Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.9
CVE-2026-48154
GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions prior to 1.12.2 nMemorySecret2FA…
No fix yet
MEDIUM 6.5
CVE-2026-47620
NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A succe…
Dynamo
after 1.2.0
MEDIUM 5.9
CVE-2025-15630
A race
condition exists in the cloud-based Omada device adoption process when an
attacker may be able to interact with the adoption workflow before a…
Omada Oc200 V3 Firmware
No fix yet
MEDIUM 5.3
CVE-2026-44102
An unauthenticated remote attacker can trigger a firmware update download via the OCPP backend by supplying an invalid firmware file. This will cause…
No fix yet
HIGH 7.3
CVE-2026-16727
Concurrent Execution using Shared Resource with Improper Synchronization (“Race Condition”) in ASUS Armoury Crate allows a local user to execute arbi…
No fix yet
MEDIUM 6.5
CVE-2026-17999
Race in PictureInPicture in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to perform domain spoofing via a crafted HTML p…
Chrome
151.0.7922.72+
HIGH 7.0
CVE-2026-17993
Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege escalation via a malicious file. (Ch…
Chrome
151.0.7922.72+
HIGH 7.5
CVE-2026-17979
Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chr…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17855
Race in DevTools in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially per…
Chrome
151.0.7922.72+
MEDIUM 6.5
CVE-2026-17841
Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chro…
Chrome
151.0.7922.72+
MEDIUM 6.5
CVE-2026-17822
Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chro…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17709
Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially pe…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17711
Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially pe…
Chrome
151.0.7922.72+
HIGH 8.8
CVE-2026-17712
Race in Skia in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML p…
Chrome
151.0.7922.72+
HIGH 7.8
CVE-2026-17654
Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via a malicious file…
Chrome
151.0.7922.72+
CRITICAL 9.8
CVE-2026-51261
Missing mutex synchronization in AudioBuffer::freeSpace() in schreibfaul1 ESP32-audioI2S 3.4.5 creates a race condition between concurrent tasks. The…
No fix yet
HIGH 7.3
CVE-2026-62432
The EVTCHNOP_expand_array hypercall checks for whether FIFO event
channels are enabled, but without holding the correct lock. It can race
with EVTCH…
No fix yet
MEDIUM 6.5
CVE-2026-62435
[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]
With the introducti…
No fix yet
MEDIUM 6.5
CVE-2026-62436
[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]
With the introducti…
No fix yet
MEDIUM 6.5
CVE-2026-62429
Accessing the vNUMA configuration data of a guest is still possible when
domain destruction has already started. The cleaning up of that
configurati…
No fix yet
HIGH 7.5
CVE-2026-62430
Accesses to the CMOS memory contents are done using an indirect IO port
pair. Therefore Xen needs to cache the guest chosen index, and one of
the us…
No fix yet
CRITICAL 9.8
CVE-2026-64720
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26…
Ipados
26.6+
CRITICAL 9.8
CVE-2026-43805
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8…
Ipados
14.8.8 / 15.7.8+
HIGH 7.0
CVE-2026-43755
A race condition was addressed with improved state management. This issue is fixed in macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to ga…
macOS
14.8.8 / 26.6+
HIGH 7.5
CVE-2026-43728
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26.6. An attacker may be able to modify the state of t…
macOS
26.6+
HIGH 7.0
CVE-2026-43693
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a…
macOS
14.8.8 / 15.7.8+
CRITICAL 9.8
CVE-2026-28982
A race condition was addressed with improved locking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote us…
macOS
14.8.8 / 15.7.8+
HIGH 7.0
CVE-2026-28926
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may be able to …
macOS
14.8.8 / 15.7.8+
HIGH 7.0
CVE-2026-10681
In Zephyr's userspace dynamic-objects subsystem, thread_idx_alloc() in kernel/userspace/userspace.c allocated a new thread permission index from the …
Zephyr
4.5.0+
HIGH 7.8
CVE-2026-64279
In the Linux kernel, the following vulnerability has been resolved:
i2c: core: fix adapter deregistration race
Adapters can be looked up by their i…
Linux Kernel
5.15.212 / 6.1.178+