Skip to content
Noroxi

CWE-366 · 19 records

Race Condition within a Thread

CVEs in this class

19 records

  • Mutiple vulnerabilities in the Viridian interface

    CriticalCVSS 9.8No exploitEPSS 0%

    xen · xenSep 11, 2025

  • XZ has a heap-use-after-free bug in threaded .xz decoder

    HighCVSS 8.7No exploitEPSS 1%

    tukaani-project · xzApr 3, 2025

  • Race Condition within a Thread vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows r

    HighCVSS 8.1No exploitEPSS 2%

    synology · diskstation managerMar 12, 2021

  • oznetmaster SSharpSmartThreadPool SmartThreadPool.cs race condition

    HighCVSS 8.1No exploitEPSS 1%

    ssharpsmartthreadpool project · ssharpsmartthreadpoolJan 17, 2023

  • ZCC race condition in ZPA tunnel handler

    HighCVSS 8.1No exploitEPSS 0%

    zscaler · client connectorSep 14, 2026

  • RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()

    HighCVSS 7.8No exploitEPSS 0%

    linux · linux kernelMay 28, 2026

  • Apache Tomcat Native: Client certificate requirements can be down-graded

    HighCVSS 7.4No exploitEPSS 0%

    apache software foundation · apache tomcat nativeSep 23, 2026

  • CVE-2023-6546
    28Monitor

    Kernel: gsm multiplexing race condition leads to privilege escalation

    HighCVSS 7.0Proof of conceptEPSS 1%

    linux · linux kernelDec 21, 2023

  • CVE-2022-1729
    28Monitor

    A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges.

    HighCVSS 7.0No exploitEPSS 0%

    linux · linux kernelSep 1, 2022

  • A race condition in Ivanti Application Control Engine before version 10.14.4.0 allows a local authenticated attacker to bypass the applicati

    HighCVSS 7.0No exploitEPSS 0%

    ivanti · application controlJan 14, 2025

  • CVE-2026-3904
    24Monitor

    Calling NSS-backed functions that support caching via nscd may call the nscd client side code and in the GNU C Library version 2.36 under h

    MediumCVSS 6.2No exploitEPSS 0%

    gnu · glibcMar 11, 2026

  • CVE-2020-1629
    23Monitor

    Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.

    MediumCVSS 5.9No exploitEPSS 1%

    juniper · junosApr 8, 2020

  • CVE-2023-4127
    23Monitor

    Race Condition within a Thread in answerdev/answer

    MediumCVSS 5.9No exploitEPSS 0%

    answer · answerAug 3, 2023

  • Race condition vulnerability in SAP Commerce Cloud

    MediumCVSS 5.9No exploitEPSS 0%

    sap · commerce cloudFeb 10, 2026

  • CVE-2023-4732
    18Monitor

    Kernel: race between task migrating pages and another task calling exit_mmap to release those same pages getting invalid opcode bug in include/linux/swapops.h

    MediumCVSS 4.7No exploitEPSS 0%

    linux · linux kernelOct 3, 2023

  • CVE-2023-3218
    17Monitor

    Race Condition within a Thread in it-novum/openitcockpit

    MediumCVSS 4.4No exploitEPSS 0%

    it-novum · openitcockpitJun 13, 2023

  • CVE-2024-2032
    12Monitor

    Race Condition Vulnerability in zenml-io/zenml

    LowCVSS 3.1No exploitEPSS 0%

    zenml · zenmlJun 6, 2024

  • Outray has a Race Condition in main/apps/web/src/routes/api/$orgSlug/subdomains/index.ts

    LowCVSS 3.1No exploitEPSS 0%

    outray · outrayJan 14, 2026

  • Race Condition Enabling Link Following and Time-of-check Time-of-use (TOCTOU) Race Condition in remove_dir_all

    LowCVSS 2.5No exploit

    crates.io · remove_dir_allFeb 24, 2023

All vulnerability classes