LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

CVE-2010-0806: Microsoft Internet Explorer Use-After-Free Vulnerability

RBRecent Breaches Vulnerability Intelligence·May 20, 2026
High⚠ Actively exploited (CISA KEV)
High
Severity
Active
CISA KEV
No
Ransomware use
Jun 3, 2026
Patch deadline
⚠ Exploited in the wild. CISA added CVE-2010-0806 to its Known Exploited Vulnerabilities catalog on May 20, 2026, with a federal patch deadline of Jun 3, 2026 — meaning attackers are actively using it. If you run the affected software, patch it immediately.

Microsoft Internet Explorer contains an use-after-free vulnerability that could allow remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion…

Microsoft Internet Explorer contains a use-after-free vulnerability that could allow remote attackers to execute arbitrary code. The flaw involves access to an invalid pointer after an object is deleted. The affected product may be end-of-life or end-of-service, and users are advised to discontinue its use.

How it works

This is a use-after-free weakness (CWE-399). An attacker supplies specially crafted content that causes the browser to delete an object while a reference to it remains. Subsequent access to the freed memory can corrupt program state and allow arbitrary code to run in the context of the browser process.

Attackers deliver the content through normal web channels. No specific exploit mechanics are provided in the available facts; confirm details against the vendor advisory.

Am I affected? How to find it in your systems

Microsoft Internet Explorer runs on Windows client and server systems as the default or optional browser. Inventory installations through standard endpoint management tools or configuration management databases. Identify any remaining instances of the product, especially older deployments that may no longer receive updates.

How to remediate

Apply mitigations per the vendor instructions. Because the product may be end-of-life or end-of-service, the recommended action is to discontinue its use entirely and migrate to a supported browser.

If you can't patch immediately

Until migration is complete, reduce exposure through compensating controls. Segment networks so that systems still running the browser cannot reach untrusted external sites. Disable the browser for general web access and restrict it to isolated internal applications only when absolutely necessary. Monitor endpoint and network telemetry for signs of anomalous process behavior or unexpected memory operations.

If your data may have been exposed

Actively exploited vulnerabilities in this class have led to breaches. Run a free exposure scan of your email addresses to check known breach data.

AICompiled with AI assistance from public sources and published under our editorial standards.

Details

AffectedMicrosoft · Internet Explorer
WeaknessCWE-399
Added to CISA KEVMay 20, 2026
Federal patch deadlineJun 3, 2026
Known ransomware useNot documented
Check if your data is exposed →

Official records: NVD · CISA KEV

← All actively-exploited vulnerabilities