CWE-366 · 19 записей
Race Condition within a Thread
CVE этого класса
19 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2025-58143Эксплойта нет | Mutiple vulnerabilities in the Viridian interfacexen · xen · CWE-366 | Критическая9,8 | — | 0,4 % | 11 сент. 2025 г. |
34Наблюдать | CVE-2025-31115Эксплойта нет | XZ has a heap-use-after-free bug in threaded .xz decodertukaani-project · xz · CWE-366 | Высокая8,7 | — | 0,7 % | 3 апр. 2025 г. |
33Наблюдать | CVE-2021-26569Эксплойта нет | Race Condition within a Thread vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows rsynology · diskstation manager · CWE-366 | Высокая8,1 | — | 2,2 % | 12 мар. 2021 г. |
32Наблюдать | CVE-2015-10067Эксплойта нет | oznetmaster SSharpSmartThreadPool SmartThreadPool.cs race conditionssharpsmartthreadpool project · ssharpsmartthreadpool · CWE-366 | Высокая8,1 | — | 0,5 % | 17 янв. 2023 г. |
32Наблюдать | CVE-2026-25687Эксплойта нет | ZCC race condition in ZPA tunnel handlerzscaler · client connector · CWE-366 | Высокая8,1 | — | 0,4 % | 14 сент. 2026 г. |
31Наблюдать | CVE-2026-46181Эксплойта нет | RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()linux · linux kernel · CWE-366 | Высокая7,8 | — | 0,1 % | 28 мая 2026 г. |
29Наблюдать | CVE-2026-86247Эксплойта нет | Apache Tomcat Native: Client certificate requirements can be down-gradedapache software foundation · apache tomcat native · CWE-366 | Высокая7,4 | — | 0,2 % | 23 сент. 2026 г. |
28Наблюдать | CVE-2023-6546Proof of concept | Kernel: gsm multiplexing race condition leads to privilege escalationlinux · linux kernel · CWE-366 | Высокая7,0 | — | 0,7 % | 21 дек. 2023 г. |
28Наблюдать | CVE-2022-1729Эксплойта нет | A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges.linux · linux kernel · CWE-366 | Высокая7,0 | — | 0,3 % | 1 сент. 2022 г. |
28Наблюдать | CVE-2024-10630Эксплойта нет | A race condition in Ivanti Application Control Engine before version 10.14.4.0 allows a local authenticated attacker to bypass the applicatiivanti · application control · CWE-366 | Высокая7,0 | — | 0,2 % | 14 янв. 2025 г. |
24Наблюдать | CVE-2026-3904Эксплойта нет | Calling NSS-backed functions that support caching via nscd may call the nscd client side code and in the GNU C Library version 2.36 under hgnu · glibc · CWE-366 | Средняя6,2 | — | 0,2 % | 11 мар. 2026 г. |
23Наблюдать | CVE-2020-1629Эксплойта нет | Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.juniper · junos · CWE-366 | Средняя5,9 | — | 0,7 % | 8 апр. 2020 г. |
23Наблюдать | CVE-2023-4127Эксплойта нет | Race Condition within a Thread in answerdev/answeranswer · answer · CWE-366 | Средняя5,9 | — | 0,5 % | 3 авг. 2023 г. |
23Наблюдать | CVE-2026-23684Эксплойта нет | Race condition vulnerability in SAP Commerce Cloudsap · commerce cloud · CWE-366 | Средняя5,9 | — | 0,2 % | 10 февр. 2026 г. |
18Наблюдать | CVE-2023-4732Эксплойта нет | Kernel: race between task migrating pages and another task calling exit_mmap to release those same pages getting invalid opcode bug in include/linux/swapops.hlinux · linux kernel · CWE-366 | Средняя4,7 | — | 0,2 % | 3 окт. 2023 г. |
17Наблюдать | CVE-2023-3218Эксплойта нет | Race Condition within a Thread in it-novum/openitcockpitit-novum · openitcockpit · CWE-366 | Средняя4,4 | — | 0,5 % | 13 июн. 2023 г. |
12Наблюдать | CVE-2024-2032Эксплойта нет | Race Condition Vulnerability in zenml-io/zenmlzenml · zenml · CWE-366 | Низкая3,1 | — | 0,3 % | 6 июн. 2024 г. |
12Наблюдать | CVE-2026-22819Эксплойта нет | Outray has a Race Condition in main/apps/web/src/routes/api/$orgSlug/subdomains/index.tsoutray · outray · CWE-366 | Низкая3,1 | — | 0,2 % | 14 янв. 2026 г. |
10Наблюдать | GHSA-mc8h-8q98-g5hrЭксплойта нет | Race Condition Enabling Link Following and Time-of-check Time-of-use (TOCTOU) Race Condition in remove_dir_allcrates.io · remove_dir_all · CWE-366 | Низкая2,5 | — | — | 24 февр. 2023 г. |
- CVE-2025-5814339Наблюдать
Mutiple vulnerabilities in the Viridian interface
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %xen · xen11 сент. 2025 г.
