Cyber Resilience

CWE · MITRE source

CWE-821Incorrect Synchronization

Abstraction: Base · CVEs in our corpus: 14

The product utilizes a shared resource in a concurrent manner, but it does not correctly synchronize access to the resource.

If access to a shared resource is not correctly synchronized, then the resource may not be in a state that is expected by the product. This might lead to unexpected or insecure behaviors, especially if an attacker can influence the shared resource.

Last updated: 21 August 2026 14:15 UTC

Control responseHuman-reviewed

Answering this weakness across the control lifecycle, from our framework cross-walks.

Prevent
Stop it (NIST 800-53 / CSF Protect)
  • PR.PS-06
  • SC-4 Information in Shared System Resources
  • SC-39 Process Isolation
Detect
Catch it (CSF Detect / Respond)

Harden
Shrink the surface (DISA STIG)

Validate
Prove the fix (OWASP ASVS)

NIST 800-53 r5 controls that address this weakness (0)AI-assisted

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2026-43198 7.29.80.00302026-05-06
CVE-2024-1739 6.99.10.00562024-04-16
CVE-2022-1931 6.58.10.02052022-05-31
CVE-2024-1902 5.87.50.00392024-04-10
CVE-2026-775845.27.00.00182026-08-20
CVE-2026-561325.06.90.00112026-06-19
CVE-2024-6657 4.96.50.00202024-10-11
CVE-2026-21919 4.96.50.00232026-04-09
CVE-2023-5088 4.86.40.00232023-11-03
CVE-2024-5755 4.45.30.00342024-06-27
CVE-2024-4278 4.15.50.00232024-09-26
CVE-2024-581313.24.00.00252025-04-06
CVE-2024-58132 3.24.00.00262025-04-06
CVE-2024-58133 3.24.00.00262025-04-06