Cyber Posture

CWE · MITRE source

CWE-401Missing Release of Memory after Effective Lifetime

Abstraction: Variant · CVEs in our corpus: 1,652

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

Last updated: 09 May 2026 03:25 UTC

NIST 800-53 r5 controls that address this weakness (0)AI

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2018-0158 KEV4.68.60.14562018-03-28
CVE-2018-172404.47.50.48352022-06-10
CVE-2018-08914.34.30.56552018-03-14
CVE-2016-42323.37.50.29712016-07-13
CVE-2021-34923.28.80.24442021-04-17
CVE-2023-26083 KEV3.03.30.05232023-04-06
CVE-2020-139342.97.50.23382020-07-14
CVE-2016-63042.67.50.18042016-09-26
CVE-2019-122652.15.30.16532019-08-09
CVE-2018-08322.04.70.17062018-02-15
CVE-2022-07422.09.10.02212022-03-18
CVE-2018-09011.94.70.16432018-03-14
CVE-2019-61281.98.80.02332019-01-11
CVE-2021-286511.97.50.06132021-05-27
CVE-2015-85671.87.70.03512017-04-13
CVE-2018-153771.88.60.00582018-10-05
CVE-2019-17081.88.60.00942019-05-03
CVE-2019-173401.88.80.00082019-10-08
CVE-2020-16031.88.60.00642020-01-15
CVE-2020-94311.87.50.04402020-02-27
CVE-2020-31891.88.60.01312020-05-06
CVE-2020-32031.88.60.00762020-06-03
CVE-2020-33731.88.60.01912020-10-21
CVE-2020-35721.88.60.01862020-10-21
CVE-2021-13131.88.60.00602021-02-04