Falhas do tipo CWE-367
504 resultadosCVE-2024-43882HIGHexec: Fix ToCToU between perm check and set-uid/gid usageEPSS 0.2%CVE-2024-0133MEDIUMNVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container EPSS 0.2%CVE-2026-7837LOWTOCTOU with root privilege in ad_flushEPSS 0.2%CVE-2026-44694HIGHn8n-MCP: Authenticated SSRF in n8n-mcp webhook and API client pathsEPSS 0.2%CVE-2025-3599MEDIUMSymantec Endpoint Protection Elevation of PrivilegeEPSS 0.2%CVE-2025-13032CRITICALDouble fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3 on windows allows local attacker to escalate privelages via pool overfloEPSS 0.2%CVE-2026-6733LOWundici vulnerable to HTTP response queue poisoning via keep-alive socket reuseEPSS 0.2%CVE-2026-41337MEDIUMOpenClaw < 2026.3.31 - Callback Origin Mutation in Plivo Voice-call ReplayEPSS 0.2%CVE-2026-6180MEDIUMPaperCut MF: Card truncation on HP readersEPSS 0.2%CVE-2022-34899HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39316) Agent. An attacEPSS 0.2%CVE-2026-53838MEDIUMOpenClaw < 2026.5.27 - Node Pairing State Mutation via ReconnectionEPSS 0.2%CVE-2026-41002HIGHThe base directory (`spring.cloud.config.server.git.basedir`) used by the Spring Cloud Config Server to clone Git repositories to is susceptEPSS 0.2%CVE-2020-8332MEDIUMA potential vulnerability in the SMI callback function used in the legacy BIOS mode USB drivers in some legacy Lenovo and IBM System x serveEPSS 0.2%CVE-2025-32784HIGHconda-forge-webservices has an Unauthorized Artifact Modification Race ConditionEPSS 0.2%CVE-2020-8342HIGHA race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege.EPSS 0.2%CVE-2026-35648LOWOpenClaw < 2026.3.22 - Policy Bypass via Unvalidated Queued Node ActionsEPSS 0.2%CVE-2022-26522HIGHThe socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to executeEPSS 0.2%CVE-2023-1295HIGHPrivilege escalation with IO_RING_OP_CLOSE in the Linux KernelEPSS 0.2%CVE-2026-45647MEDIUMMicrosoft Defender for Endpoint for Mac Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2022-23651MEDIUMb2-sdk-python TOCTOU application key disclosureEPSS 0.2%