Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec
Substance3D - Painter is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application de
CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an a
Adobe XD is affected by a Buffer Overflow vulnerability that could result in arbitrary code execution in the context of
Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture in
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe
Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec
Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution
Substance3D - Sampler is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code exe
Webkul QloApps does not validate request parameters before a database query. A remote, authenticated attacker with admin
Webkul QloApps does not validate request parameters before a database query. A remote, authenticated attacker with admin
Webkul QloApps does not perform proper validation on uploaded file extensions or MIME types before moving the file to a
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture in
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture in
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture in
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture in
QWED is open-source AI verification infrastructure for deterministic verification of LLM outputs, tool calls, code, sche
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to
urllib is an HTTP client for Node.js that supports authentication, redirects, timeouts, and other request features. Prio
NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an
NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause a N
NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an
NVIDIA UFM Enterprise contains a vulnerability in the web interface authorization component, where an authenticated user
NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an authenticated user with low privil
The Kaltura HTML5 player (mwEmbed / html5lib) contains a local file disclosure vulnerability due to improper validation
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o
Vocos instantiates a class named by a configuration file without restricting which class may be named. instantiate_class
Winter CMS versions before 1.2.13 contain an incomplete fix for a Twig sandbox escape vulnerability in System\\Twig\\Sec
Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokeniz
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started