CWE-367
Medium likelihoodTime-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.
649 vulnerabilities with CWE-367
CVE-2026-54228
HIGH
Abrt: toctou race condition in abrt-dbus setelement allows arbitrary file writes to dump directories
CVSS 7.8
CVE-2026-53838
CRITICAL
OpenClaw < 2026.5.27 - Node Pairing State Mutation via Reconnection
CVSS 9.8
CVE-2026-53831
HIGH
OpenClaw < 2026.5.18 - Arbitrary File Read via Shell Expansion in system.run Safe-bin Allowlist
CVSS 8.3
CVE-2026-53822
HIGH
OpenClaw < 2026.5.18 - Command Argument Modification via Shell Wrapper Between Approval and Execution
CVSS 8.8
CVE-2026-54055
MEDIUM
Kitty has an Arbitrary File Write via Symlink Race Condition in File Transmission Protocol
CVSS 5.0
CVE-2026-42306
HIGH
Moby: Race condition in docker cp allows bind mount redirection to host path
CVSS 7.2
CVE-2026-41568
MEDIUM
Moby: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap
CVSS 6.1
CVE-2026-50631
HIGH
Apache CXF: OAuth2: TOCTOU Race Condition in Refresh Token Processing
CVSS 7.4
CVE-2026-53806
HIGH
OpenClaw < 2026.5.12 - Shell Option Parsing Bypass in Exec Revalidation
CVSS 8.8
CVE-2026-24067
HIGH
Slate Digital Connect macOS XPC PID validation privilege escalation
CVSS 8.4
CVE-2026-49958
MEDIUM
Hermes WebUI < 0.51.303 TOCTOU Race Condition via git_discard
CVSS 5.0
CVE-2026-45647
MEDIUM
Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability
CVSS 5.5
CVE-2026-45487
HIGH
Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-24065
HIGH
Local Privilege Escalation via Insecure XPC Client Validation in Waves Central for macOS
CVSS 8.1
CVE-2026-2638
HIGH
X-VPN macOS website versions - Local Privilege Escalation
CVE-2026-35202
LOW
Pterodactyl Panel <1.12.3 Client API - Database Limit Bypass
CVE-2026-25260
HIGH
Qualcomm Snapdragon DSP Service - Shared Buffer Race Condition Memory Corruption
CVSS 7.8
CVE-2026-20454
MEDIUM
MediaTek Chipset - Time-of-check Time-of-use (TOCTOU) Race Condition
CVSS 6.4
CVE-2026-45619
MEDIUM
AVideo <= 29.0 - DNS Rebinding SSRF
CVSS 6.5
CVE-2026-46194
MEDIUM
f2fs: fix node_cnt race between extent node destroy and writeback
CVSS 4.7
CVE-2026-46159
MEDIUM
btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-leak
CVSS 4.7
CVE-2026-9796
MEDIUM
Keycloak: keycloak: privilege escalation via time-of-check to time-of-use (toctou) vulnerability
CVSS 6.5
CVE-2026-42336
MEDIUM
MaxKB: SSRF Bypass via DNS Rebinding in MaxKB OSS URL Fetch
CVE-2026-24191
HIGH
Nvidia GeForce - Time-of-check Time-of-use (TOCTOU) Race Condition
CVSS 7.8
CVE-2026-45208
HIGH
Trend Micro, Inc. TrendAI Apex One - Time-of-check Time-of-use (TOCTOU) Race Condition
CVSS 7.8
Details
Vulnerabilities
649
Exploit Likelihood
Medium