CWE-362: CWE-362

469
Total CVEs
6
Critical
257
High
6.4
Avg CVSS
1
In CISA KEV

Yearly Trend

2026
56
2025
214
2024
96
2023
25
2022
23

Top Affected Vendors

1 Linux 173
2 Microsoft 80
3 Google 41
4 Debian 32
5 Huawei 28
6 Apple 28
7 Fedoraproject 13
8 Netapp 11
9 Mozilla 9
10 Xen 8

All CWE-362 CVEs (469)

CVE-2021-30868
7.0

CVE-2021-30868 is a macOS kernel race condition vulnerability that allows malicious applications to execute arbitrary code with kernel privileges. Thi...

Aug 24, 2021
CVE-2021-34462
7.0

This vulnerability allows attackers to elevate privileges on Windows systems by exploiting a race condition in the AppX Deployment Extensions. It affe...

Jul 16, 2021
CVE-2021-0565
7.0

This vulnerability allows local privilege escalation on Android 11 devices through a race condition in the audio subsystem. Attackers can exploit a us...

Jun 22, 2021
CVE-2021-0533
7.0

This CVE describes a memory corruption vulnerability in Android's memory management driver caused by a race condition. It allows local attackers to es...

Jun 21, 2021
CVE-2021-0509
7.0

CVE-2021-0509 is a use-after-free vulnerability in Android's CryptoPlugin due to a race condition. It allows local privilege escalation without user i...

Jun 21, 2021
CVE-2021-0520
7.0

This CVE describes a use-after-free vulnerability in Android's MemoryFileSystem due to a race condition. It allows local privilege escalation without ...

Jun 21, 2021
CVE-2021-0476
7.0

This CVE describes a use-after-free vulnerability in Android's Bluetooth stack that occurs due to a race condition in the FindOrCreatePeer function. I...

Jun 11, 2021
CVE-2020-11262
7.0

This is a use-after-free vulnerability in Qualcomm Snapdragon chipsets where a race condition between command submission and context destruction can l...

Jun 9, 2021
CVE-2021-32399
7.0

A race condition in the Linux kernel's Bluetooth HCI controller removal allows local attackers to cause a use-after-free condition. This can lead to s...

May 10, 2021
CVE-2021-0432
7.0

This CVE describes a use-after-free vulnerability in Android's StatsPullerManager due to a race condition in ClearPullerCacheIfNecessary and ForceClea...

Apr 13, 2021
CVE-2020-27921
7.0

This macOS kernel vulnerability allows a malicious application to exploit a race condition to execute arbitrary code with kernel privileges. It affect...

Apr 2, 2021
CVE-2021-0303
7.0

This CVE describes a use-after-free vulnerability in Android's Car ComputePipe service due to a race condition in dispatchGraphTerminationMessage(). I...

Jan 11, 2021
CVE-2020-17534
7.0

CVE-2020-17534 is a race condition vulnerability in the webkit subproject of Apache NetBeans HTML/Java API that could allow local privilege escalation...

Jan 11, 2021
CVE-2025-68969
6.8

A race condition vulnerability in the thermal management module allows concurrent threads to interfere with temperature control operations. This could...

Jan 14, 2026
CVE-2024-42488
6.8

A race condition in Cilium agent versions before 1.14.14 and 1.15.8 can cause node labels to be ignored, potentially allowing CiliumClusterwideNetwork...

Aug 15, 2024
CVE-2025-55226
6.7

This vulnerability is a race condition in the Graphics Kernel that allows an authenticated local attacker to execute arbitrary code. It affects system...

Sep 9, 2025
CVE-2025-49743
6.7

A race condition vulnerability in Microsoft Graphics Component allows authenticated attackers to escalate privileges on local systems. This affects us...

Aug 12, 2025
CVE-2025-22830
6.7

This CVE describes a race condition vulnerability in AMI APTIOV BIOS that allows a skilled local attacker to cause resource exhaustion. Exploitation c...

Aug 12, 2025
CVE-2025-54629
6.7

A race condition vulnerability in the memory management module's physical page import process could allow attackers to compromise service integrity. T...

Aug 6, 2025
CVE-2024-58048
6.7

This CVE describes a multi-threading race condition vulnerability in Huawei's package management module that could allow an attacker to cause denial o...

Mar 4, 2025
CVE-2025-48880
6.6

FreeScout versions before 1.8.181 contain a race condition vulnerability when administrators delete users. This could allow attackers to cause unexpec...

May 30, 2025
CVE-2025-20039
6.6

A race condition vulnerability in Intel PROSet/Wireless WiFi Software for Windows allows unauthenticated attackers on the same network to potentially ...

May 13, 2025
CVE-2025-21101
6.6

Dell Display Manager versions before 2.3.2.20 contain a race condition vulnerability that allows a local malicious user to delete arbitrary files or f...

Jan 15, 2025
CVE-2025-13231
6.5

This vulnerability allows unauthenticated attackers to perform Server-Side Request Forgery (SSRF) attacks against WordPress sites using the Fancy Prod...

Dec 16, 2025
CVE-2025-55191
6.5

This CVE describes a race condition vulnerability in Argo CD's repository credentials handler that can cause the server to crash when concurrent opera...

