CWE-367

Medium likelihood

Time-of-check Time-of-use (TOCTOU) Race Condition

Parent: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.

589 vulnerabilities with CWE-367
CVE-2025-24432 LOW
Adobe Commerce < 2.4.4 - TOCTOU Race Condition
CVSS 3.7
CVE-2025-24430 LOW
Adobe Commerce < 2.4.4 - TOCTOU Race Condition
CVSS 3.7
CVE-2025-24036 HIGH
Microsoft Autoupdate < 4.77.24121924 - TOCTOU Race Condition
CVSS 7.0
CVE-2025-22394 MEDIUM
Dell Display Manager < 2.3.2.20 - TOCTOU Race Condition
CVSS 6.7
CVE-2024-36311 MEDIUM
SMM - Memory Corruption
CVE-2024-9183 HIGH
Gitlab < 18.4.5 - TOCTOU Race Condition
CVSS 7.7
CVE-2024-9512 MEDIUM
Gitlab < 17.10.8 - TOCTOU Race Condition
CVSS 5.3
CVE-2024-53018 MEDIUM
Qualcomm Fastconnect 6900 Firmware - TOCTOU Race Condition
CVSS 6.6
CVE-2024-53016 MEDIUM
Qualcomm Fastconnect 6800 Firmware - TOCTOU Race Condition
CVSS 6.6
CVE-2024-42446 HIGH
APTIov - Code Injection
CVSS 7.5
CVE-2024-13961 HIGH
Avast Cleanup Premium <24.2.16593.17810 - Privilege Escalation
CVSS 7.8
CVE-2024-13960 HIGH
AVG TuneUp <23.4-15592 - Privilege Escalation
CVSS 7.8
CVE-2024-13944 HIGH
Norton Utilities Ultimate <24.2.16862.6344 - Privilege Escalation
CVSS 7.8
CVE-2024-45565 HIGH
Qualcomm Sdm429w Firmware - TOCTOU Race Condition
CVSS 7.8
CVE-2024-6029 MEDIUM
Tesla Model S Firmware < 2024.2.3 - TOCTOU Race Condition
CVSS 5.0
CVE-2024-43067 HIGH
Microcontroller <version> - Memory Corruption
CVSS 7.8
CVE-2024-54084 HIGH
APTIov - TOCTOU RCE
CVSS 7.5
CVE-2024-53694 HIGH
QVPN Device Client for Mac <2.2.5, Qsync for Mac <5.1.3, Qfinder Pr...
CVE-2024-53032 HIGH
Qualcomm Qam8255p Firmware - TOCTOU Race Condition
CVSS 7.8
CVE-2024-53028 HIGH
Qualcomm Qam8255p Firmware - TOCTOU Race Condition
CVSS 7.8
CVE-2024-41917 HIGH
Intel(R) Battery Life Diagnostic Tool <2.4.1 - Privilege Escalation
CVSS 7.5
CVE-2024-48394 HIGH
NDD Print <5.24.3 - Privilege Escalation
CVSS 7.8
CVE-2024-45560 HIGH
Qualcomm Aqt1000 Firmware - TOCTOU Race Condition
CVSS 7.8
CVE-2024-38418 HIGH
Kernel <version> - Memory Corruption
CVSS 7.8
CVE-2024-37181 LOW
Intel(R) Neural Compressor <v3.0 - Info Disclosure
CVSS 2.6
Details
Vulnerabilities 589
Exploit Likelihood Medium