CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,269 vulnerabilities with CWE-362
CVE-2026-23342 MEDIUM
bpf: Fix race in cpumap on PREEMPT_RT
CVSS 4.7
CVE-2026-28891 HIGH
macOS <14.8.5 - Privilege Escalation
CVSS 8.1
CVE-2026-28888 MEDIUM
macOS <14.8.5 - Privilege Escalation
CVSS 5.1
CVE-2026-28834 MEDIUM
macOS <14.8.5 - DoS
CVSS 5.1
CVE-2026-28817 HIGH
macOS <14.8.5 - Sandbox Bypass
CVSS 8.1
CVE-2026-4684 HIGH
Race condition, use-after-free in the Graphics: WebRender component
CVSS 7.5
CVE-2026-32887 HIGH
Effect Bug: `AsyncLocalStorage` context lost/contaminated inside Effect fibers under concurrent load with RPC
CVSS 7.4
CVE-2026-32018 LOW
OpenClaw < 2026.2.19 - Race Condition in Sandbox Registry Write Operations
CVSS 3.6
CVE-2026-32723 MEDIUM
SandboxJS timers have an execution-quota bypass (cross-sandbox currentTicks race)
CVSS 4.7
CVE-2026-32700 MEDIUM
Devise has a confirmable "change email" race condition that permits user to confirm email they have no access to
CVSS 5.3
CVE-2026-32398 MEDIUM
TeraWallet - For WooCommerce <=1.5.15 - Race Condition
CVSS 6.5
CVE-2026-32242 HIGH
Parse Server <9.6.0-alpha.11/8.6.37 - Auth Bypass
CVSS 7.4
CVE-2026-31827 HIGH
Alienbin <=1.0.0 - DoS
CVE-2026-31824 HIGH
Sylius - TOCTOU Race Condition
CVSS 8.2
CVE-2026-0121 LOW
VPU - Use After Free
CVSS 2.9
CVE-2026-0112 HIGH
vpu_ioctl.c - Use After Free
CVSS 7.4
CVE-2026-24297 MEDIUM
Windows Kerberos - Auth Bypass
CVSS 6.5
CVE-2026-24296 HIGH
Windows Device Association Service - Privilege Escalation
CVSS 7.0
CVE-2026-24295 HIGH
Windows Device Association Service - Privilege Escalation
CVSS 7.0
CVE-2026-23671 HIGH
Windows Bluetooth RFCOM Driver - Privilege Escalation
CVSS 7.0
CVE-2026-23668 HIGH
Microsoft Graphics Component - Privilege Escalation
CVSS 7.0
CVE-2026-28789 HIGH
OliveTin <3000.10.3 - DoS
CVSS 7.5
CVE-2026-28551 MEDIUM
Device Security Module - DoS
CVSS 4.7
CVE-2026-28549 MEDIUM
Permission Management Service - DoS
CVSS 6.6
CVE-2026-28550 MEDIUM
Security Control Module - DoS
CVSS 4.0
Details
Vulnerabilities 2,269
Exploit Likelihood Medium