CVE-2026-30332

A Time-of-Check to Time-of-Use (TOCTOU) race condition vulnerability in Balena Etcher for Windows prior to v2.1.4 allows attackers to escalate privileges and execute arbitrary code via replacing a legitimate script with a crafted payload during the flashing process.
Configurations

No configuration.

History

No history.

Information

Published : 2026-04-02 16:16

Updated : 2026-07-24 21:10


NVD link : CVE-2026-30332

Mitre link : CVE-2026-30332

CVE.ORG link : CVE-2026-30332


JSON object : View

Products Affected

No product.

CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition