CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,529 vulnerabilities with CWE-362
CVE-2026-44102 MEDIUM
OCPP Firmware download is not properly locked
CVSS 5.3
CVE-2026-16727 HIGH
Asus Armoury Crate < V6.4.12 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-17999 MEDIUM
Google Chrome < 151.0.7922.72 - Domain Spoofing via Race Condition in Picture-in-Picture on Android
CVSS 6.5
CVE-2026-17993 HIGH
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 7.0
CVE-2026-17979 HIGH
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 7.5
CVE-2026-17855 ANALYSIS PENDING
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-17841 ANALYSIS PENDING
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-17724 MEDIUM
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 4.2
CVE-2026-17712 HIGH
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 8.8
CVE-2026-17711 CRITICAL
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 9.6
CVE-2026-17709 CRITICAL
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 9.6
CVE-2026-17654 HIGH
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 7.8
CVE-2026-51261 CRITICAL
ESP32-audioI2S 3.4.5 - Remote Code Execution via Race Condition in AudioBuffer::freeSpace
CVSS 9.8
CVE-2026-62436 MEDIUM
grant-table: version change racing with other operations
CVSS 6.5
CVE-2026-62435 MEDIUM
grant-table: version change racing with other operations
CVSS 6.5
CVE-2026-62432 HIGH
evtchn: Race between FIFO expand and reset
CVSS 7.3
CVE-2026-62430 HIGH
x86: Out-of-bounds read in vRTC emulation
CVSS 7.5
CVE-2026-62429 MEDIUM
vNUMA domain cleanup may race other operations
CVSS 6.5
CVE-2026-64720 CRITICAL
Apple Ios And iPadOS - Denial of Service
CVSS 9.8
CVE-2026-43811 MEDIUM
Apple Ios And iPadOS < 26.6 - Denial of Service
CVSS 4.7
CVE-2026-43805 CRITICAL
Apple Ios And iPadOS - Denial of Service
CVSS 9.8
CVE-2026-43781 MEDIUM
macOS < 14.8.8, < 15.7.8, < 26.6 - Unprotected User Data Exposure via Race Condition
CVSS 4.7
CVE-2026-43770 MEDIUM
macOS < 14.8.8, < 15.7.8, and < 26.6 - Unprotected User Data Exposure via Race Condition
CVSS 4.7
CVE-2026-43755 HIGH
Apple macOS - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 7.0
CVE-2026-43728 HIGH
macOS < 26.6 - Keychain State Modification via Improper State Management
CVSS 7.5
Details
Vulnerabilities 2,529
Exploit Likelihood Medium