CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,529 vulnerabilities with CWE-362
CVE-2026-44800 HIGH
Microsoft Windows 11 version 23H2 - Windows Push Notifications Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-42900 HIGH
Microsoft Windows App Store Elevation of Privilege Vulnerability
CVSS 8.1
CVE-2026-57030 MEDIUM
Junos OS: SRX Series: Flow sessions are not getting cleared leading to a DoS
CVSS 5.9
CVE-2026-54778 MEDIUM
CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution
CVSS 6.2
CVE-2026-15119 HIGH
Google Chrome < 150.0.7871.115 - Sandbox Escape via GetUserMedia Race Condition
CVSS 8.3
CVE-2026-59896 MEDIUM
hono/jsx does not isolate context per request, leading to cross-request data disclosure
CVSS 6.5
CVE-2026-56297 HIGH
FreeRDP - Use-After-Free via Race Condition in DRDYNVC Channel Callback
CVSS 7.0
CVE-2026-55945 MEDIUM
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVSS 4.2
CVE-2026-53352 MEDIUM
signal: clear JOBCTL_PENDING_MASK for caller in zap_other_threads()
CVSS 4.7
CVE-2026-5120 HIGH
BIOVIA Workbook 2021-2026 - Race Condition Data Exposure
CVSS 8.1
CVE-2026-14133 MEDIUM
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 4.2
CVE-2026-14082 MEDIUM
Google Chrome - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 6.5
CVE-2026-14015 MEDIUM
Google Chrome < 150.0.7871.47 - Race Condition in WebRTC
CVSS 6.5
CVE-2026-13905 MEDIUM
Chrome for iOS < 150.0.7871.47 - Information Disclosure via Race Condition
CVSS 4.2
CVE-2026-13882 CRITICAL
Google Chrome < 150.0.7871.47 - Sandbox Escape via USB Race Condition
CVSS 9.6
CVE-2026-13874 MEDIUM
Google Chrome < 150.0.7871.47 - Race Condition in DataTransfer
CVSS 5.3
CVE-2026-10654 LOW
RFCOMM session-disconnect race leaks session/L2CAP and denies further RFCOMM service in Zephyr Bluetooth Classic
CVSS 3.1
CVE-2026-43743 MEDIUM
Apple Ios And iPadOS - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 4.7
CVE-2026-13502 MEDIUM
antlr ANTLR4 Maven Plugin GrammarDependencies.java ObjectInputStream.readObject toctou
CVSS 4.5
CVE-2026-46732 MEDIUM
Dell Display And Peripheral Manager - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVSS 6.7
CVE-2026-53108 MEDIUM
powerpc/64s: Fix unmap race with PMD migration entries
CVSS 4.7
CVE-2026-53086 CRITICAL
net: bcmgenet: fix racing timeout handler
CVSS 9.8
CVE-2026-53050 HIGH
quota: Fix race of dquot_scan_active() with quota deactivation
CVSS 7.8
CVE-2026-53020 HIGH
um: Fix potential race condition in TLB sync
CVSS 7.8
CVE-2026-53008 MEDIUM
ice: fix race condition in TX timestamp ring cleanup
CVSS 4.7
Details
Vulnerabilities 2,529
Exploit Likelihood Medium