Skip to main content

CWE archive

CWE-366 CVEs

Programmatic archive

18 CVEs tagged with CWE-3662 Critical, 7 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2026-46181

Published May 28, 2026

In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event() Sashiko points out the radix_tree itself is RCU safe, but n…

CVSS 7.8 · High
evidence mentions
19
Buzz score
48.0
Vendor/product tagsBeta · best-effort

CVE-2026-3904

Published Mar 11, 2026

Calling NSS-backed functions that support caching via nscd may call the nscd client side code and in the GNU C Library version 2.36 under high load on x86_64 systems, the client…

CVSS 6.2 · Medium
evidence mentions
6
Buzz score
31.0
Vendor/product tagsBeta · best-effort

CVE-2026-23684

Published Feb 10, 2026

A race condition vulnerability exists in the SAP Commerce cloud. Because of this when an attacker adds products to a cart, it may result in a cart entry being created with erroneo…

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-22819

Published Jan 14, 2026

Outray openSource ngrok alternative. Prior to 0.1.5, this vulnerability allows a user i.e a free plan user to get more than the desired subdomains due to lack of db transaction lo…

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-58143

Published Sep 11, 2025

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are multiple issues related to the handling…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-31115

Published Apr 3, 2025

XZ Utils provide a general-purpose data-compression library plus command-line tools. In XZ Utils 5.3.3alpha to 5.8.0, the multithreaded .xz decoder in liblzma has a bug where inva…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9

CVE-2024-6778

Published Jul 16, 2024

Race in DevTools in Google Chrome prior to 126.0.6478.182 allowed an attacker who convinced a user to install a malicious extension to inject scripts or HTML into a privileged pag…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-2032

Published Jun 6, 2024

A race condition vulnerability exists in zenml-io/zenml versions up to and including 0.55.3, which allows for the creation of multiple users with the same username when requests a…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-4127

Published Aug 3, 2023

Race Condition within a Thread in GitHub repository answerdev/answer prior to v1.1.1.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26569

Published Mar 12, 2021

Race Condition within a Thread vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary co…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1629

Published Apr 8, 2020

A race condition vulnerability on Juniper Network Junos OS devices may cause the routing protocol daemon (RPD) process to crash and restart while processing a BGP NOTIFICATION mes…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-18 of 18 CVEsPage 1 of 1