GeoServer 2, in some configurations, allows remote attackers to execute arbitrary code via java.lang.Runtime.getRuntime(
Sourcecodester Service Provider Management System v1.0 is vulnerable to SQL Injection via the ID parameter in /php-spms/
In Progress MOVEit Transfer before 2021.0.7 (13.0.7), 2021.1.5 (13.1.5), 2022.0.5 (14.0.5), 2022.1.6 (14.1.6), and 2023.
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and
The Danfoss AK-EM100 web applications allow for an authenticated user to perform OS command injection through the web ap
The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting in the title parameter.
The Danfoss AK-EM100 web forms allow for SQL injection in the login forms.
The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting.
A buffer overflow was discovered in Progress DataDirect Connect for ODBC before 08.02.2770 for Oracle. An overly large v
Improper Restriction of Excessive Authentication Attempts in GitHub repository froxlor/froxlor prior to 2.0.20.
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malici
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malici
The go command may generate unexpected code at build time when using cgo. This may result in unexpected behavior when ru
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/sav
Incorrect access control in the administrative functionalities of BES--6024PB-I50H1 VideoPlayTool v2.0.1.0 allow attacke
The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to authentication bypass in versions up to, a
TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the staticGw para
xxl-rpc v1.7.0 was discovered to contain a deserialization vulnerability via the component com.xxl.rpc.core.remoting.net
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permiss
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer
StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It
SerialiseValue in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. 0xffffffff is sign-
Marval MSM through 14.19.0.12476 and 15.0 has a System account with default credentials. A remote attacker is able to lo
A privilege escalation allowing remote code execution was discovered in the orchestration service.
An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges
Aria Operations for Networks contains a command injection vulnerability. A malicious actor with network access to VMware
The Pinterest Automatic plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on t
The Adning Advertising plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation
Imperial CMS v7.5 was discovered to contain an arbitrary file deletion vulnerability via the DelspReFile function in /sp
The uListing plugin for WordPress is vulnerable to authorization bypass via wp_route due to missing capability checks, a
The WordPress Automatic Plugin for WordPress is vulnerable to arbitrary options updates in versions up to, and including
The uListing plugin for WordPress is vulnerable to authorization bypass as most actions and endpoints are accessible to
The Frontend File Manager plugin for WordPress is vulnerable to Authenticated Settings Change in versions up to, and inc
The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on th
The Controlled Admin Access plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including,
The uListing plugin for WordPress is vulnerable to authorization bypass due to missing capability checks, and a missing
The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Download in versions up
The function update_shipment_status_email_status_fun in the plugin Advanced Shipment Tracking for WooCommerce in version
The uListing plugin for WordPress is vulnerable to Unauthenticated Arbitrary Account Changes in versions up to, and incl
The Unauthenticated Account Creation plugin for WordPress is vulnerable to Unauthenticated Account Creation in versions
The uListing plugin for WordPress is vulnerable to authorization bypass via Ajax due to missing capability checks, missi
The uListing plugin for WordPress is vulnerable to generic SQL Injection via the ‘listing_id’ parameter in versions up t
The Newsletter Manager plugin for WordPress is vulnerable to insecure deserialization in versions up to, and including,
The Ultimate Reviews plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.1.32
The Wordable plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.1. This i
The ListingPro - WordPress Directory & Listing Theme for WordPress is vulnerable to Arbitrary Plugin Installation, Activ
The GDPR CCPA Compliance Support plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and inclu
The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.1.5. This
The following themes for WordPress are vulnerable to Function Injections in versions up to and including Shapely <= 1.2.
The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. Thi
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started