Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overw
Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted func
libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via
This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attemp
langchain_experimental (aka LangChain Experimental) 0.1.17 through 0.3.0 for LangChain allows attackers to execute arbit
Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function
Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the update_account() function
Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the signup() function of the
Best House Rental Management System 1.0 contains a SQL injection vulnerability in the delete_category() function of the
Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote a
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. An arbitrary file write vulnera
An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5
**UNSUPPORTED WHEN ASSIGNED** An issue was discovered in BMC Remedy Mid Tier 7.6.04. An unauthenticated remote attacker
Plaintext Storage of a Password vulnerability in Eliz Software Panel allows : Use of Known Domain Credentials. This iss
SQL Injection vulnerability in todesk v.1.1 allows a remote attacker to execute arbitrary code via the /todesk.com/news.
Insecure deserialization in sqlitedict up to v2.1.0 allows attackers to execute arbitrary code.
A stack-based buffer overflow vulnerability exists in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC _v
Vulnerability in CIRCUTOR TCP2RS+ firmware version 1.3b, which could allow an attacker to modify any configuration value
An attacker with access to the network where CIRCUTOR Q-SMT is located in its firmware version 1.0.4, could steal the to
CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_set_p
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_renam
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: SHAMPO, Fix incorrect page release Unde
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arni Cinco WPCargo
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in highwarden Super S
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in highwarden Super S
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does
arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. Th
An improper access control vulnerability in GroupMe allows an a unauthenticated attacker to elevate privileges over a ne
The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious acto
Sensitive data disclosure and manipulation due to unnecessary privileges assignment. The following products are affected
A flaw was found in openshift/builder. This vulnerability allows command injection via path traversal, where a malicious
A flaw was found in OpenShift. This issue occurs due to the misuse of elevated privileges in the OpenShift Container Pla
This issue was addressed with improved validation of file attributes. This issue is fixed in macOS Sequoia 15. An app ma
A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15. An app may be able to
The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in check_data_integrity functio
The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in webPrivateDecrypt function.
An issue in TuomoKu SPx-GC v.1.3.0 and before allows a remote attacker to execute arbitrary code via the child_process.j
Improper Control of Generation of Code ('Code Injection') vulnerability in SFS Consulting ww.Winsure allows Code Injecti
Improper Restriction of XML External Entity Reference vulnerability in SFS Consulting ww.Winsure allows XML Injection.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting Ins
TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWizardCfg function via the ssid5
TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWiFiAclRules function via the de
Deserialization of Untrusted Data vulnerability in Apache Seata. When developers disable authentication on the Seata-S
Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenti
Certain models of D-Link wireless routers have a hidden functionality where the telnet service is enabled when the WAN p
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which
In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may becom
The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to SQL Injection via the 'options'
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started