Vulnerability index

Browse CVEs

1,823 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Answer MEDIUM 6.8
CVE-2023-0739

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in GitHub repository answerdev/answer prior to 1.0.4.

Fix: 1.0.4+
Fix from $1,600 2023-02-08
Couchbase Server HIGH 8.1
CVE-2022-42951

An issue was discovered in Couchbase Server 6.5.x and 6.6.x before 6.6.6, 7.x before 7.0.5, and 7.1.x before 7.1.2. During the start-up of a Couchbas…

Fix: 6.6.6 / 7.0.5+
Fix from $1,950 2023-02-06
Portfoliocms HIGH 8.1
CVE-2021-36532

Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt parameter to localhost/admin/up…

No fix yet
Fix from $1,950 2023-02-03
Wireguard MEDIUM 5.3
CVE-2021-46873

WireGuard, such as WireGuard 0.5.3 on Windows, does not fully account for the possibility that an adversary might be able to set a victim's system ti…

Mitigation only
Fix from $1,600 2023-01-29
Lightftp HIGH 7.5
CVE-2023-24042

A race condition in LightFTP through 2.2 allows an attacker to achieve path traversal via a malformed FTP request. A handler thread can use an overwr…

Fix: after 2.2
Fix from $1,950 2023-01-21
Ssharpsmartthreadpool HIGH 8.1
CVE-2015-10067

A vulnerability was found in oznetmaster SSharpSmartThreadPool. It has been classified as problematic. This affects an unknown part of the file SShar…

Fix: 2015-03-13+
Fix from $1,950 2023-01-18
Deno HIGH 7.5
CVE-2023-22499

Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. Multi-threaded programs were able to spoof interactive permission …

Fix: 1.29.3+
Fix from $1,950 2023-01-17
GitLab HIGH 8.5
CVE-2022-4037

An issue has been discovered in GitLab CE/EE affecting all versions before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starti…

Fix: 15.5.7 / 15.6.4+
Fix from $1,950 2023-01-12
Windows 10 HIGH 7.0
CVE-2023-21771

Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability

No fix yet
Fix from $1,950 2023-01-10
Windows 10 20h2 HIGH 7.0
CVE-2023-21733

Windows Bind Filter Driver Elevation of Privilege Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 8.1
CVE-2023-21679

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Windows Malicious Software Removal Tool MEDIUM 6.3
CVE-2023-21725

Windows Malicious Software Removal Tool Elevation of Privilege Vulnerability

Fix: 5.109+
Fix from $1,600 2023-01-10
Windows 10 1607 HIGH 7.0
CVE-2023-21542

Windows Installer Elevation of Privilege Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 8.1
CVE-2023-21546

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 8.1
CVE-2023-21535

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Chrome HIGH 8.8
CVE-2022-2742

Use after free in Exosphere in Google Chrome on Chrome OS and Lacros prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage …

Fix: 104.0.5112.79+
Fix from $1,950 2023-01-02
Firefox HIGH 7.1
CVE-2022-42930

If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred in the `ThirdPartyUtil` component. This vulnerabi…

Fix: 106.0+
Fix from $1,950 2022-12-22
Firefox MEDIUM 5.3
CVE-2022-36318

When visiting directory listings for `chrome://` URLs as source text, some parameters were reflected. This vulnerability affects Firefox ESR < 102.1,…

Fix: 91.12 / 102.1+
Fix from $1,600 2022-12-22
Firefox HIGH 8.8
CVE-2022-22763

When a worker is shutdown, it was possible to cause script to run late in the lifecycle, at a point after where it should not be possible. This vulne…

Fix: 91.6 / 96.0+
Fix from $1,950 2022-12-22
Firefox MEDIUM 5.9
CVE-2022-22746

A race condition could have allowed bypassing the fullscreen notification which could have lead to a fullscreen window spoof being unnoticed.<br>*Thi…

Fix: 91.5 / 96.0+
Fix from $1,600 2022-12-22
Firefox HIGH 7.5
CVE-2022-22737

Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a use-after-free c…

Fix: 91.5 / 96.0+
Fix from $1,950 2022-12-22
Android MEDIUM 6.4
CVE-2022-20567

In pppol2tp_create of l2tp_ppp.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with S…

Patch available
Fix from $1,600 2022-12-16
Safari HIGH 7.0
CVE-2022-46689EPSS 45%

A race condition was addressed with additional validation. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur…

Fix: 9.2 / 11.7.2+
Fix from $1,950 2022-12-15
Ipados HIGH 7.0
CVE-2022-42864

A race condition was addressed with improved state handling. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big S…

Fix: 9.2 / 11.7.2+
Fix from $1,950 2022-12-15
Windows 10 HIGH 8.1
CVE-2022-44676

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

No fix yet
Fix from $1,950 2022-12-13
Windows 10 HIGH 7.0
CVE-2022-44669

Windows Error Reporting Elevation of Privilege Vulnerability

Mitigation only
Fix from $1,950 2022-12-13
Android HIGH 7.0
CVE-2021-39660

In TBD of TBD, there is a possible way to archive arbitrary code execution in kernel due to a race condition. This could lead to local escalation of …

Mitigation only
Fix from $1,950 2022-12-13
Android MEDIUM 6.4
CVE-2022-32621

In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privi…

Mitigation only
Fix from $1,600 2022-12-05
Linux Kernel MEDIUM 5.5
CVE-2022-45869

A race condition in the x86 KVM subsystem in the Linux kernel through 6.1-rc6 allows guest OS users to cause a denial of service (host OS crash or ho…

Fix: 6.1+
Fix from $1,600 2022-11-30
Linux Kernel HIGH 7.0
CVE-2022-45884

An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related to dvb_register_device dynam…

Fix: 4.19.311 / 5.4.249+
Fix from $1,950 2022-11-25