Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%

CWE-362 (使用共享资源的并发执行不恰当同步问题(竞争条件)) — Vulnerability Class 417

417 vulnerabilities classified as CWE-362 (使用共享资源的并发执行不恰当同步问题(竞争条件)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPaused
CVE-2026-25184 Applocker Filter Driver (applockerfltr.sys) Elevation of Privilege Vulnerability — Windows 11 version 22H3 7.0 High2026-04-14
CVE-2026-20930 Windows Management Services Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2026-04-14
CVE-2026-34862 Huawei HarmonyOS 安全漏洞 — HarmonyOS 6.3 Medium2026-04-13
CVE-2026-34861 Huawei HarmonyOS 安全漏洞 — HarmonyOS 6.3 Medium2026-04-13
CVE-2026-34858 Huawei HarmonyOS 安全漏洞 — HarmonyOS 4.1 Medium2026-04-13
CVE-2026-34857 Huawei HarmonyOS 安全漏洞 — HarmonyOS 4.7 Medium2026-04-13
CVE-2026-34849 Huawei HarmonyOS 安全漏洞 — HarmonyOS 2.5 Low2026-04-13
CVE-2026-34856 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.3 High2026-04-13
CVE-2026-34851 Huawei HarmonyOS 安全漏洞 — HarmonyOS 2.2 Low2026-04-13
CVE-2026-34850 Huawei HarmonyOS 安全漏洞 — HarmonyOS 1.9 Low2026-04-13
CVE-2026-5774 Juju API Server Denial of Service and Authentication Replay via Unsynchronized Token Map — Juju 8.8 -2026-04-10
CVE-2026-5902 Google Chrome 竞争条件问题漏洞 — Chrome 5.3AIMediumAI2026-04-08
CVE-2026-5893 Google Chrome 竞争条件问题漏洞 — Chrome 7.5AIHighAI2026-04-08
CVE-2026-5890 Google Chrome 竞争条件问题漏洞 — Chrome 5.3AIMediumAI2026-04-08
CVE-2026-39880 Remnawave Backend has a race condition in HWID device limit allows bypassing max devices — backend 5.0 Medium2026-04-08
CVE-2026-33544 Tinyauth has OAuth account confusion via shared mutable state on singleton service instances — tinyauth 7.7 High2026-04-02
CVE-2026-35099 Lakeside SysTrack Agent 安全漏洞 — SysTrack Agent 7.4 High2026-04-01
CVE-2026-34363 Parse Server: LiveQuery protected field leak via shared mutable state across concurrent subscribers — parse-server 7.5AIHighAI2026-03-31
CVE-2026-33028 Nginx UI: Race Condition Leads to Persistent Data Corruption and Service Collapse — nginx-ui 8.1 -2026-03-30
CVE-2026-33872 elixir-nodejs has Cross-User Data Leakage or Information Disclosure due to Worker Protocol Race Condition — elixir-nodejs 5.9 -2026-03-27
CVE-2026-34368 AVideo Vulnerable to Wallet Balance Double-Spend via TOCTOU Race Condition in transferBalance — AVideo 5.3 Medium2026-03-27
CVE-2026-33009 EVerest: MQTT Switch-Phases Command Data Race Causing Charger State Corruptio — everest-core 8.2 High2026-03-26
CVE-2026-27814 EVerest EvseManager phase-switch path has unsynchronized shared-state access race condition — everest-core 4.2 Medium2026-03-26
CVE-2026-26074 EVerest: OCPP201 startup event_queue lock mismatch leads to std::map/std::queue data race — everest-core 7.0 High2026-03-26
CVE-2026-26072 EVerest has race-condition-induced std::map corruption in OCPP 1.6 evse_soc_map — everest-core 4.2 Medium2026-03-26
CVE-2026-26071 EVerest: OCPP 2.0.1 EVCCID Data Race Leads to Heap Use‑After‑Free — everest-core 4.2 Medium2026-03-26
CVE-2026-26070 EVerest: OCPP 2.0.1 EV SoC Update Race Causes Charge Point Crash — everest-core 4.6 Medium2026-03-26
CVE-2025-33254 NVIDIA Triton Inference Server 竞争条件问题漏洞 — Triton Inference Server 7.5 High2026-03-24
CVE-2025-33238 NVIDIA Triton Inference Server 竞争条件问题漏洞 — Triton Inference Server 7.5 High2026-03-24
CVE-2026-32887 Effect Bug: `AsyncLocalStorage` context lost/contaminated inside Effect fibers under concurrent load with RPC — effect 7.4 High2026-03-20

Vulnerabilities classified as CWE-362 (使用共享资源的并发执行不恰当同步问题(竞争条件)) represent 417 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.