Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve remote code execution through the arg
Hyland Alfresco Transformation Service allows unauthenticated attackers to achieve server-side request forgery (SSRF) th
Semantic Kernel, Microsoft's semantic kernel Python SDK, has a remote code execution vulnerability in versions prior to
Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) th
The 'Saisies pour formulaire' (Saisies) plugin for SPIP versions 5.4.0 through 5.11.0 contains a critical Remote Code Ex
SoftVision webPDF before 10.0.2 is vulnerable to Server-Side Request Forgery (SSRF). The PDF converter function does not
Authorization Bypass Through User-Controlled SQL Primary Key vulnerability in DATABASE Software Training Consulting Ltd.
Execution After Redirect (EAR), Missing Authentication for Critical Function vulnerability in Inrove Software and Intern
An unauthenticated attacker can inject OS commands when calling a server API endpoint in NesterSoft WorkTime. The server
A malicious actor with administrative privileges can upload an arbitrary file to a user-controlled location within the d
Deserialization of Untrusted Data vulnerability in magepeopleteam WpEvently mage-eventpress allows Object Injection.This
Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Restaurant grandrestaurant allows Object Injection.T
Gogs is an open source self-hosted Git service. Versions 0.13.4 and below expose unauthenticated file upload endpoints b
The s2Member plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and
The Slider Future plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in th
The Prodigy Commerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.
The Buyent Classified plugin for WordPress (bundled with Buyent theme) is vulnerable to privilege escalation via user re
The Lizza LMS Pro plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.0.3
The Clasifico Listing plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 2.0.
A security vulnerability has been detected in SECCN Dingcheng G10 3.1.0.181203. This impacts the function qq of the file
InvoicePlane is a self-hosted open source application for managing invoices, clients, and payments. A critical Remote Co
MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated remote code execution through supply chain compro
MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated OS command injection via rc/index.php. The $param
MajorDoMo (aka Major Domestic Module) allows unauthenticated remote code execution via the admin panel's PHP console fea
ChaosPro 2.0 contains a buffer overflow vulnerability in the configuration file path handling that allows attackers to e
MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execu
WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arb
Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attacke
Aida64 Engineer 6.10.5200 contains a buffer overflow vulnerability in the CSV logging configuration that allows attacker
An URL redirection vulnerability was identified in GitHub Enterprise Server that allowed attacker-controlled redirects t
code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management
CodeAstro Membership Management System 1.0 contains a missing authentication vulnerability in delete_members.php that al
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parame
Missing authentication in multiple administrative action scripts under /admin/ in ProjectWorlds Online Time Table Genera
SourceCodester Customer Support System 1.0 contains an incorrect access control vulnerability in ajax.php. The AJAX disp
UTT HiPER 810 / nv810v4 router firmware v1.5.0-140603 was discovered to contain insecure default credentials for the tel
ZoneMinder v1.36.34 is vulnerable to Command Injection in web/views/image.php. The application passes unsanitized user i
An unauthenticated stack-based buffer overflow vulnerability exists in the HTTP API endpoint /cgi-bin/api.values.get. A
Not properly invalidated session vulnerability in Graylog Web Interface, version 2.2.3, due to incorrect management of s
The affected products are vulnerable to an unauthenticated API endpoint exposure, which may allow an attacker to remotel
Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability. Thi
Improper Input Validation vulnerability. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.14, from 10.1.0-
Rocket TRUfusion Enterprise through 7.10.5 exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authentica
Glory RBG-100 recycler systems using the ISPK-08 software component contain hard-coded operating system credentials that
A Server-Side Template Injection (SSTI) vulnerability in the Freemarker template engine of Datart v1.0.0-rc.3 allows aut
OpenS100 (the reference implementation S-100 viewer) prior to commit 753cf29 contains a remote code execution vulnerabil
Concierge::Sessions versions from 0.8.1 before 0.8.5 for Perl generate insecure session ids. The generate_session_id fun
Maypole versions from 2.10 through 2.13 for Perl generates session ids insecurely. The session id is seeded with the sys
The WhatsApp bridge component in Nanobot binds the WebSocket server to all network interfaces (0.0.0.0) on port 3001 by
A vulnerability was found in EFM iptime A6004MX 14.18.2. Affected is the function commit_vpncli_file_upload of the file
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started