CWE-367— Time-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.— MITRE CWE catalog
700 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-367page 10 of 14
- CVE-2025-32784HIGHCVSS 7.5EG 7.52025-04-15
conda-forge-webservices is the web app deployed to run conda-forge admin commands and linting. In versions prior to 2025.4.10, a race condition vulnerability has been identified in the conda-forge-webservices component used within the shar…
- CVE-2025-34027CRITICALCVSS 10.0EG 10.02025-05-21
The Versa Concerto SD-WAN orchestration platform is vulnerable to an authentication bypass in the Traefik reverse proxy configuration, allowing at attacker to access administrative endpoints. The Spack upload endpoint can be leveraged for …
- CVE-2025-34290HIGHCVSS 8.5EG 8.52025-12-20
Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege escalation vulnerability in the audit log export functionality. The client communicates user-controlled file paths to a privileged service, w…
- CVE-2025-3464HIGHCVSS 8.4EG 8.42025-06-16
A race condition vulnerability exists in Armoury Crate. This vulnerability arises from a Time-of-check Time-of-use issue, potentially leading to authentication bypass. Refer to the 'Security Update for Armoury Crate App' section on the ASU…
- CVE-2025-3599MEDIUMCVSS 6.5EG 6.52025-04-30
Symantec Endpoint Protection Windows Agent, running an ERASER Engine prior to 119.1.7.8, may be susceptible to an Elevation of Privilege vulnerability, which may allow an attacker to delete resources that are normally protected from an app…
- CVE-2025-38112MEDIUMCVSS 4.7EG 4.72025-07-03
In the Linux kernel, the following vulnerability has been resolved: net: Fix TOCTOU issue in sk_is_readable() sk->sk_prot->sock_is_readable is a valid function pointer when sk resides in a sockmap. After the last sk_psock_put() (which us…
- CVE-2025-38217MEDIUMCVSS 4.7EG 4.72025-07-04
In the Linux kernel, the following vulnerability has been resolved: hwmon: (ftsteutates) Fix TOCTOU race in fts_read() In the fts_read() function, when handling hwmon_pwm_auto_channels_temp, the code accesses the shared variable data->fa…
- CVE-2025-38352CRITICALCVSS 7.4EG 9.0⚠ KEV2025-07-22
In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If an exiting non-autoreaping task has already passed exit_notify() and calls hand…
- CVE-2025-38461MEDIUMEG 4.72025-07-25
In the Linux kernel, the following vulnerability has been resolved: vsock: Fix transport_* TOCTOU Transport assignment may race with module unload. Protect new_transport from becoming a stale pointer. This also takes care of an insecure…
- CVE-2025-38462MEDIUMCVSS 4.7EG 4.72025-07-25
In the Linux kernel, the following vulnerability has been resolved: vsock: Fix transport_{g2h,h2g} TOCTOU vsock_find_cid() and vsock_dev_do_ioctl() may race with module unload. transport_{g2h,h2g} may become NULL after the NULL check. I…
- CVE-2025-39713MEDIUMCVSS 4.7EG 4.72025-09-05
In the Linux kernel, the following vulnerability has been resolved: media: rainshadow-cec: fix TOCTOU race condition in rain_interrupt() In the interrupt handler rain_interrupt(), the buffer full check on rain->buf_len is performed befor…
- CVE-2025-41259HIGHCVSS 7.3EG 7.32026-06-03
SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TOCTOU) race condition that allows local unprivileged attackers to escalate privileges to root or install untrusted contents using a signed update.
- CVE-2025-42701MEDIUMCVSS 5.6EG 5.62025-10-08
A race condition exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute code on a host, to delete arbitrary files. CrowdStrike released a security fix for this issue in Falcon sensor for Win…
- CVE-2025-43276MEDIUMCVSS 5.3EG 5.32025-07-30
A logic error was addressed with improved error handling. This issue is fixed in macOS Sequoia 15.6. iCloud Private Relay may not activate when more than one user is logged in at the same time.
- CVE-2025-44002MEDIUMCVSS 6.1EG 6.12025-08-26
Race Condition in the Directory Validation Logic in the TeamViewer Full Client and Host prior version 15.69 on Windows allows a local non-admin user to create arbitrary files with SYSTEM privileges, potentially leading to a denial-of-servi…
- CVE-2025-46326LOWCVSS 3.3EG 3.32025-04-28
snowflake-connector-net is the Snowflake Connector for .NET. Versions starting from 2.1.2 to before 4.4.1, are vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition. When using the Easy Logging feature on Linux and macOS, th…
- CVE-2025-46327LOWCVSS 3.3EG 3.32025-04-28
gosnowflake is the Snowflake Golang driver. Versions starting from 1.7.0 to before 1.13.3, are vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition. When using the Easy Logging feature on Linux and macOS, the Driver reads l…
- CVE-2025-46328LOWCVSS 3.3EG 3.32025-04-28
snowflake-connector-nodejs is a NodeJS driver for Snowflake. Versions starting from 1.10.0 to before 2.0.4, are vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition. When using the Easy Logging feature on Linux and macOS th…
- CVE-2025-46336MEDIUMCVSS 4.2EG 4.22025-05-08
Rack::Session is a session management implementation for Rack. In versions starting from 2.0.0 to before 2.1.1, when using the Rack::Session::Pool middleware, and provided the attacker can acquire a session cookie (already a major issue), …
- CVE-2025-46415LOWCVSS 3.2EG 3.22025-06-27
A race condition in the Nix, Lix, and Guix package managers allows the removal of content from arbitrary folders. This affects Nix before 2.24.15, 2.26.4, 2.28.4, and 2.29.1; Lix before 2.91.2, 2.92.2, and 2.93.1; and Guix before 1.4.0-38.…
- CVE-2025-46805MEDIUMCVSS 5.5EG 5.52025-05-26
Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when installed setuid-root.
