CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,383 vulnerabilities with CWE-362
CVE-2025-32710 HIGH
Windows Server RCE via Use-After-Free in Remote Desktop Services
CVSS 8.1
CVE-2025-40569 MEDIUM
RUGGEDCOM RST2428P - Path Traversal
CVSS 4.8
CVE-2025-24493 MEDIUM
OpenHarmony < 5.0.3 - Information Disclosure via Race Condition
CVSS 5.5
CVE-2025-5054 MEDIUM
Canonical apport <2.32.0 - Info Disclosure
CVSS 4.7
CVE-2025-48880 MEDIUM
FreeScout <1.8.181 - Privilege Escalation
CVSS 6.6
CVE-2025-48753 LOW
anode crate 0.1.0 - Info Disclosure
CVSS 2.9
CVE-2025-48751 LOW
process_lock 0.1.0 - Info Disclosure
CVSS 2.9
CVE-2025-0372 MEDIUM
HYPR Passwordless <10.1 - Privilege Escalation
CVE-2025-37988 MEDIUM
Linux kernel - Privilege Escalation
CVSS 4.7
CVE-2025-37985 MEDIUM
Linux Kernel 5.14-6.14.4 - Race Condition in WDM WWAN Port Handling
CVSS 4.7
CVE-2025-37920 MEDIUM
Linux Kernel 5.1.20-5.1.x - Race Condition in AF_XDP Generic RX Path
CVSS 4.7
CVE-2025-37906 MEDIUM
Linux Kernel 6.7-6.14.6 - Race Condition in ublk io_uring Command Completion
CVSS 4.7
CVE-2025-32421 LOW
Next.js < 14.2.24 - Race Condition in Pages Router via x-now-route-matches Header
CVSS 3.7
CVE-2025-20104 HIGH
Intel(R) Network Adapters <29.4 - Privilege Escalation
CVSS 7.3
CVE-2025-20039 MEDIUM
Intel PROSet/Wireless <23.100 - DoS
CVSS 6.6
CVE-2025-30394 MEDIUM
Remote Desktop Gateway Service - DoS
CVSS 5.9
CVE-2025-29841 HIGH
Universal Print Management Service - Privilege Escalation
CVSS 7.0
CVE-2025-27468 HIGH
Windows Secure Kernel Mode - Privilege Escalation
CVSS 7.0
CVE-2025-47735 LOW
wgp < 0.2.0 - Race Condition in inner::drop
CVSS 2.9
CVE-2025-46336 MEDIUM
Rack::Session <2.1.1 - Privilege Escalation
CVSS 4.2
CVE-2025-32441 MEDIUM
Rack < 2.2.14 - Unauthenticated Session Restoration via Race Condition in Rack::Session::Pool
CVSS 4.2
CVE-2025-47545 MEDIUM
Ays Pro Poll Maker <= 5.7.7 - Race Condition
CVSS 5.3
CVE-2025-1493 MEDIUM
IBM Db2 12.1.0-12.1.1 - Authenticated Denial of Service via Race Condition
CVSS 5.3
CVE-2025-23151 MEDIUM
Linux Kernel - Use-After-Free in MHI Host Queue Buffer Handling
CVSS 4.7
CVE-2025-3886 HIGH
CatoNetworks CatoClient < 5.8.0 - Privilege Escalation via PrivilegedHelperTool Race Condition
CVSS 8.1
Details
Vulnerabilities 2,383
Exploit Likelihood Medium