Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 uses the ecos_pw cookie for authentication, which conta
A vulnerability has been found in Tiandy Easy7 Integrated Management Platform up to 7.17.0. This vulnerability affects u
Due to the improper neutralisation of special elements used in an OS command, an unauthenticated remote attacker can exp
An unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted interface, l
Versions of the package jsrsasign from 7.0.0 and before 11.1.1 are vulnerable to Incomplete Comparison with Missing Fact
A vulnerability has been found in Tenda A15 15.13.07.13. The impacted element is the function UploadCfg of the file /cgi
Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to
Memu Play 6.0.7 contains an insecure file permissions vulnerability that allows low-privilege users to escalate privileg
Service information is not encrypted when transmitted as BACnet packets over the wire, and can be sniffed, intercepted,
flatted is a circular JSON parser. Prior to version 3.4.2, the parse() function in flatted can use attacker-controlled s
Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a fo
gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from
WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonat
WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonat
A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-
The Kali Forms plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.4.9 v
A command injection vulnerability has been reported to affect QuNetSwitch. If a remote attacker gains a user account, th
A use of hard-coded credentials vulnerability has been reported to affect QuNetSwitch. The remote attackers can then exp
A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers c
A command injection vulnerability has been reported to affect QuNetSwitch. The remote attackers can then exploit the vul
A buffer overflow vulnerability has been reported to affect Media Streaming Add-On. The remote attackers can then exploi
This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient input sanitization in the device’s probe
A command injection vulnerability on AX53 v1 occurs in mscd debug functionality due to insufficient input handling, allo
OpenClaw versions prior to 2026.3.12 contain an authorization bypass vulnerability in the WebSocket connect path that al
SysAK v2.0 and before is vulnerable to command execution via aaa;cat /etc/passwd.
WeGIA is a web manager for charitable institutions. Versions 3.6.6 and below have a Reflected Cross-Site Scripting (XSS)
WeGIA is a web manager for charitable institutions. Versions 3.6.6 and below have a Reflected Cross-Site Scripting (XSS)
WeGIA is a web manager for charitable institutions. Versions 3.6.5 and below contain an authenticated SQL Injection vuln
SiYuan is a personal knowledge management system. Versions 3.6.0 and below render package metadata fields (displayName,
SiYuan is a personal knowledge management system. In versions 3.6.0 and below, the backend renderREADME function uses lu
Mesop is a Python-based UI framework that allows users to build web applications. In versions 1.2.2 and below, an explic
Mesop is a Python-based UI framework that allows users to build web applications. Versions 1.2.2 and below contain a Pat
Chall-Manager is a platform-agnostic system able to start Challenges on Demand of a player. In versions prior to 0.6.5,
AVideo is a video-sharing Platform. Versions prior to 8.0 contain a Server-Side Request Forgery vulnerability (CWE-918)
Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api
The Aimogen Pro plugin for WordPress is vulnerable to Arbitrary Function Call that can lead to privilege escalation due
PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a Heap-based
SiYuan is a personal knowledge management system. In versions 3.6.0 and below, SanitizeSVG has an incomplete blocklist —
SiYuan is a personal knowledge management system. In versions 3.6.0 and below, the /api/lute/html2BlockDOM on the deskto
Anchorr is a Discord bot for requesting movies and TV shows and receiving notifications when items are added to a media
Anchorr is a Discord bot for requesting movies and TV shows and receiving notifications when items are added to a media
Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: REST WebServices) and Oracl
Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, the documents and files module does
The CTFer.io Monitoring component is in charge of the collection, process and storage of various signals (i.e. logs, met
Fullchain is an umbrella project for deploying a ready-to-use CTF platform. In versions prior to 0.1.1, due to a mis-wr
SiYuan is a personal knowledge management system. Versions 3.6.0 and below contain an authorization bypass vulnerability
Xerte Online Toolkits versions 3.14 and earlier contain an unauthenticated arbitrary file upload vulnerability in the te
File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. A Critical Rem
When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibility
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started