Vulnerabilities (CVE)

Filtered by CWE-362
Total 2672 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-41114 1 Microsoft 3 Windows 10, Windows 11, Windows Server 2022 2026-08-10 N/A 7.0 HIGH
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2022-41100 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2026-08-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41093 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2026-08-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41090 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2026-08-10 N/A 5.9 MEDIUM
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
CVE-2022-41088 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2026-08-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-41086 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2026-08-10 N/A 6.4 MEDIUM
Windows Group Policy Elevation of Privilege Vulnerability
CVE-2022-41045 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41044 1 Microsoft 2 Windows 7, Windows Server 2008 2026-08-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-41039 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-38014 1 Microsoft 2 Azure Iot Edge For Linux, Windows Subsystem For Linux 2026-08-10 N/A 7.0 HIGH
Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability
CVE-2021-34462 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2026-08-10 4.6 MEDIUM 7.0 HIGH
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
CVE-2026-17724 2 Apple, Google 2 Iphone Os, Chrome 2026-08-10 N/A 4.2 MEDIUM
Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
CVE-2026-47620 2 Linux, Nvidia 2 Linux Kernel, Dynamo 2026-08-07 N/A 6.5 MEDIUM
NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of this vulnerability might lead to data tampering and denial of service.
CVE-2025-15630 1 Tp-link 224 Omada Ds1008x, Omada Ds1008x Firmware, Omada Ds1016g and 221 more 2026-08-07 N/A 5.9 MEDIUM
A race condition exists in the cloud-based Omada device adoption process when an attacker may be able to interact with the adoption workflow before a legitimate device completes registration, resulting in provisioning information being delivered to an attacker. Successful exploitation may allow disclosure of provisioning information intended for a legitimate device.
CVE-2026-19139 2 Google, Microsoft 2 Chrome, Windows 2026-08-07 N/A 7.4 HIGH
Race in CredentialProvider in Google Chrome on Windows prior to 151.0.7922.109 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: High)
CVE-2024-7885 1 Redhat 9 Build Of Apache Camel - Hawtio, Build Of Apache Camel For Spring Boot, Build Of Keycloak and 6 more 2026-08-07 N/A 7.5 HIGH
A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests. This issue occurs when the parseProxyProtocolV1 method processes multiple requests on the same HTTP connection. As a result, different requests may share the same StringBuilder instance, potentially leading to information leakage between requests or responses. In some cases, a value from a previous request or response may be erroneously reused, which could lead to unintended data exposure. This issue primarily results in errors and connection termination but creates a risk of data leakage in multi-request environments.
CVE-2023-6546 3 Fedoraproject, Linux, Redhat 3 Fedora, Linux Kernel, Enterprise Linux 2026-08-06 N/A 7.0 HIGH
A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free problem on a struct gsm_dlci while restarting the gsm mux. This could allow a local unprivileged user to escalate their privileges on the system.
CVE-2023-6531 2 Linux, Redhat 2 Linux Kernel, Enterprise Linux 2026-08-06 N/A 7.0 HIGH
A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic() on the socket that the SKB is queued on.
CVE-2026-61079 1 Oracle 1 Goldengate 2026-08-06 N/A 5.8 MEDIUM
Vulnerability in Oracle GoldenGate (component: Libraries). Supported versions that are affected are 19.1.0.0.0-19.30.0.0, 21.3-21.21 and 23.4-23.26.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle GoldenGate executes to compromise Oracle GoldenGate. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle GoldenGate accessible data as well as unauthorized update, insert or delete access to some of Oracle GoldenGate accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle GoldenGate. CVSS 3.1 Base Score 5.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:L/A:H).
CVE-2026-17654 2 Apple, Google 2 Macos, Chrome 2026-08-06 N/A 7.8 HIGH
Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Critical)