CWE-367

Medium likelihood

Time-of-check Time-of-use (TOCTOU) Race Condition

Parent: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.

704 vulnerabilities with CWE-367
CVE-2025-55696 HIGH
NtQueryInformation Token - Privilege Escalation
CVSS 7.8
CVE-2025-55680 HIGH
Windows Cloud Files Mini Filter Driver - Privilege Escalation
CVSS 7.8
CVE-2025-42701 MEDIUM
Falcon sensor <7.24 - Privilege Escalation
CVSS 5.6
CVE-2025-58131 MEDIUM
Zoom Workplace VDI Plugin <6.4.10 - Info Disclosure
CVSS 6.6
CVE-2025-55236 HIGH
Windows 10/11, Server 2019/2022/2025 - Local Code Execution via Graphics Kernel TOCTOU
CVSS 7.3
CVE-2025-54895 HIGH
Windows 10 1507-24H2 & Server 2008-2012 Privilege Escalation via SPNEGO Integer Overflow
CVSS 7.8
CVE-2025-54093 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via TCP/IP TOCTOU Race Condition
CVSS 7.0
CVE-2025-39713 MEDIUM
Linux Kernel - Time-of-check Time-of-use Race Condition in rainshadow-cec Interrupt Handler
CVSS 4.7
CVE-2025-9810 MEDIUM
linenoise - Time-of-check Time-of-use Race Condition in linenoiseHistorySave
CVSS 6.8
CVE-2025-44002 MEDIUM
TeamViewer <15.69 - Privilege Escalation
CVSS 6.1
CVE-2025-54667 MEDIUM
myCred <= 2.9.4.3 - Time-of-check Time-of-use Race Condition
CVSS 5.3
CVE-2025-53788 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.0
CVE-2025-53134 HIGH
Windows 10/Server 2008 Privilege Escalation via AFD Race Condition
CVSS 7.0
CVE-2025-50158 HIGH
Windows 10/11, Server 2008 - Unauthenticated Info Disclosure via NTFS TOCTOU
CVSS 7.0
CVE-2025-49558 MEDIUM
Adobe Commerce < 2.4.4 - Time-of-check Time-of-use Race Condition
CVSS 5.9
CVE-2025-20074 HIGH
Intel(R) Connectivity Performance Suite <40.24.11210 - Privilege Es...
CVSS 7.8
CVE-2025-20037 HIGH
Intel(R) Converged Security and Management Engine - Privilege Escal...
CVSS 7.2
CVE-2025-27076 HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2025-21473 HIGH
Qualcomm FastConnect 6900 Firmware - Memory Corruption via Virtual CDM Register Write
CVSS 7.8
CVE-2025-21455 HIGH
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption via IOCTL Blob Data Submission
CVSS 7.8
CVE-2025-54655 HIGH
HarmonyOS - Time-of-check Time-of-use Race Condition in Virtualization Base Module
CVSS 8.1
CVE-2025-23279 HIGH
NVIDIA .run Installer - Privilege Escalation
CVSS 7.0
CVE-2025-8192 MEDIUM
TvSettings AppRestrictionsFragment - Info Disclosure
CVE-2025-43276 MEDIUM
macOS Sequoia <15.6 - Info Disclosure
CVSS 5.3
CVE-2025-38462 MEDIUM
Linux Kernel vsock Transport Time-of-check Time-of-use Race Condition
CVSS 4.7
Details
Vulnerabilities 704
Exploit Likelihood Medium