Vulnerability index

Browse CVEs

1,819 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 7.4 CVE-2026-48505 Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.11.5 and 5.6.5, a flaw in the handling of r… Mitigation only Fix from $1,9502026-06-22 MEDIUM 5.8 CVE-2026-48982 pam_usb provides hardware authentication for Linux using ordinary removable media. In versions prior to 0.9.2, when updating a one-time pad file, a t… Mitigation only Fix from $1,6002026-06-18 HIGH 7.9 CVE-2026-42487 HVM guest I/O port accesses are subject to either emulation or at least translation. Translations are managed by the device model (via XEN_DOMCTL_io… Mitigation only Fix from $1,9502026-06-18 HIGH 8.3 CVE-2026-12468 Race in Updater in Google Chrome on Mac prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially per… Chrome 149.0.7827.155+ Fix from $1,9502026-06-17 HIGH 8.3 CVE-2026-12454 Race in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potential… Chrome 149.0.7827.155+ Fix from $1,9502026-06-17 HIGH 7.8 CVE-2026-0068 In createSessionInternal of PackageInstallerService.java, there is a possible method to remove a DPC app from a managed device without DO consent due… Android Mitigation only Fix from $1,9502026-06-17 HIGH 7.0 CVE-2026-0083 In Nfc::eventCallback() of Nfc.h, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with n… Android Mitigation only Fix from $1,9502026-06-17 CRITICAL 9.2 CVE-2025-13036 An authentication bypass security issue exists within FactoryTalk Historian Site Edition. By continually sending requests to the login endpoint, an a… Mitigation only Fix from $2,3002026-06-16 HIGH 7.5 CVE-2026-48708 OliveTin gives access to predefined shell commands from a web interface. In versions 3000.0.0 and prior, the template engine uses a single shared tex… Patch available Fix from $1,9502026-06-15 MEDIUM 5.4 CVE-2025-15546 The Iptanus File Upload WordPress plugin before 5.1.7 does not implement proper file handling when the duplicatepolicy setting is configured to "main… Mitigation only Fix from $1,6002026-06-14 HIGH 7.0 CVE-2026-54229 A race condition was found in the abrt-dbus D-Bus service's ChownProblemDir method. ChownProblemDir opens the dump directory with DD_OPEN_READONLY an… Mitigation only Fix from $1,9502026-06-13 HIGH 8.3 CVE-2026-12022 Race in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potential… Chrome 149.0.7827.115+ Fix from $1,9502026-06-11 HIGH 8.8 CVE-2026-44693 Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. Prior to version 6.6.1, Pi-hole FTL contains a race co… Mitigation only Fix from $1,9502026-06-10 HIGH 7.1 CVE-2022-26758 A malicious application may cause unexpected changes in memory shared between processes. A memory corruption issue was addressed with improved state … macOS 12.4+ Fix from $1,9502026-06-10 HIGH 7.5 CVE-2026-1220 Race in V8 in Google Chrome prior to 144.0.7559.99 allowed a remote attacker to potentially exploit type confusion via a crafted HTML page. (Chromium… Chrome 144.0.7559.99+ Fix from $1,9502026-06-10 HIGH 7.0 CVE-2026-45598 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows a… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-45601 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows a… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-45603 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows a… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-45596 Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-45597 Concurrent execution using shared resource with improper synchronization ('race condition') in UI Automation Manager (uiamanager.dll) allows an autho… Windows 11 23h2 10.0.20348.5256 / 10.0.22631.7219+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-44818 Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Office Excel allows an unauthorized attacker… 365 Apps Mitigation only Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42991 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42977 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42978 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42979 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attack… Windows 10 1809 10.0.17763.8880 / 10.0.19044.7417+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-42912 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacke… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42913 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker … Remote Desktop Client 1.2.7214 / 10.0.20348.5256+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42909 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker … Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-42836 Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an autho… Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 CRITICAL 9.1 CVE-2025-10263 Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Corte… Mitigation only Fix from $2,3002026-06-09