CWE-362: CWE-362
Yearly Trend
Top Affected Vendors
All CWE-362 CVEs (466)
A race condition vulnerability in Intel System Security Report and System Resources Defense firmware allows privileged local users to potentially esca...
Feb 12, 2025This vulnerability in IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data allows concurrent resource access without proper input validatio...
Nov 26, 2024A race condition vulnerability in UEFI firmware for certain Intel processors allows a privileged local attacker to potentially escalate privileges. Th...
Sep 16, 2024This vulnerability allows remote attackers to execute arbitrary code on Windows systems running the Remote Desktop Licensing Service. Attackers can ex...
Sep 10, 2024A race condition vulnerability in alf.io allows attackers to bypass promo code usage limits by exploiting timing gaps between validation and enforceme...
Sep 6, 2024A race condition vulnerability in Chrome DevTools allowed malicious extensions to inject scripts or HTML into privileged pages. This affects users run...
Jul 16, 2024This vulnerability in MediaTek's MP3 decoder allows an attacker to execute arbitrary code with elevated privileges through a race condition that cause...
Feb 5, 2024A race condition vulnerability in the Linux kernel's ICMPv6 router advertisement handling allows unauthenticated attackers on adjacent networks to tri...
Jan 28, 2024This vulnerability allows attackers to execute unauthorized JavaScript on websites by exploiting a race condition with javascript: URIs in the URL bar...
Jan 22, 2024This vulnerability allows an authenticated attacker on a guest virtual machine to execute arbitrary code on the Hyper-V host. It affects Windows syste...
Jan 9, 2024CVE-2023-36884 is a remote code execution vulnerability in Windows Search that allows attackers to execute arbitrary code on affected systems. It affe...
Jul 11, 2023This vulnerability allows remote attackers to execute arbitrary code on Windows systems by exploiting a flaw in the Point-to-Point Tunneling Protocol ...
Apr 11, 2023This vulnerability allows a standard user to achieve SYSTEM-level code execution through a race condition and OpLock manipulation in Acuant AcuFill SD...
Apr 4, 2023A race condition vulnerability in Intel Data Streaming Accelerator (DSA) software allows authenticated local users to potentially escalate privileges....
Feb 16, 2023This CVE describes a race condition vulnerability in Apple operating systems that allows an application to execute arbitrary code with kernel privileg...
May 26, 2022This CVE describes a privilege escalation vulnerability in GNU Hurd where during execution of setuid binaries, there's a timing window where the proce...
Nov 7, 2021This vulnerability is a race condition in Chrome's V8 JavaScript engine that could allow a remote attacker to trigger heap corruption by tricking user...
Nov 2, 2021A race condition vulnerability in macOS Catalina's NFS client allows attackers to execute arbitrary code with system privileges by mounting a maliciou...
Oct 19, 2021This vulnerability in cPanel's fix-cpanel-perl script allows local attackers to create arbitrary temporary files due to improper handling of file crea...
Aug 11, 2021A race condition in Firefox's Web Render components during destruction could lead to undefined behavior, potentially allowing arbitrary code execution...
Jun 24, 2021This vulnerability allows a superuser inside a FreeBSD jail with the non-default allow.mount permission to exploit a race condition between directory ...
Apr 7, 2021A race condition in FreeBSD's jail_remove(2) system call may fail to kill some processes when removing a jail, potentially allowing processes to escap...
Mar 26, 2021This vulnerability is a race condition in Windows WalletService that allows local attackers to gain elevated privileges by exploiting improper synchro...
Jan 13, 2026This vulnerability involves a use-after-free flaw in the Windows Clipboard Server that allows an unauthorized local attacker to execute arbitrary code...
Jan 13, 2026This CVE describes a use-after-free vulnerability in the bigo_worker_thread function of Google's Android video processing code. It allows local attack...
Dec 11, 2025A race condition vulnerability in Windows Resilient File System (ReFS) allows local attackers to execute code with elevated privileges by exploiting i...
