ZCyberNews
中文

#use-after-free

6 articles

Six articles published between 28 April and 16 May 2026 examine use-after-free vulnerabilities, with a severity mix of two high, three critical, and one low. The top CVEs include CVE-2026-45185 (CVSS 9.8), CVE-2026-5943 (CVSS 7.8), CVE-2026-8550 (CVSS 6.5), CVE-2026-8556 (CVSS 6.5), and CVE-2026-5942 (CVSS 3.3). Affected sectors span technology, all, email services, general, and software, with a global regional impact.

Chrome 148 Patches ANGLE Data Leak, Google Lens UAFHIGH
Vulnerabilities

Chrome 148 Patches ANGLE Data Leak, Google Lens UAF

Google fixed CVE-2026-8556 (ANGLE cross-origin leak) and CVE-2026-8550 (Google Lens use-after-free) in Chrome 148.0.7778.168 for Windows. Both flaws require a compromised renderer.

CVE-2026-8556CVE-2026-8550
4 min read
Chrome 148 Patches 79 Flaws, 14 Critical Including Heap OverflowCRITICAL
Vulnerabilities

Chrome 148 Patches 79 Flaws, 14 Critical Including Heap Overflow

Google's Chrome 148 update fixes 79 vulnerabilities, 14 critical — including heap buffer overflow CVE-2026-8509 ($43K bounty) and integer overflow CVE-2026-8510 in Skia ($25K...

CVE-2026-8509CVE-2026-8510
4 min read
Exim BDAT Use-After-Free Flaw CVE-2026-45185 Enables Remote CodeCRITICAL
Vulnerabilities

Exim BDAT Use-After-Free Flaw CVE-2026-45185 Enables Remote Code

CVE-2026-45185 (Dead.Letter) is a use-after-free in Exim's BDAT handling affecting GnuTLS builds — CVSS 9.8, remote code execution risk. Patches released.

CVE-2026-45185
3 min read
Chrome 148 Patches 127 Flaws, Three Critical Use-After-Free BugsCRITICAL
Vulnerabilities

Chrome 148 Patches 127 Flaws, Three Critical Use-After-Free Bugs

Google's Chrome 148 fixes 127 vulnerabilities including three critical-severity bugs (CVE-2026-7896, CVE-2026-7897, CVE-2026-7898) — integer overflow in Blink and use-after-free...

CVE-2026-7896CVE-2026-7897CVE-2026-7898
3 min read
Foxit PDF Reader CVE-2026-5943 Use-After-Free RCE Exploited viaHIGH
Vulnerabilities

Foxit PDF Reader CVE-2026-5943 Use-After-Free RCE Exploited via

CVE-2026-5943: A use-after-free in Foxit PDF Reader's AcroForm annotation handling allows unauthenticated RCE (CVSS 7.8). Requires user to open a malicious PDF.

CVE-2026-5943
3 min read
Foxit PDF Reader Use-After-Free Leaks Memory via AcroForm SignaturesLOW
Vulnerabilities

Foxit PDF Reader Use-After-Free Leaks Memory via AcroForm Signatures

CVE-2026-5942: A use-after-free in Foxit PDF Reader's AcroForm signature handling lets attackers read process memory. CVSS 3.3. User must open a malicious file.

CVE-2026-5942
2 min read

Stay Updated

Get the latest cybersecurity news delivered to your inbox.