CWE-362: CWE-362

465
Total CVEs
6
Critical
253
High
6.4
Avg CVSS
1
In CISA KEV

Yearly Trend

2026
56
2025
214
2024
96
2023
25
2022
23

Top Affected Vendors

1 Linux 173
2 Microsoft 80
3 Google 40
4 Debian 32
5 Huawei 28
6 Apple 28
7 Fedoraproject 13
8 Netapp 11
9 Mozilla 9
10 Xen 8

All CWE-362 CVEs (465)

CVE-2020-36436
8.1

This vulnerability in the unicycle Rust crate allows data races and memory corruption when PinSlab<T> and Unordered<T, S> types are sent or shared bet...

Aug 8, 2021
CVE-2021-22427
8.1

A heap-based buffer overflow vulnerability in Huawei smartphones allows attackers to bypass authentication mechanisms. This affects Huawei smartphone ...

Aug 2, 2021
CVE-2021-22384
8.1

This CVE describes an information disclosure vulnerability in Huawei smartphones that could allow attackers to bypass authentication mechanisms. The v...

Aug 2, 2021
CVE-2021-0514
8.1

This CVE describes a use-after-free vulnerability in Android's V8 JavaScript engine caused by a race condition. It allows remote code execution withou...

Jul 14, 2021
CVE-2025-68958
8.0

A race condition vulnerability in the card framework module allows attackers to disrupt system availability through multi-threaded exploitation. This ...

Jan 14, 2026
CVE-2025-68955
8.0

A race condition vulnerability in Huawei's card framework module allows attackers to disrupt system availability through multi-threaded exploitation. ...

Jan 14, 2026
CVE-2025-68956
8.0

A race condition vulnerability in the card framework module allows attackers to cause denial of service by exploiting multi-threading issues. This aff...

Jan 14, 2026
CVE-2024-51505
8.0

A race condition vulnerability in Atos Eviden IDRA allows Config Admin users to escalate privileges beyond their intended permissions. This affects ID...

Feb 18, 2025
CVE-2026-20924
7.8

This vulnerability is a use-after-free flaw in Windows Management Services that allows an authenticated attacker to execute arbitrary code with elevat...

Jan 13, 2026
CVE-2026-20873
7.8

A race condition vulnerability in Windows Management Services allows authenticated attackers to execute code concurrently with improper synchronizatio...

Jan 13, 2026
CVE-2026-20874
7.8

This CVE describes a race condition vulnerability in Windows Management Services that allows an authenticated attacker to escalate privileges on a loc...

Jan 13, 2026
CVE-2026-20877
7.8

This CVE describes a use-after-free vulnerability in Windows Management Services that allows an authenticated attacker to execute arbitrary code with ...

Jan 13, 2026
CVE-2026-20918
7.8

A race condition vulnerability in Windows Management Services allows authenticated attackers to escalate privileges on local systems. This affects Win...

Jan 13, 2026
CVE-2026-20867
7.8

This CVE describes a race condition vulnerability in Windows Management Services that allows an authenticated attacker to escalate privileges on a loc...

Jan 13, 2026
CVE-2026-20861
7.8

This CVE describes a race condition vulnerability in Windows Management Services that allows an authenticated attacker to escalate privileges on a loc...

Jan 13, 2026
CVE-2026-20866
7.8

A race condition vulnerability in Windows Management Services allows authenticated attackers to execute code concurrently with improper synchronizatio...

Jan 13, 2026
CVE-2026-20858
7.8

This vulnerability is a use-after-free flaw in Windows Management Services that allows an authenticated attacker to execute arbitrary code with elevat...

Jan 13, 2026
CVE-2026-20826
7.8

This CVE describes a race condition vulnerability in the Tablet Windows User Interface (TWINUI) subsystem that allows an authenticated attacker to esc...

Jan 13, 2026
CVE-2025-43510
7.8

This CVE describes a memory corruption vulnerability in Apple operating systems that could allow a malicious application to manipulate shared memory b...

Dec 12, 2025
CVE-2025-64661
7.8

A race condition vulnerability in Windows Shell allows authenticated attackers to execute code with elevated privileges by exploiting improper synchro...

Dec 9, 2025
CVE-2025-43364
7.8

A race condition vulnerability in macOS allows malicious applications to escape their security sandbox. This affects macOS Sonoma and Sequoia users ru...

Nov 4, 2025
CVE-2025-54913
7.8

A race condition vulnerability in Windows UI XAML Maps MapControlSettings allows local attackers to escalate privileges. This affects Windows systems ...

Sep 9, 2025
CVE-2025-53132
7.8

This CVE describes a race condition vulnerability in the Windows Win32K graphics subsystem that allows an authenticated attacker to escalate privilege...

Aug 12, 2025
CVE-2025-49665
7.8

A race condition vulnerability in Workspace Broker allows authenticated attackers to escalate privileges on local systems. This affects systems runnin...

Jul 8, 2025
CVE-2025-48000
7.8

This vulnerability is a use-after-free flaw in Windows Connected Devices Platform Service that allows an authenticated attacker to execute arbitrary c...

