CWE-362
Medium likelihoodConcurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.
2,269 vulnerabilities with CWE-362
CVE-2026-23342
MEDIUM
bpf: Fix race in cpumap on PREEMPT_RT
CVSS 4.7
CVE-2026-28891
HIGH
macOS <14.8.5 - Privilege Escalation
CVSS 8.1
CVE-2026-28888
MEDIUM
macOS <14.8.5 - Privilege Escalation
CVSS 5.1
CVE-2026-28834
MEDIUM
macOS <14.8.5 - DoS
CVSS 5.1
CVE-2026-28817
HIGH
macOS <14.8.5 - Sandbox Bypass
CVSS 8.1
CVE-2026-4684
HIGH
Race condition, use-after-free in the Graphics: WebRender component
CVSS 7.5
CVE-2026-32887
HIGH
Effect Bug: `AsyncLocalStorage` context lost/contaminated inside Effect fibers under concurrent load with RPC
CVSS 7.4
CVE-2026-32018
LOW
OpenClaw < 2026.2.19 - Race Condition in Sandbox Registry Write Operations
CVSS 3.6
CVE-2026-32723
MEDIUM
SandboxJS timers have an execution-quota bypass (cross-sandbox currentTicks race)
CVSS 4.7
CVE-2026-32700
MEDIUM
Devise has a confirmable "change email" race condition that permits user to confirm email they have no access to
CVSS 5.3
CVE-2026-32398
MEDIUM
TeraWallet - For WooCommerce <=1.5.15 - Race Condition
CVSS 6.5
CVE-2026-32242
HIGH
Parse Server <9.6.0-alpha.11/8.6.37 - Auth Bypass
CVSS 7.4
CVE-2026-31827
HIGH
Alienbin <=1.0.0 - DoS
CVE-2026-31824
HIGH
Sylius - TOCTOU Race Condition
CVSS 8.2
CVE-2026-0121
LOW
VPU - Use After Free
CVSS 2.9
CVE-2026-0112
HIGH
vpu_ioctl.c - Use After Free
CVSS 7.4
CVE-2026-24297
MEDIUM
Windows Kerberos - Auth Bypass
CVSS 6.5
CVE-2026-24296
HIGH
Windows Device Association Service - Privilege Escalation
CVSS 7.0
CVE-2026-24295
HIGH
Windows Device Association Service - Privilege Escalation
CVSS 7.0
CVE-2026-23671
HIGH
Windows Bluetooth RFCOM Driver - Privilege Escalation
CVSS 7.0
CVE-2026-23668
HIGH
Microsoft Graphics Component - Privilege Escalation
CVSS 7.0
CVE-2026-28789
HIGH
OliveTin <3000.10.3 - DoS
CVSS 7.5
CVE-2026-28551
MEDIUM
Device Security Module - DoS
CVSS 4.7
CVE-2026-28549
MEDIUM
Permission Management Service - DoS
CVSS 6.6
CVE-2026-28550
MEDIUM
Security Control Module - DoS
CVSS 4.0
Details
Vulnerabilities
2,269
Exploit Likelihood
Medium