- CVE-2025-47290MEDIUMCVSS 5.9EG 5.92025-05-20
containerd is a container runtime. A time-of-check to time-of-use (TOCTOU) vulnerability was found in containerd v2.1.0. While unpacking an image during an image pull, specially crafted container images could arbitrarily modify the host fi…
- CVE-2025-47332MEDIUMCVSS 6.4EG 6.72026-01-07
Memory corruption while processing a config call from userspace.
- CVE-2025-47344MEDIUMCVSS 6.4EG 6.72026-01-07
Memory corruption while handling sensor utility operations.
- CVE-2025-47407HIGHCVSS 7.8EG 7.82026-05-04
Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.
- CVE-2025-48001MEDIUMCVSS 6.8EG 6.82025-07-08
Time-of-check time-of-use (toctou) race condition in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
- CVE-2025-48818MEDIUMCVSS 6.8EG 6.82025-07-08
Time-of-check time-of-use (toctou) race condition in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
- CVE-2025-49558MEDIUMCVSS 5.9EG 5.92025-08-12
Adobe Commerce versions 2.4.9-alpha1, 2.4.8-p1, 2.4.7-p6, 2.4.6-p11, 2.4.5-p13, 2.4.4-p14 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in a security feature bypass. An atta…
- CVE-2025-49730HIGHCVSS 7.8EG 7.82025-07-08
Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate privileges locally.
- CVE-2025-50158HIGHCVSS 7.0EG 7.02025-08-12
Time-of-check time-of-use (toctou) race condition in Windows NTFS allows an unauthorized attacker to disclose information locally.
- CVE-2025-52532LOWCVSS 2.0EG 2.02026-05-15
A race condition in the MxGPU-Virtualization driver’s ioctl path caused by concurrent unsynchronized access to the global variable amdgv_cmd in an unlocked ioctl handler could be exploited by an attacker to trigger a heap-based buffer ov…
- CVE-2025-53134HIGHCVSS 7.0EG 7.02025-08-12
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
- CVE-2025-53594MEDIUMCVSS 4.4EG 4.42026-01-02
A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have alread…
- CVE-2025-53788HIGHCVSS 7.0EG 7.02025-08-12
Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally.
- CVE-2025-54093HIGHCVSS 7.0EG 7.02025-09-09
Time-of-check time-of-use (toctou) race condition in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
- CVE-2025-54271MEDIUMCVSS 5.6EG 5.62025-10-15
Creative Cloud Desktop versions 6.7.0.278 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to arbitrary file system write. A low-privileged attacker could exploit the timing betw…
- CVE-2025-54655HIGHCVSS 8.1EG 8.12025-08-06
Race condition vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality and integrity of the virtualization graphics module.
- CVE-2025-54667MEDIUMCVSS 5.3EG 5.32025-08-14
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Saad Iqbal myCred mycred allows Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions.This issue affects myCred: from n/a through <= 2.9.4.3.
- CVE-2025-54895HIGHCVSS 7.8EG 7.82025-09-09
Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.
- CVE-2025-55236HIGHCVSS 7.3EG 7.32025-09-09
Time-of-check time-of-use (toctou) race condition in Graphics Kernel allows an authorized attacker to execute code locally.
- CVE-2025-55680HIGHCVSS 7.8EG 7.82025-10-14
Time-of-check time-of-use (toctou) race condition in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
- CVE-2025-55696HIGHCVSS 7.8EG 7.82025-10-14
Time-of-check time-of-use (toctou) race condition in NtQueryInformation Token function (ntifs.h) allows an authorized attacker to elevate privileges locally.
- CVE-2025-58131MEDIUMCVSS 6.6EG 6.62025-09-09
Race condition in the Zoom Workplace VDI Plugin macOS Universal installer for VMware Horizon before version 6.4.10 (or before 6.2.15 and 6.3.12 in their respective tracks) may allow an authenticated user to conduct a disclosure of informat…
- CVE-2025-58151CRITICALCVSS 9.4EG 9.42026-07-09
varstored is a component of the Xapi toolstack handling UEFI Variables for a VM. It has a communication path with OVMF inside the VM involving mapping a buffer prepared by OVMF. Within varstored, there were insufficient compiler barriers…
- CVE-2025-58407HIGHCVSS 7.4EG 7.42025-11-17
Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read and/or write of data outside the allotted memory escaping the virtual machine.
- CVE-2025-59261HIGHCVSS 7.0EG 7.02025-10-14
Time-of-check time-of-use (toctou) race condition in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
- CVE-2025-59497HIGHCVSS 7.0EG 7.02025-10-14
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authorized attacker to deny service locally.
- CVE-2025-59610MEDIUMCVSS 6.4EG 6.42026-06-01
Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer.
- CVE-2025-61037HIGHCVSS 7.0EG 7.02025-12-31
A local privilege escalation vulnerability exists in SevenCs ORCA G2 2.0.1.35 (EC2007 Kernel v5.22). The flaw is a Time-of-Check Time-of-Use (TOCTOU) race condition in the license management logic. The regService process, which runs with S…
- CVE-2025-62003HIGHCVSS 7.5EG 7.52025-12-18
BullWall Server Intrusion Protection has a noticeable configuration-dependent delay before the MFA check for RDP connections. A remote, authenticated attacker can potentially bypass detection during this delay. Versions 4.6.0.0, 4.6.0.6, 4…
Map vulnerabilities like CWE-367 to your infrastructure
EchelonGraph correlates every CVE — across CWE-367 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →