zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header
The package @acrontum/filesystem-template before 0.0.2 are vulnerable to Arbitrary Command Injection due to the fetchRep
Renato v0.17.0 employs weak password complexity requirements, allowing attackers to crack user passwords via brute-force
Totolink A3600R_Firmware V4.1.2cu.5182_B20201102 contains a hard code password for root in /etc/shadow.sample.
Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h. On successful exploitati
Apache Hadoop's FileUtil.unTar(File, File) API does not escape the input file name before being passed to the shell. An
OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized
OMICARD EDM’s API function has insufficient validation for user input. An unauthenticated remote attacker can inject arb
Authentication Bypass by Primary Weakness in GitHub repository bookwyrm-social/bookwyrm prior to 0.4.5.
GVRET Stable Release as of Aug 15, 2015 was discovered to contain a buffer overflow via the handleConfigCmd function at
This vulnerability allows remote attackers to bypass authentication on affected installations of Vinchin Backup and Reco
This vulnerability allows remote attackers to execute arbitrary code on affected installations of BMC Track-It! 20.21.2.
This vulnerability allows remote attackers to bypass authentication on affected installations of Sante PACS Server 3.0.4
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE) vulnerability via the funct
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE) vulnerability via the funct
D-Link DIR810LA1_FW102B22 was discovered to contain a command injection vulnerability via the Ping_addr function.
In ConnMan through 1.41, remote attackers able to send HTTP requests to the gweb component are able to exploit a heap-ba
In Quest KACE Systems Management Appliance (SMA) through 12.0, a hash collision is possible during authentication. This
A SQL injection vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.0 that can allow fo
NextAuth.js is a complete open source authentication solution for Next.js applications. `next-auth` users who are using
EasyUse MailHunter Ultimate’s cookie deserialization function has an inadequate validation vulnerability. Deserializing
Mealie 1.0.0beta3 contains an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a
This affects all versions of package npos-tesseract. The injection point is located in line 55 in lib/ocr.js.
This affects the package image-tiler before 2.0.2.
This affects all versions of package heroku-env. The injection point is located in lib/get.js which is required by index
This affects all versions of package gitblame. The injection point is located in line 15 in lib/gitblame.js.
This affects all versions of package monorepo-build.
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the qid parameter at update.php.
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the page_size parameter at load_
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the page_size parameter at load_
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at invoicep
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at g
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at edituser
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at g
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editprod
Pharmacy Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities via the email or passwo
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editbran
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editcate
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at g
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at g
The foldername parameter in Bolt 5.1.7 was discovered to have incorrect input validation, allowing attackers to perform
fs2 is a compositional, streaming I/O library for Scala. When establishing a server-mode `TLSSocket` using `fs2-io` on N
PrestaShop is an Open Source e-commerce platform. In versions from 1.6.0.10 and before 1.7.8.7 PrestaShop is subject to
Shescape is a simple shell escape package for JavaScript. Affected versions were found to have insufficient escaping of
Improper Authorization in GitHub repository kromitgmbh/titra prior to 0.79.1.
BF-OS version 3.x up to and including 3.83 do not enforce strong passwords which may allow a remote attacker to brute-fo
In httpclient, there is a possible out of bounds write due to uninitialized data. This could lead to remote escalation o
The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due
The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement vi
In Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer over
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started