CVE-2026-70091
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker t
CVSS
5.9
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 8, 2026 · Last modified: Sep 8, 2026 · CWE-362
Not enough EPSS history yet.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to deny service over a network.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-778947.0 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privileges locally.5hCVE-2026-730057.0 HIG—
———Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.5hCVE-2026-705826.4 MED—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.5hCVE-2026-698278.1 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over a network.5hCVE-2026-697997.8 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hello allows an authorized attacker to elevate privileges locally.5hCVE-2026-697924.7 MED—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to bypass a security feature locally.5h