VulnSea

CWE-567

CVEs classified under CWE-567, newest first.

7 CVEsRSS

CVE-2026-79969Medium· 5.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability. An unaut…

Sunlitdell · secure_connect_gatewayEPSS 0.19%via NVD
CVE-2026-79962Medium· 5.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability. An unaut…

Sunlitdell · secure_connect_gatewayEPSS 0.19%via NVD
CVE-2026-79973Medium· 6.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Unsynchronized Access to Shared Data in a Multithreaded Context vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Unsynchronized Access to Shared Data in a Multithreaded Context vulnerability. A low privileged attacker with remo…

Sunlitdell · secure_connect_gatewayEPSS 0.14%via NVD
CVE-2026-73632None
1mo ago

Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts

Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-response serialization state could be shared across concurrent requests, allowing response content associated with one request to become obs…

SunlitEPSS 0.26%via NVD
CVE-2026-73631None
1mo ago

Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts

Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-request parsing state could be shared across concurrent requests, allowing data associated with one request to become observable in another,…

SunlitEPSS 0.26%via NVD
CVE-2026-48708High· 7.5
3mo ago

OliveTin has a Concurrent Template Parsing Race Condition which Leads to Cross-Request Command Contamination

OliveTin has a Concurrent Template Parsing Race Condition which Leads to Cross-Request Command Contamination

TwilightOliveTin · github.com/OliveTin/OliveTinEPSS 0.40%via GHSA
CVE-2025-14017Medium· 6.3
8mo ago

When doing multi-threaded LDAPS transfers (LDAP over TLS) with libcurl, changing TLS options in one thread would inadvertently change them globally and therefore possibly also affect other concurrently setup transfers. Disabling certifi…

When doing multi-threaded LDAPS transfers (LDAP over TLS) with libcurl, changing TLS options in one thread would inadvertently change them globally and therefore possibly also affect other concurrently setup transfers. Disabling certifi…

Sunlithaxx · curlEPSS 0.12%via NVD
CWE-567 vulnerabilities (CVEs) · VulnSea