CWE-366

Total CVEs
10
Vulnerabilities
Avg CVSS v3
6.4
Medium
Avg CVSS v2
5.0
Medium
Latest CVE
2025
Most Recent

Severity Distribution

Critical 0
0%
High 5
50%
Medium 4
40%
Low 1
10%

External References

All CVEs (10)

Page 1 of 1
CVSS:8.1(High)

Race Condition within a Thread vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via crafted web re...

CVSS:8.1(High)

A vulnerability was found in oznetmaster SSharpSmartThreadPool. It has been classified as problematic. This affects an unknown part of the file SSharpSmartThreadPool/SmartThreadPool.cs. The manipulati...

CVSS:7.8(High)

A race condition in Ivanti Application Control Engine before version 10.14.4.0 allows a local authenticated attacker to bypass the application blocking functionality.

CVSS:7.0(High)

A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allows to build several exploit primitives such as kern...

CVSS:6.5(Medium)

Race Condition within a Thread in GitHub repository answerdev/answer prior to v1.1.1.

CVSS:6.5(Medium)

Race Condition within a Thread in GitHub repository it-novum/openitcockpit prior to 4.6.5.

CVSS:5.9(Medium)

A race condition vulnerability on Juniper Network Junos OS devices may cause the routing protocol daemon (RPD) process to crash and restart while processing a BGP NOTIFICATION message. This issue affe...

CVSS:4.7(Medium)

A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG ...

CVSS:3.1(Low)

A race condition vulnerability exists in zenml-io/zenml versions up to and including 0.55.3, which allows for the creation of multiple users with the same username when requests are sent in parallel. ...

XZ Utils provide a general-purpose data-compression library plus command-line tools. In XZ Utils 5.3.3alpha to 5.8.0, the multithreaded .xz decoder in liblzma has a bug where invalid input can at leas...