Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-590 (释放并不在堆上的内存) — Vulnerability Class 15

15 vulnerabilities classified as CWE-590 (释放并不在堆上的内存). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-20810 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2026-01-13
CVE-2025-54899 Microsoft Excel Remote Code Execution Vulnerability — Microsoft 365 Apps for Enterprise 7.8 High2025-09-09
CVE-2025-42996 Multiple vulnerabilities in SAP MDM Server — SAP MDM Server 5.6 Medium2025-06-10
CVE-2025-42995 Multiple vulnerabilities in SAP MDM Server — SAP MDM Server 7.5 High2025-06-10
CVE-2025-42994 Multiple vulnerabilities in SAP MDM Server — SAP MDM Server 7.5 High2025-06-10
CVE-2025-5899 GNU PSPP pspp-convert.c parse_variables_option free of memory not on the heap — PSPP 5.3 Medium2025-06-09
CVE-2025-32911 Libsoup: double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" ghashtable value 9.0 Critical2025-04-15
CVE-2023-22291 Ichitaro 2022 安全漏洞 — Ichitaro 7.0 High2023-04-05
CVE-2023-25565 GSS-NTLMSSP vulnerable to incorrect free when decoding target information — gss-ntlmssp 7.5 High2023-02-14
CVE-2022-31627 Heap buffer overflow in finfo_buffer — PHP 7.7 High2022-07-28
CVE-2022-31625 Freeing unallocated memory in php_pgsql_free_params() — PHP 8.1 High2022-06-16
CVE-2021-3939 Free of static data in accountsservice — accountsservice 7.8 High2021-11-17
CVE-2021-42377 Busybox 安全漏洞 — busybox 8.8 -2021-11-15
CVE-2021-39218 Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime — wasmtime 6.3 Medium2021-09-17
CVE-2020-6016 ValveSoftware GameNetworkingSockets 缓冲区错误漏洞 — Game Networking Sockets 9.8 -2020-11-18

Vulnerabilities classified as CWE-590 (释放并不在堆上的内存) represent 15 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.