An issue in TopIDP3000 Topsec Operating System tos_3.3.005.665b.15_smpidp allows attackers to perform a brute-force atta
A vulnerability has been identified in SICAM GridEdge (Classic) (All versions < V2.6.6). The affected application does n
Memory corruption in bluetooth host due to integer overflow while processing BT HFP-UNIT profile in Snapdragon Auto, Sna
Possible buffer overflow due to improper parsing of headers while playing the FLAC audio clip in Snapdragon Auto, Snapdr
Possible hypervisor memory corruption due to TOC TOU race condition when updating address mappings in Snapdragon Auto, S
Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC security mode co
Possible buffer overflow due to improper validation of SSID length received from beacon or probe response during an IBSS
Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC Command packet h
Improper integrity check can lead to race condition between tasks PDCP and RRC? after a valid RRC Command packet has bee
Improper integrity check can lead to race condition between tasks PDCP and RRC? after a valid RRC Command packet has bee
Improper buffer size validation of DSM packet received can lead to memory corruption in Snapdragon Auto, Snapdragon Comp
Reading PRNG output may lead to improper key generation due to lack of buffer validation in Snapdragon Connectivity, Sna
Apache Flume versions 1.4.0 through 1.9.0 are vulnerable to a remote code execution (RCE) attack when a configuration us
Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability vi
The South Gate Inn Online Reservation System v1.0 contains an SQL injection vulnerability that can be chained with a mal
Church Management System version 1.0 is affected by a SQL anjection vulnerability through creating a user with a PHP fil
Biscuit is an authentication and authorization token for microservices architectures. The Biscuit specification version
There is a buffer overflow vulnerability in CV81-WDM FW 01.70.49.29.46. Successful exploitation of this vulnerability ma
Power Distribution Units running on Powertek firmware (multiple brands) before 3.30.30 have an insecure permissions sett
Power Distribution Units running on Powertek firmware (multiple brands) before 3.30.30 allows remote authorization bypas
A Server-Side Request Forgery (SSRF) vulnerability in IPS Community Suite before 4.6.2 allows remote authenticated users
The bone voice ID TA has a memory overwrite vulnerability. Successful exploitation of this vulnerability may result in m
Dialog boxes can still be displayed even if the screen is locked in carrier-customized USSD services. Successful exploit
In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-refresh-request" POST reque
In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-acknerr-request" POST reque
In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-off" POS
In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-on" POST
The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to insufficient escaping and param
SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.
The Member Hero WordPress plugin through 1.0.9 lacks authorization checks, and does not validate the a request parameter
The Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL sta
The KiviCare WordPress plugin before 2.3.9 does not sanitise and escape some parameters before using them in SQL stateme
There is a potential heap buffer overflow in Apache Hadoop libhdfs native code. Opening a file path provided by user wit
Rakuten Casa version AP_F_V1_4_1 or AP_F_V2_0_0 uses a hard-coded credential which may allow a remote unauthenticated at
In the SEOmatic plugin up to 3.4.11 for Craft CMS 3, it is possible for unauthenticated attackers to perform a Server-Si
A vulnerability was found in SICUNET Access Controller 0.32-05z. It has been classified as very critical. This affects a
dynamicMarkt <= 3.10 is affected by SQL injection in the kat parameter of index.php.
dynamicMarkt <= 3.10 is affected by SQL injection in the kat1 parameter of index.php.
dynamicMarkt <= 3.10 is affected by SQL injection in the parent parameter of index.php.
IdeaLMS 2022 allows SQL injection via the IdeaLMS/ChatRoom/ClassAccessControl/6?isBigBlueButton=0&ClassID= pathname.
An issue was discovered in Couchbase Sync Gateway 3.x before 3.0.2. Admin credentials are not verified when using X.509
Envoy is a cloud-native high-performance proxy. In versions prior to 1.22.1 the OAuth filter implementation does not inc
Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side C
Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a read beyond bounds in ap_strcmp_match()
The ITarian platform (SAAS / on-premise) offers the possibility to run code on agents via a function called procedures.
Path Traversal in GitHub repository gogs/gogs prior to 0.12.9.
OS Command Injection in GitHub repository gogs/gogs prior to 0.12.9.
PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto
OPSWAT MetaDefender Core before 5.1.2, MetaDefender ICAP before 4.12.1, and MetaDefender Email Gateway Security before 5
Kity Minder v1.3.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the init function at ImageCapture.
Frequently Asked Questions
What does CRITICAL severity mean for CVEs?
CVSS 9.0–10.0 — vulnerabilities that allow remote code execution, full system compromise, or trivial exploitation with no authentication required
How many critical severity CVEs exist?
There are 35,149 CVE records rated CRITICAL in our database. Of these, 312 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize critical severity vulnerabilities?
CRITICAL severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect CRITICAL Vulnerabilities
CyberStrike scans your infrastructure and detects critical severity vulnerabilities in real time.
Get Started