- CVE-2025-3111534Наблюдать
XZ has a heap-use-after-free bug in threaded .xz decoder
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %tukaani-project · xz3 апр. 2025 г.
- CVE-2021-2656933Наблюдать
Race Condition within a Thread vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows r
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %synology · diskstation manager12 мар. 2021 г.
- CVE-2015-1006732Наблюдать
oznetmaster SSharpSmartThreadPool SmartThreadPool.cs race condition
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %ssharpsmartthreadpool project · ssharpsmartthreadpool17 янв. 2023 г.
- CVE-2026-2568732Наблюдать
ZCC race condition in ZPA tunnel handler
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %zscaler · client connector14 сент. 2026 г.
- CVE-2026-4618131Наблюдать
RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %linux · linux kernel28 мая 2026 г.
- CVE-2026-8624729Наблюдать
Apache Tomcat Native: Client certificate requirements can be down-graded
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %apache software foundation · apache tomcat native23 сент. 2026 г.
- CVE-2023-654628Наблюдать
Kernel: gsm multiplexing race condition leads to privilege escalation
ВысокаяCVSS 7,0Proof of conceptEPSS 1 %linux · linux kernel21 дек. 2023 г.
- CVE-2022-172928Наблюдать
A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges.
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %linux · linux kernel1 сент. 2022 г.
- CVE-2024-1063028Наблюдать
A race condition in Ivanti Application Control Engine before version 10.14.4.0 allows a local authenticated attacker to bypass the applicati
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %ivanti · application control14 янв. 2025 г.
- CVE-2026-390424Наблюдать
Calling NSS-backed functions that support caching via nscd may call the nscd client side code and in the GNU C Library version 2.36 under h
СредняяCVSS 6,2Эксплойта нетEPSS 0 %gnu · glibc11 мар. 2026 г.
- CVE-2020-162923Наблюдать
Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.
СредняяCVSS 5,9Эксплойта нетEPSS 1 %juniper · junos8 апр. 2020 г.
- CVE-2023-412723Наблюдать
Race Condition within a Thread in answerdev/answer
СредняяCVSS 5,9Эксплойта нетEPSS 0 %answer · answer3 авг. 2023 г.
- CVE-2026-2368423Наблюдать
Race condition vulnerability in SAP Commerce Cloud
СредняяCVSS 5,9Эксплойта нетEPSS 0 %sap · commerce cloud10 февр. 2026 г.
- CVE-2023-473218Наблюдать
Kernel: race between task migrating pages and another task calling exit_mmap to release those same pages getting invalid opcode bug in include/linux/swapops.h
СредняяCVSS 4,7Эксплойта нетEPSS 0 %linux · linux kernel3 окт. 2023 г.
- CVE-2023-321817Наблюдать
Race Condition within a Thread in it-novum/openitcockpit
СредняяCVSS 4,4Эксплойта нетEPSS 0 %it-novum · openitcockpit13 июн. 2023 г.
- CVE-2024-203212Наблюдать
Race Condition Vulnerability in zenml-io/zenml
НизкаяCVSS 3,1Эксплойта нетEPSS 0 %zenml · zenml6 июн. 2024 г.
- CVE-2026-2281912Наблюдать
Outray has a Race Condition in main/apps/web/src/routes/api/$orgSlug/subdomains/index.ts
НизкаяCVSS 3,1Эксплойта нетEPSS 0 %outray · outray14 янв. 2026 г.
- GHSA-mc8h-8q98-g5hr10Наблюдать
Race Condition Enabling Link Following and Time-of-check Time-of-use (TOCTOU) Race Condition in remove_dir_all
НизкаяCVSS 2,5Эксплойта нетcrates.io · remove_dir_all24 февр. 2023 г.