| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Acrobat Reader is affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Acrobat Reader is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. |
| Use after free in DualDAR prior to SMR Sep-2026 Release 1 allows local privileged attackers to execute arbitrary code with root privilege. |
| Use after free in Windows Error Reporting allows an authorized attacker to elevate privileges locally. |
| Use after free in Audio Video Control Transport Protocol allows an authorized attacker to elevate privileges locally. |
| Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges over a network. |
| Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally. |
| Use after free in Windows Wireless Networking allows an authorized attacker to elevate privileges locally. |
| Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. |
| Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network. |
| Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally. |
| Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally. |
| Use after free in DNS Server allows an unauthorized attacker to execute code over a network. |
| Use after free in Windows DNS allows an unauthorized attacker to deny service over a network. |
| Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. |
| Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| Use after free in Microsoft Office Word allows an authorized attacker to disclose information locally. |
| Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network. |