Sep 30, 2025
CVE-2025-45731
6.5

A race condition in 2FAuth v5.5.0 allows data inconsistencies and orphaned accounts when a group is deleted while other operations are pending. This a...

Jul 24, 2025
CVE-2025-3608
6.5

A race condition in Firefox's nsHttpTransaction component could allow memory corruption, potentially leading to arbitrary code execution. This affects...

Apr 15, 2025
CVE-2025-1013
6.5

A race condition vulnerability in Mozilla Firefox, Firefox ESR, and Thunderbird could cause private browsing tabs to open in normal browsing windows, ...

Feb 4, 2025
CVE-2025-0439
6.5

This vulnerability in Google Chrome allows attackers to perform UI spoofing by tricking users into specific UI gestures on a malicious webpage. It aff...

Jan 15, 2025
CVE-2024-9936
6.5

This vulnerability in Firefox's selection node cache manipulation allows attackers to cause unexpected behavior leading to exploitable crashes. It aff...

Oct 14, 2024
CVE-2025-61792
6.4

Quadient DS-700 iQ devices may have a race condition that allows attackers to bypass kiosk mode and gain local administrative access through specific ...

Sep 30, 2025
CVE-2025-60723
6.3

A race condition vulnerability in Windows DirectX allows authenticated attackers to cause denial of service over a network. This affects Windows syste...

Nov 11, 2025
CVE-2026-28544
6.2

A race condition vulnerability in the printing module could allow attackers to disrupt printing services, potentially causing denial of service. This ...

Mar 5, 2026
CVE-2025-21278
6.2

This vulnerability in Windows Remote Desktop Gateway allows attackers to cause a denial of service by sending specially crafted requests. It affects o...

Jan 14, 2025
CVE-2026-22548
5.9

This vulnerability in BIG-IP Advanced WAF or ASM security policies allows attackers to cause the bd process to terminate through specific requests und...

Feb 4, 2026
CVE-2026-22851
5.9

This CVE describes a heap use-after-free vulnerability in FreeRDP, a free Remote Desktop Protocol implementation, caused by a race condition between t...

Jan 14, 2026
CVE-2025-52517
5.9

A race condition vulnerability in the issimian device driver for Samsung Exynos processors causes a double free, leading to denial of service. This af...

Jan 5, 2026
CVE-2024-53476
5.9

A race condition vulnerability in SimplCommerce allows attackers to bypass inventory restrictions by simultaneously submitting purchase requests from ...

Dec 27, 2024
CVE-2024-54494
5.9

This CVE describes a race condition vulnerability in Apple operating systems that allows an attacker to create a read-only memory mapping that can be ...

Dec 12, 2024
CVE-2024-36615
5.9

FFmpeg n7.0 has a race condition vulnerability in its VP9 decoder where video encoding parameters can be accessed simultaneously by decoder and output...

Nov 29, 2024
CVE-2024-30046
5.9

This CVE describes a denial of service vulnerability in Visual Studio where a race condition (CWE-362) could allow an attacker to crash the applicatio...

May 14, 2024
CVE-2024-20509
5.8

This vulnerability in Cisco Meraki MX and Z Series VPN gateways allows unauthenticated attackers to hijack active AnyConnect VPN sessions or prevent u...

Oct 2, 2024
CVE-2025-52993
5.6

A race condition vulnerability in Nix, Lix, and Guix package managers allows attackers to change ownership of arbitrary files to the build user's UID/...

Jun 27, 2025
CVE-2024-36894
5.6

A race condition in the Linux kernel's USB gadget FunctionFS subsystem allows concurrent access to freed memory pointers when AIO cancellation occurs ...

May 30, 2024
CVE-2024-32993
5.6

This CVE describes an out-of-bounds access vulnerability in a memory module affecting Huawei/HarmonyOS devices. Successful exploitation could cause sy...

May 14, 2024
CVE-2025-43292
5.5

A race condition vulnerability in macOS allows applications to access sensitive user data they shouldn't have permission to view. This affects macOS s...

Sep 15, 2025
CVE-2025-38290
5.5

A race condition vulnerability in the Linux kernel's ath12k WiFi driver can cause kernel panic during WLAN recovery when virtual interface removal occ...

Jul 10, 2025
CVE-2025-24493
5.5

This CVE describes a race condition vulnerability in OpenHarmony that allows local attackers to cause information leaks. The vulnerability affects Ope...

Jun 8, 2025
CVE-2024-52906
5.5

A local privilege escalation vulnerability in IBM AIX and VIOS TCP/IP kernel extension allows non-privileged local users to cause a denial of service....

Dec 25, 2024
CVE-2024-53123
5.5

A race condition vulnerability in the Linux kernel's MPTCP implementation can cause a division by zero error when handling disconnections, leading to ...

Dec 2, 2024

About CWE-362 (CWE-362)

Our database tracks 469 CVEs classified as CWE-362, with 6 rated critical and 257 rated high severity. The average CVSS score for CWE-362 vulnerabilities is 6.4.

External reference: View CWE-362 on MITRE CWE →

Monitor CWE-362 Vulnerabilities

Get alerted when new CWE-362 CVEs affect your infrastructure.

Start Monitoring Free