CWE-413 · 14 records
Improper Resource Locking
CVEs in this class
14 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
37Monitor | CVE-2026-32748No exploit | Squid has Denial of Service in ICP Response handlingsquid-cache · squid · CWE-413 | High8.7 | — | 10.0% | Mar 25, 2026 |
37Monitor | CVE-2025-3450No exploit | Automation Runtime SDM requests may impact systemb&r industrial automation · automation runtime · CWE-413 | Critical9.3 | — | 0.3% | Oct 7, 2025 |
33Monitor | CVE-2019-17102No exploit | Bitdefender BOX v2 bootstrap update_setup command execution vulnerability (VA-2226)bitdefender · box 2 firmware · CWE-413 | High8.1 | — | 1.9% | Jan 27, 2020 |
31Monitor | CVE-2019-8998No exploit | An information disclosure vulnerability leading to a potential local escalation of privilege in the procfs service (the /proc filesystem) ofblackberry · qnx software development platform · CWE-413 | High7.8 | — | 0.2% | Jul 12, 2019 |
30Monitor | CVE-2022-20678No exploit | Cisco IOS XE Software AppNav-XE Denial of Service Vulnerabilitycisco · ios xe · CWE-413 | High7.5 | — | 1.0% | Apr 15, 2022 |
30Monitor | CVE-2023-28649No exploit | The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it.snapone · orvc · CWE-413 | High7.5 | — | 0.5% | May 22, 2023 |
30Monitor | CVE-2022-49737No exploit | In X.Org X server 20.11 through 21.1.16, when a client application uses easystroke for mouse gestures, the main thread modifies various datax.org · x server · CWE-413 | High7.7 | — | 0.3% | Mar 15, 2025 |
29Monitor | CVE-2025-0003No exploit | Inadequate lock protection within Xilinx Run time may allow a local attacker to trigger a Use-After-Free condition potentially resulting in amd · xilinx run time (xrt) · CWE-413 | High7.3 | — | 0.2% | Nov 24, 2025 |
26Monitor | CVE-2026-92615No exploit | Flightctl: flightctl: package-global go-git https transport mutated per-repo -- cross-tenant tls-config bleedred hat · red hat advanced cluster management for kubernetes 2 · CWE-413 | Medium6.6 | — | 0.2% | Sep 16, 2026 |
23Monitor | CVE-2023-32253No exploit | Kernel: deadlock in ksmbd_find_crypto_ctx()red hat · red hat enterprise linux 10 · CWE-413 | Medium5.9 | — | 0.3% | Aug 2, 2025 |
22Monitor | CVE-2023-2430No exploit | A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel.linux · linux kernel · CWE-413 | Medium5.5 | — | 0.2% | Jul 22, 2023 |
21Monitor | CVE-2023-33951No exploit | Kernel: vmwgfx: race condition leading to information disclosure vulnerabilitylinux · linux kernel · CWE-413 | Medium5.3 | — | 0.3% | Jul 24, 2023 |
18Monitor | CVE-2026-44608No exploit | Use after free and crash under special conditions in RPZ codenlnetlabs · unbound · CWE-413 | Medium4.6 | — | 0.3% | May 20, 2026 |
17Monitor | CVE-2023-2269No exploit | A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dmlinux · linux kernel · CWE-413 | Medium4.4 | — | 0.2% | Apr 25, 2023 |
- CVE-2026-3274837Monitor
Squid has Denial of Service in ICP Response handling
HighCVSS 8.7No exploitEPSS 10%squid-cache · squidMar 25, 2026
- CVE-2025-345037Monitor
Automation Runtime SDM requests may impact system
CriticalCVSS 9.3No exploitEPSS 0%b&r industrial automation · automation runtimeOct 7, 2025
- CVE-2019-1710233Monitor
Bitdefender BOX v2 bootstrap update_setup command execution vulnerability (VA-2226)
HighCVSS 8.1No exploitEPSS 2%bitdefender · box 2 firmwareJan 27, 2020
- CVE-2019-899831Monitor
An information disclosure vulnerability leading to a potential local escalation of privilege in the procfs service (the /proc filesystem) of
HighCVSS 7.8No exploitEPSS 0%blackberry · qnx software development platformJul 12, 2019
- CVE-2022-2067830Monitor
Cisco IOS XE Software AppNav-XE Denial of Service Vulnerability
HighCVSS 7.5No exploitEPSS 1%cisco · ios xeApr 15, 2022
- CVE-2023-2864930Monitor
The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it.
HighCVSS 7.5No exploitEPSS 1%snapone · orvcMay 22, 2023
- CVE-2022-4973730Monitor
In X.Org X server 20.11 through 21.1.16, when a client application uses easystroke for mouse gestures, the main thread modifies various data
HighCVSS 7.7No exploitEPSS 0%x.org · x serverMar 15, 2025
- CVE-2025-000329Monitor
Inadequate lock protection within Xilinx Run time may allow a local attacker to trigger a Use-After-Free condition potentially resulting in
HighCVSS 7.3No exploitEPSS 0%amd · xilinx run time (xrt)Nov 24, 2025
- CVE-2026-9261526Monitor
Flightctl: flightctl: package-global go-git https transport mutated per-repo -- cross-tenant tls-config bleed
MediumCVSS 6.6No exploitEPSS 0%red hat · red hat advanced cluster management for kubernetes 2Sep 16, 2026
- CVE-2023-3225323Monitor
Kernel: deadlock in ksmbd_find_crypto_ctx()
MediumCVSS 5.9No exploitEPSS 0%red hat · red hat enterprise linux 10Aug 2, 2025
- CVE-2023-243022Monitor
A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel.
MediumCVSS 5.5No exploitEPSS 0%linux · linux kernelJul 22, 2023
- CVE-2023-3395121Monitor
Kernel: vmwgfx: race condition leading to information disclosure vulnerability
MediumCVSS 5.3No exploitEPSS 0%linux · linux kernelJul 24, 2023
- CVE-2026-4460818Monitor
Use after free and crash under special conditions in RPZ code
MediumCVSS 4.6No exploitEPSS 0%nlnetlabs · unboundMay 20, 2026
- CVE-2023-226917Monitor
A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dm
MediumCVSS 4.4No exploitEPSS 0%linux · linux kernelApr 25, 2023