform arbitrary code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-03-21
CVE-2022-26485
2022-03-07
Mozilla Firefox Use-After-Free Vulnerability
Mozilla

Mozilla Firefox contains a use-after-free vulnerability in XSLT parameter processing which can be exploited to perform arbitrary code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-03-21
CVE-2017-0261
2022-03-03
Microsoft Office Use-After-Free Vulnerability
Microsoft

Microsoft Office contains a use-after-free vulnerability which can allow for remote code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2016-7855
2022-03-03
Adobe Flash Player Use-After-Free Vulnerability
Adobe

Use-after-free vulnerability in Adobe Flash Player Windows and OS and Linux allows remote attackers to execute arbitrary code.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2022-0609
2022-02-15
Google Chromium Animation Use-After-Free Vulnerability
Google

Google Chromium Animation contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-03-01
CVE-2018-15982
2022-02-15
Adobe Flash Player Use-After-Free VulnerabilityRansomware
Adobe

Adobe Flash Player com.adobe.tvsdk.mediacore.metadata Use After Free Vulnerability

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-08-15
CVE-2022-22620
2022-02-11
Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability
Apple

Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-02-25
CVE-2017-0263
2022-02-10
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft

Microsoft Win32k contains a privilege escalation vulnerability due to the Windows kernel-mode driver failing to properly handle objects in memory.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-08-10
CVE-2014-1776
2022-01-28
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code in the context of the current user.

CWE-416 · Use after free
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2022-07-28
CVE-2020-6572
2022-01-10
Google Chrome Media Use-After-Free Vulnerability
Google

Google Chrome Media contains a use-after-free vulnerability that allows a remote attacker to execute code via a crafted HTML page.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-07-10
CVE-2021-4102
2021-12-15
Google Chromium V8 Use-After-Free Vulnerability
Google

Google Chromium V8 Engine contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-12-29
CVE-2021-40449
2021-11-17
Microsoft Windows Win32k Privilege Escalation VulnerabilityRansomware
Microsoft

Unspecified vulnerability allows for an authenticated user to escalate privileges.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-12-01
CVE-2021-37975
2021-11-03
Google Chromium V8 Use-After-Free Vulnerability
Google

Google Chromium V8 Engine contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-37973
2021-11-03
Google Chromium Portals Use-After-Free Vulnerability
Google

Google Chromium Portals contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability affects web browsers that utilize Chromium, including Google Chrome and Microsoft Edge.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30858
2021-11-03
Apple iOS, iPadOS, macOS Use-After-Free Vulnerability
Apple / iOS, iPadOS, and macOS

Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30762
2021-11-03
Apple iOS WebKit Use-After-Free Vulnerability
Apple

Apple iOS WebKit contains a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30661
2021-11-03
Apple Multiple Products WebKit Storage Use-After-Free Vulnerability
Apple

Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit Storage contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30633
2021-11-03
Google Chromium Indexed DB API Use-After-Free Vulnerability
Google

Google Chromium Indexed DB API contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30554
2021-11-03
Google Chromium WebGL Use-After-Free Vulnerability
Google

Google Chromium WebGL contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-28663
2021-11-03
Arm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability
Arm

Arm Mali Graphics Processing Unit (GPU) kernel driver contains a use-after-free vulnerability that may allow a non-privileged user to make improper operations on GPU memory to gain root privilege, and/or disclose information.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-28550
2021-11-03
Adobe Acrobat and Reader Use-After-Free Vulnerability
Adobe

Adobe Acrobat and Reader contains a use-after-free vulnerability that could allow an unauthenticated attacker to achieve code execution in the context of the current user.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-26411
2021-11-03
Microsoft Internet Explorer Memory Corruption VulnerabilityRansomware
Microsoft

Microsoft Internet Explorer contains an unspecified vulnerability that allows for memory corruption.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-21206
2021-11-03
Google Chromium Blink Use-After-Free Vulnerability
Google

Google Chromium Blink contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-21193
2021-11-03
Google Chromium Blink Use-After-Free Vulnerability
Google

Google Chromium Blink contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-1905
2021-11-03
Qualcomm Multiple Chipsets Use-After-Free Vulnerability
Qualcomm

Multiple Qualcomm Chipsets contain a use after free vulnerability due to improper handling of memory mapping of multiple processes simultaneously.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2020-6819
2021-11-03
Mozilla Firefox And Thunderbird Use-After-Free Vulnerability
Mozilla

Mozilla Firefox and Thunderbird contain a race condition vulnerability when running the nsDocShell destructor under certain conditions. The race condition creates a use-after-free vulnerability, causing unspecified impacts.

CWE-362CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2020-3992
2021-11-03
VMware ESXi OpenSLP Use-After-Free VulnerabilityRansomware
VMware

VMware ESXi OpenSLP contains a use-after-free vulnerability that allows an attacker residing in the management network with access to port 427 to perform remote code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2020-16017
2021-11-03
Google Chrome Use-After-Free Vulnerability
Google

Google Chrome contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2020-0674
2021-11-03
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability due to the way the Scripting Engine handles objects in memory. Successful exploitation could allow remote code execution in the context of the current user.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2019-2215
2021-11-03
Android Kernel Use-After-Free Vulnerability
Android

Android Kernel contains a use-after-free vulnerability in binder.c that allows for privilege escalation from an application to the Linux Kernel. This vulnerability was observed chained with CVE-2020-0041 and CVE-2020-0069 under exploit chain "AbstractEmu."

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2019-1429
2021-11-03
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability which can allow for remote code execution in the context of the current user.

CWE-416 · Use after freeCWE-787 · Out-of-bounds write
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2019-0708
2021-11-03
Microsoft Remote Desktop Services Remote Code Execution VulnerabilityRansomware
Microsoft

Microsoft Remote Desktop Services, formerly known as Terminal Service, contains an unspecified vulnerability that allows an unauthenticated attacker to connect to the target system using RDP and send specially crafted requests. Successful exploitation allows for remote code execution. The vulnerability is also known under the moniker of BlueKeep.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2019-0211
2021-11-03
Apache HTTP Server Privilege Escalation Vulnerability
Apache

Apache HTTP Server, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute code with the privileges of the parent process (usually root) by manipulating the scoreboard.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2018-4878
2021-11-03
Adobe Flash Player Use-After-Free VulnerabilityRansomware
Adobe

Adobe Flash Player contains a use-after-free vulnerability that could allow for code execution.

CWE-416 · Use after free
Refsnvd.nist.gov
Federal remediation due 2022-05-03
Prev2 / 2Next