CWE-367
Medium likelihoodTime-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.
704 vulnerabilities with CWE-367
CVE-2025-46326
LOW
Snowflake Connector <4.4.1 - Info Disclosure
CVSS 3.3
CVE-2025-22060
MEDIUM
Linux Kernel 3.17-6.14.1 - TCAM/SRAM Time-of-check Time-of-use Race Condition
CVSS 4.7
CVE-2025-32784
HIGH
conda-forge-webservices <2025.4.10 - TOCTOU
CVE-2025-27812
HIGH
MSI Center <2.0.52.0 - Privilege Escalation
CVSS 8.1
CVE-2025-21191
HIGH
Windows 10 1507-24H2 and Windows Server 2008 - Privilege Escalation via LSA TOCTOU Race Condition
CVSS 7.0
CVE-2025-21431
MEDIUM
Qualcomm SA8770P Firmware - Information Disclosure via Guest VM Connection
CVSS 5.5
CVE-2025-21998
MEDIUM
Linux Kernel 6.11-6.12.20 - Time-of-check Time-of-use Race Condition in EFI Variable Access
CVSS 4.7
CVE-2025-21958
HIGH
Linux Kernel 6.12-6.12.19, 6.13-6.13.7 - Open vSwitch Conntrack Label TOCTOU Race Condition
CVSS 7.8
CVE-2025-22224
CRITICAL
KEV
VMware ESXi, Workstation - Code Injection
CVSS 9.3
CVE-2025-0759
LOW
IBM EntireX 11.1 - Time-of-check Time-of-use Race Condition
CVSS 3.3
CVE-2025-21746
MEDIUM
Linux Kernel 6.5-6.6.79, 6.7-6.12.16, 6.13-6.13.2 - TOCTOU Race Condition in Synaptics Port Handling
CVSS 4.7
CVE-2025-26620
MEDIUM
Duende.AccessTokenManagement < 3.2.0 - Race Condition in Client Credentials Token Request
CVE-2025-23359
HIGH
NVIDIA Container Toolkit < 1.17.4 and NVIDIA GPU Operator < 24.9.2 - Time-of-Check Time-of-Use Race Condition
CVSS 8.3
CVE-2025-24432
LOW
Adobe Commerce < 2.4.4 - Time-of-check Time-of-use Race Condition
CVSS 3.7
CVE-2025-24430
LOW
Adobe Commerce < 2.4.4 - Time-of-check Time-of-use Race Condition
CVSS 3.7
CVE-2025-24036
HIGH
Microsoft AutoUpdate < 4.77.24121924 - Elevation of Privilege via TOCTOU Race Condition
CVSS 7.0
CVE-2025-22394
MEDIUM
Dell Display Manager < 2.3.2.20 - Time-of-check Time-of-use Race Condition
CVSS 6.7
CVE-2024-36311
MEDIUM
AMD Ryzen 7045 Mobile Processors - SMM Communications Buffer Race Condition
CVE-2024-9183
HIGH
GitLab 18.4-18.4.5, 18.5-18.5.3, 18.6-18.6.1 - Authenticated Credential Theft via TOCTOU Race Condition
CVSS 7.7
CVE-2024-9512
MEDIUM
GitLab < 17.10.8, 17.11 < 17.11.4, 18.0 < 18.0.2 - Unauthenticated Repository Cloning via Race Condition
CVSS 5.3
CVE-2024-53018
MEDIUM
Qualcomm FastConnect 6900 Firmware - Memory Corruption in OIS Packet Parser
CVSS 6.6
CVE-2024-53016
MEDIUM
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption in Camera Driver I2C Settings
CVSS 6.6
CVE-2024-42446
HIGH
AMI APTIO V 5.0-5.039 - Time-of-check Time-of-use Race Condition
CVSS 7.5
CVE-2024-13961
HIGH
Avast Cleanup Premium <24.2.16593.17810 - Privilege Escalation
CVSS 7.8
CVE-2024-13960
HIGH
AVG TuneUp <23.4-15592 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities
704
Exploit Likelihood
Medium