Race condition vulnerability in the notification service. Impact: Successful exploitation of this vulnerability may affe
GraphQL Modules is a toolset of libraries and guidelines dedicated to create reusable, maintainable, testable and extend
Alienbin is an anonymous code and text sharing web service. In 1.0.0 and earlier, the /save endpoint in server.js drops
Race Condition in NetScaler ADC and NetScaler Gateway when appliance is configured as Gateway (SSL VPN, ICA Proxy, CVPN,
elixir-nodejs provides an Elixir API for calling Node.js functions. A vulnerability in versions prior to 3.1.4 results i
Oxia is a metadata store and coordination system. Prior to 0.16.2, a race condition between session heartbeat processing
OwnTone Server versions 28.4 through 29.0 contain a race condition vulnerability in the DAAP login handler that allows u
Algernon is a small self-contained pure-Go web server. Prior to 1.17.6, in engine/luahandler.go, the sync.RWMutex protec
An authentication bypass security issue exists within FactoryTalk Historian Site Edition. By continually sending request
NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, two concurrent token-exchange requests us
Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to
Concurrent Execution using Shared Resource with Improper Synchronization (“Race Condition”) in ASUS Armoury Crate allows
A denial-of-service vulnerability exists in httpd service on Archer A6 v4 where the asynchronous systool instruction han
A race condition in the Palo Alto Networks GlobalProtect™ client on macOS enables a locally authenticated low-privileged
vLLM is an inference and serving engine for large language models. From 0.20.2rc0 until 0.26.0, safe_load_prompt_embeds
Nozomi Networks Labs identified a CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Ra
Nozomi Networks Labs identified a CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Ra
New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 1.0.0-
Zabbix API and Frontend login lockout mechanism has a flaw where several unsuccessful login requests are not properly co
OpenTelemetry-Go is the Go implementation of OpenTelemetry. From version 0.11.0 through 1.44.0, the OpenTracing bridge's
SvelteKit versions from 2.38.0 before 2.60.1 contain a race condition in query.batch that allows concurrent requests fro
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix call timer start racing with call destru
In the Linux kernel, the following vulnerability has been resolved: ibmvnic: fix race between xmit and reset There is
A race condition was addressed with improved locking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, ma
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.
A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If clie
In the Linux kernel, the following vulnerability has been resolved: ppp: fix race conditions in ppp_fill_forward_path
In the Linux kernel, the following vulnerability has been resolved: s390/ism: fix concurrency management in ism_cmd()
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix a race condition between l
In the Linux kernel, the following vulnerability has been resolved: fs: dlm: fix race in lowcomms This patch fixes a r
The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or modify the co
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix a race between renames and directory log
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix node corruption in ar->arvifs lis
A race condition vulnerability exists in the aVideoEncoder.json.php unzip functionality of WWBN AVideo 14.4 and dev mast
Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix deletion race condition System
In the Linux kernel, the following vulnerability has been resolved: iommu/amd/pgtbl: Fix possible race while increase p
In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix race condition in RPC handle list access
Race in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via
MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to
MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow
Multi-concurrency vulnerability in the media digital copyright protection module Impact: Successful exploitation of this
In RGXMMUCacheInvalidate of rgxmem.c, there is a possible arbitrary code execution due to a race condition. This could l
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.
UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may af
Multi-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vuln
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started