Skip to main content

CWE archive

CWE-416 CVEs

Programmatic archive

7,979 CVEs tagged with CWE-416832 Critical, 5,756 High, 1,274 Medium, 117 Low, 0 Unrated.

CVE-2026-50738

Published Jul 28, 2026

A use-after-free condition exists in pglogical's worker signaling code, where a worker structure can be dereferenced after the underlying slot has been freed or recycled during no…

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-54620

Published Jul 28, 2026

sqlite3 provides Ruby bindings for the SQLite3 embedded database. From 2.1.0 to 2.9.4, the callbacks used for SQLite aggregate functions can be freed while still referenced during…

CVSS 2.0 · Low
evidence mentions
4
Buzz score
21.1

CVE-2026-54619

Published Jul 28, 2026

sqlite3 provides Ruby bindings for the SQLite3 embedded database. In version 2.9.4 and earlier, redefining a SQLite function with a different arity frees the previously registered…

CVSS 2.0 · Low
evidence mentions
4
Buzz score
21.1

CVE-2026-64718

Published Jul 27, 2026

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, wat…

CVSS 5.5 · Medium
evidence mentions
6
Buzz score
24.5

CVE-2026-64703

Published Jul 27, 2026

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cau…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-43810

Published Jul 27, 2026

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, vis…

CVSS 9.8 · Critical
evidence mentions
8
Buzz score
32.0

CVE-2026-43778

Published Jul 27, 2026

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6,…

CVSS 9.8 · Critical
evidence mentions
7
Buzz score
25.8

CVE-2026-51304

Published Jul 27, 2026

sqlite 3.41 has a use-after-free (UAF) vulnerability in the ORDER BY clause parsing routine. The affected code first releases the memory of an ExprList object via sqlite3ExprListD…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-51303

Published Jul 27, 2026

A use-after-free (UAF) vulnerability was discovered in the core parsing component of SQLite 3.41. The flaw occurs because the program frees an ExprList object via sqlite3ExprListD…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-51302

Published Jul 27, 2026

SQLite 3.41 has a use-after-free vulnerability exists in the expression evaluation logic. The sqlite3ReleaseTempReg function improperly releases temporary register resources, and…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-51300

Published Jul 27, 2026

A use-after-free vulnerability exists in the expression parsing and memory management logic of SQLite 3.41. After invoking sqlite3ExprDelete to release an expression object, the p…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-51298

Published Jul 27, 2026

sqlite 3.41 is vulnerable to use after free in the JSON extraction function. After releasing JsonParse object memory via jsonParseFree(), the program still accesses internal membe…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-51297

Published Jul 27, 2026

sqlite 3.41 has a use-after-free vulnerability in the JSON parsing logic. Remote adversaries can craft malicious JSON payload to trigger memory free followed by illegal memory acc…

CVSS 8.8 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-51296

Published Jul 27, 2026

SQLite 3.41 has a use-after-free vulnerability in jsonRemoveFunc of SQLite JSON module. The parsed JSON object is freed at line 3555, while line 3575 still calls jsonLookupStep wi…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-49743

Published Jul 24, 2026

Software installed and run as a non-privileged user may conduct improper GPU system calls to manipulate the lifetimes of synchronisation objects in the kernel, leading to read/wri…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-16806

Published Jul 23, 2026

Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security…

CVSS 8.8 · High
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 7,979 CVEsPage 1 of 320