CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,383 vulnerabilities with CWE-362
CVE-2025-66321 MEDIUM
Huawei HarmonyOS Camera Framework - Denial of Service via Race Condition
CVSS 5.1
CVE-2025-66320 MEDIUM
HarmonyOS - Denial of Service via Camera Framework Race Condition
CVSS 5.1
CVE-2025-13721 HIGH
Google Chrome < 143.0.7499.40 - Remote Code Execution via V8 Race Condition
CVSS 7.5
CVE-2025-20765 MEDIUM
Yocto - Local Denial of Service via Race Condition in aee Daemon
CVSS 4.7
CVE-2025-64313 MEDIUM
HarmonyOS - Denial of Service in Office Service
CVSS 5.3
CVE-2025-58316 HIGH
HarmonyOS - Denial of Service in Video System Service Module
CVSS 7.3
CVE-2025-58303 HIGH
Screen Recording Framework Module - Use After Free
CVSS 8.4
CVE-2025-12472 HIGH
Looker <upgrade - RCE
CVE-2025-12383 HIGH
Eclipse Jersey 2.45 3.0.16 3.1.9 - Race Condition in SSL Configuration Handling
CVSS 7.4
CVE-2025-64345 LOW
Wasmtime 24.0.0-24.0.4, 26.0.0-36.0.2, 37.0.0-37.0.2, 38.0.0-38.0.3 - Data Race via Shared Linear Memory
CVSS 1.8
CVE-2025-62219 HIGH
Windows 10 1607-22H2 and Windows 11 23H2-25H2 - Authenticated Privilege Escalation via Double Free
CVSS 7.0
CVE-2025-62218 HIGH
Microsoft Windows 10 1607-22H2 & Windows 11 23H2-25H2 Privilege Escalation via WPS Race Condition
CVSS 7.0
CVE-2025-62217 HIGH
Windows 10/11, Server 2008-2016 Privilege Escalation via AFD Race Condition
CVSS 7.0
CVE-2025-62215 HIGH KEV
Windows Kernel - Use-After-Free via Race Condition
CVSS 7.0
CVE-2025-60723 MEDIUM
Windows DirectX - Denial of Service via Race Condition
CVSS 6.3
CVE-2025-59508 HIGH
Windows Speech - Authenticated Privilege Escalation via Race Condition
CVSS 7.0
CVE-2025-59507 HIGH
Windows Speech - Authenticated Privilege Escalation via Race Condition
CVSS 7.0
CVE-2025-59506 HIGH
Windows DirectX - Authenticated Privilege Escalation via Race Condition
CVSS 7.0
CVE-2025-64773 LOW
JetBrains YouTrack < 2025.3.104432 - Race Condition Bypass of Helpdesk Agent Limit
CVSS 2.7
CVE-2025-13012 HIGH
Firefox < 115.30.0, 115.30-115.*, 140.5-140.*, >=145 - Race Condition in Graphics Component
CVSS 7.5
CVE-2025-12434 MEDIUM
Google Chrome < 142.0.7444.59 - UI Spoofing via Storage Race Condition
CVSS 4.2
CVE-2025-12432 HIGH
Google Chrome < 142.0.7444.59 - Remote Code Execution via V8 Race Condition
CVSS 8.8
CVE-2025-64683 MEDIUM
JetBrains Hub < 2025.3.104432 - Information Disclosure via Users API
CVSS 5.3
CVE-2025-64682 LOW
JetBrains Hub < 2025.3.104432 - Race Condition Bypass of Agent-User Limit
CVSS 2.7
CVE-2025-64457 MEDIUM
JetBrains dotTrace ReSharper and Rider < 2025.2.5 - Local Privilege Escalation via Race Condition
CVSS 4.2
Details
Vulnerabilities 2,383
Exploit Likelihood Medium