The Aerie/PlanDev sequencing-server's authorization middleware (sequencing-server/src/app.ts) derives the caller's Hasur
Typemill's login endpoint (POST /tm/login, ControllerWebAuth::login) performs no rate-limiting, failed-attempt counting,
The Stock-Inventory-Management-System application's login.php assigns raw username/password values to and builds its aut
Pluck CMS's admin panel relies solely on a Referer-header comparison (requestedByTheSameDomain in data/inc/functions.adm
In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_s
** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. This issue affects Apache Luc
** UNSUPPORTED WHEN ASSIGNED ** Deserialization of Untrusted Data vulnerability in Apache Lucy. This issue affects Apac
The Multi Uploader for Gravity Forms plugin for WordPress is vulnerable to unauthorized arbitrary media deletion in all
The Easy Post Submission plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi
The Custom Fields WordPress plugin before 1.5.1 does not validate a user-supplied file path before deletion, allowing un
The Ajax Load More WordPress plugin before 8.0.1 does not properly sanitise and escape a parameter before using it in a
The OTP Login With Phone Number, OTP Verification WordPress plugin before 1.8.71 does not limit the number of OTP verifi
The Membership Plugin – Kadence Memberships plugin for WordPress (formerly Restrict Content) is vulnerable to password r
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the con
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta
MaxSite CMS contains a PHP object injection vulnerability that allows unauthenticated attackers to execute arbitrary cod
Incorrect access control in the Executive Services dynamic application start path component of NASA cFS v7.0.1 allows at
Google::Auth versions before 0.06 for Perl run a command named in an external_account credentials JSON via an ungated sy
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP mes
MaxSite CMS contains a remote code execution vulnerability that allows unauthenticated attackers to inject arbitrary PHP
MaxSite CMS 109.5 and earlier contains an authentication bypass vulnerability in the AJAX dispatcher that allows unauthe
Atlas-Livre contains an improper access control vulnerability in the admin controllers under Espace_admin/controleur/ th
Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote att
In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to rem
Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker ca
Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause an ou
Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated
Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated
H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V
OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attacker
kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that allows
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with inv
Puwell IP Camera firmware versions 2.x through 4.x contains an unauthenticated command injection vulnerability that allo
Puwell IP Camera firmware versions 2.x through 4.x contains an authentication bypass vulnerability that allows unauthent
In Eclipse Jetty, the Digest authentication server-side component uses ISO-8859-1 to encode the password as bytes. Th
Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Dig
Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Hu
Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIS
The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS terminatio
The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS terminatio
In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in DEL-
The Improve SEO WordPress plugin through 2.0.11 does not properly validate uploaded files, checking only the file conten
The Easy Integration for Dropbox WordPress plugin before 2.2.0 does not perform authorization checks on several of its
A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function nas-web.add_user of
A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of the
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege esca
Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv
Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL
Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started