Jul 8, 2025
CVE-2025-31188
7.8

A race condition vulnerability in macOS allows applications to bypass Privacy preferences, potentially accessing protected data without user consent. ...

Mar 31, 2025
CVE-2024-46971
7.8

This vulnerability allows non-privileged users to exploit GPU driver flaws to read and write freed physical memory from the GPU. This affects systems ...

Dec 13, 2024
CVE-2024-38191
7.8

This CVE describes an elevation of privilege vulnerability in the Windows Kernel Streaming Service Driver. It allows authenticated attackers to execut...

Aug 13, 2024
CVE-2022-3328
7.8

CVE-2022-3328 is a race condition vulnerability in snap-confine's must_mkdir_and_open_with_perms() function that could allow local privilege escalatio...

Jan 8, 2024
CVE-2022-29113
7.8

This vulnerability allows an authenticated attacker to execute code with SYSTEM privileges on Windows systems. It affects Windows Digital Media Receiv...

May 10, 2022
CVE-2021-0652
7.8

This vulnerability in Android's VectorDrawable component allows memory corruption through thread-unsafe object sharing, potentially enabling local pri...

Oct 22, 2021
CVE-2021-0483
7.8

This CVE describes a use-after-free vulnerability in AAudioService on Android devices due to a race condition. It allows local privilege escalation fr...

Oct 22, 2021
CVE-2021-28701
7.8

CVE-2021-28701 is a race condition vulnerability in Xen's grant table v2 status page handling that allows guest VMs to retain access to freed memory p...

Sep 8, 2021
CVE-2021-28697
7.8

This Xen hypervisor vulnerability allows guest virtual machines to retain access to freed memory pages after switching from grant table v2 to v1. A ra...

Aug 27, 2021
CVE-2026-28789
7.5

CVE-2026-28789 is an unauthenticated denial-of-service vulnerability in OliveTin's OAuth2 login flow. Attackers can crash the service by sending concu...

Mar 5, 2026
CVE-2026-2319
7.5

A race condition vulnerability in Chrome DevTools allows attackers to potentially corrupt memory objects when users perform specific UI gestures and h...

Feb 11, 2026
CVE-2025-15349
7.5

A race condition vulnerability in Anritsu ShockLine's SCPI component allows network-adjacent attackers to execute arbitrary code without authenticatio...

Jan 23, 2026
CVE-2026-20934
7.5

A race condition vulnerability in Windows SMB Server allows authenticated attackers to execute code with elevated privileges over the network. This af...

Jan 13, 2026
CVE-2026-20926
7.5

A race condition vulnerability in Windows SMB Server allows authenticated attackers to escalate privileges over the network by exploiting improper syn...

Jan 13, 2026
CVE-2026-20919
7.5

A race condition vulnerability in Windows SMB Server allows authenticated attackers to elevate privileges over the network. This affects Windows syste...

Jan 13, 2026
CVE-2026-20921
7.5

A race condition vulnerability in Windows SMB Server allows authenticated attackers to elevate privileges over the network. This affects Windows syste...

Jan 13, 2026
CVE-2026-20848
7.5

A race condition vulnerability in Windows SMB Server allows authenticated attackers to escalate privileges over the network. This affects Windows syst...

Jan 13, 2026
CVE-2025-64658
7.5

A race condition vulnerability in Windows Shell allows authenticated attackers to execute code with elevated privileges by exploiting improper synchro...

Dec 9, 2025
CVE-2025-13721
7.5

A race condition vulnerability in Chrome's V8 JavaScript engine allows remote attackers to potentially cause heap corruption by tricking users into vi...

Dec 2, 2025
CVE-2024-7017
7.5

This vulnerability in Chrome DevTools allows a remote attacker to escape the browser sandbox via a crafted HTML page. It affects all users running Chr...

Nov 14, 2025
CVE-2025-13012
7.5

A race condition vulnerability in the Graphics component of Mozilla products could allow an attacker to execute arbitrary code or cause a denial of se...

Nov 11, 2025
CVE-2025-58145
7.5

CVE-2025-58145 is a race condition vulnerability in Xen hypervisor's page table management where the P2M lock isn't properly held during page referenc...

Sep 11, 2025
CVE-2025-50169
7.5

A race condition vulnerability in Windows SMB allows unauthorized attackers to execute arbitrary code remotely over a network. This affects Windows sy...

Aug 12, 2025
CVE-2025-52434
7.5

A race condition vulnerability in Apache Tomcat's APR/Native connector when handling HTTP/2 connection closures can lead to crashes or denial of servi...

Jul 10, 2025
CVE-2025-46613
7.5

OpenPLC 3 has a memory corruption vulnerability in server.cpp where threads may access handleConnections arguments after the parent stack frame become...

Apr 25, 2025

About CWE-362 (CWE-362)

Our database tracks 465 CVEs classified as CWE-362, with 6 rated critical and 253 rated high severity. The average CVSS score for CWE-362 vulnerabilities is 6.4.

External reference: View CWE-362 on MITRE CWE →

Monitor CWE-362 Vulnerabilities

Get alerted when new CWE-362 CVEs affect your infrastructure.

Start Monitoring Free