The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.
Volume of CVEs assigned to CWE-667 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
721 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-43510HIGH A memory corruption issue was addressed with improved lock state checking. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, macO | Dec 12, 2025 | 7.8 | 70 | YES | NO |
CVE-2019-10072HIGH The fix for CVE-2019-0199 was incomplete and did not address HTTP/2 connection window exhaustion on write in Apache Tomcat versions 9.0.0.M1 to 9.0.19 and 8.5.0 to 8.5.40 . By not | Jun 21, 2019 | 7.5 | 65 | NO | NO |
CVE-2021-1782HIGH A race condition was addressed with improved locking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tv | Apr 2, 2021 | 7.0 | 53 | YES | NO |
CVE-2002-1850HIGH mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang and memory consumption) by causing a CGI script to send a la | Dec 31, 2002 | 7.5 | 42 | NO | YES |
CVE-2026-54906CRITICAL concurrent-ruby is a modern concurrency tools for Ruby. Prior to 1.3.7, Concurrent::ReadWriteLock#release_write_lock does not verify that the calling thread acquired the write lock | Jun 24, 2026 | 9.8 | 40 | NO | NO |
CVE-2026-53049CRITICAL In the Linux kernel, the following vulnerability has been resolved:
gfs2: add some missing log locking
Function gfs2_logd() calls the log flushing functions gfs2_ail1_start(),
gf | Jun 24, 2026 | 9.8 | 38 | NO | NO |
CVE-2019-2025HIGH In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional exe | Jun 19, 2019 | 7.8 | 38 | NO | YES |
CVE-2026-53358HIGH In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: use chan timer to close channels in cleanup_listen()
l2cap_chan_close() removes the channel | Jul 2, 2026 | 8.8 | 36 | NO | NO |
CVE-2019-11599HIGH The coredump implementation in the Linux kernel before 5.0.10 does not use locking or other mechanisms to prevent vma layout or vma flags changes while it runs, which allows local | Apr 29, 2019 | 7.0 | 34 | NO | YES |
CVE-2026-53072HIGH In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER
When protocol sets HCI_PROTO_DEFER, hci_ | Jun 24, 2026 | 8.8 | 33 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.