Oct 14, 2025CVE-2025-55335 is a use-after-free vulnerability in Windows NTFS that allows local attackers to execute arbitrary code with elevated privileges. This ...
Oct 14, 2025A race condition in Python's ssl module allows concurrent calls to cert_store_stats() or get_ca_certs() while certificates are being loaded to cause m...
Jun 17, 2024This CVE describes a race condition vulnerability in Huawei smartphones that could allow attackers to disrupt device availability. The vulnerability a...
Dec 8, 2021A race condition in Juniper Junos OS Layer 2 Address Learning Daemon (L2ALD) allows attackers to bypass storm-control protections during specific admi...
Apr 22, 2021This CVE describes a denial-of-service vulnerability in Huawei's video-related system service module. Attackers can exploit this vulnerability to cras...
Nov 28, 2025This CVE describes a race condition vulnerability in Android's AppOpsControllerImpl.java that allows malicious apps to record audio without displaying...
Sep 4, 2025A race condition vulnerability in Intel Network Adapter Administrative Tools allows authenticated local users to potentially escalate privileges. This...
May 13, 2025This vulnerability allows attackers to bypass ZITADEL's lockout policy by initiating parallel password checks, enabling more password attempts than co...
Nov 8, 2023A race condition vulnerability in Intel System Security Report and System Resources Defense firmware allows privileged users to potentially escalate p...
Feb 12, 2025The CVE-2026-25536 vulnerability in the MCP TypeScript SDK allows cross-client response data leakage when a single server/transport instance is reused...
Feb 4, 2026A race condition vulnerability in the network module could allow attackers to access sensitive information during concurrent operations. This affects ...
Dec 8, 2025A race condition vulnerability in Agno multi-agent framework versions 2.0.0 through 2.2.1 allows session state data to be incorrectly assigned between...
Oct 31, 2025A race condition in SSSD (System Security Services Daemon) causes inconsistent application of Group Policy Object (GPO) policies for authenticated use...
Apr 18, 2024This vulnerability in Hyperledger Fabric allows attackers to manipulate transaction blocks through 'cross-linking' techniques, causing different peers...
Nov 14, 2023A race condition vulnerability in Apple operating systems allows malicious applications to potentially gain root privileges. This affects users runnin...
Feb 11, 2026A race condition vulnerability in Windows Subsystem for Linux allows authenticated local attackers to escalate privileges by exploiting improper synch...
Feb 10, 2026A race condition vulnerability in the Capability Access Management Service (camsvc) allows authorized attackers to escalate privileges on local system...
Jan 13, 2026A race condition vulnerability in Windows Local Session Manager allows authenticated attackers to escalate privileges on affected systems. This affect...
Jan 13, 2026This CVE describes a race condition vulnerability in the Graphics Kernel that allows local attackers with existing system access to elevate privileges...
Jan 13, 2026A race condition vulnerability in the Capability Access Management Service (camsvc) allows authorized attackers to gain elevated privileges on affecte...
Jan 13, 2026This vulnerability is a race condition in the Graphics Kernel that allows an authorized local attacker to execute code concurrently with improper sync...
Jan 13, 2026A race condition vulnerability in the Capability Access Management Service (camsvc) allows authorized attackers to execute concurrent operations on sh...
Jan 13, 2026A race condition vulnerability in the Printer Association Object allows authorized attackers to escalate privileges locally. This affects systems wher...
Jan 13, 2026This CVE describes a memory corruption vulnerability in the seninf component due to a race condition. It allows local privilege escalation from System...
Jan 6, 2026About CWE-362 (CWE-362)
Our database tracks 466 CVEs classified as CWE-362, with 6 rated critical and 254 rated high severity. The average CVSS score for CWE-362 vulnerabilities is 6.4.
External reference: View CWE-362 on MITRE CWE →
Monitor CWE-362 Vulnerabilities
Get alerted when new CWE-362 CVEs affect your infrastructure.
Start Monitoring Free