In the Linux kernel, the following vulnerability has been resolved: net: ifb: report ethtool stats over num_tx_queues
In the Linux kernel, the following vulnerability has been resolved: qed: fix double free in qed_cxt_tables_alloc() If
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: capture fast-RX rate before mesh re
In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: add NULL check for idev in ipv6_hop_ioa
In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: fix UAF when peer resets connection dur
In the Linux kernel, the following vulnerability has been resolved: ipv4: raw: reject IP_HDRINCL packets with ihl < 5
In the Linux kernel, the following vulnerability has been resolved: rbd: eliminate a race in lock_dwork draining on unm
In the Linux kernel, the following vulnerability has been resolved: lsm: hold cred_guard_mutex for lsm_set_self_attr()
In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix UAF read of tail->len in unix_stream_d
In the Linux kernel, the following vulnerability has been resolved: cifs: Fix busy dentry used after unmounting Since
In the Linux kernel, the following vulnerability has been resolved: virt: sev-guest: Explicitly leak pages in unknown s
In the Linux kernel, the following vulnerability has been resolved: scsi: isci: Fix use-after-free in device removal pa
In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Fix use-after-free of CPU job query arrays
In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use uninterruptible resv lock for plane
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Validate GPIO pin LUT table size b
In the Linux kernel, the following vulnerability has been resolved: batman-adv: mcast: fix use-after-free in orig_node
In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: avoid double decrement of bla.num_
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tp_meter: directly shut down timer on c
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: fix negative tt_buff_len batadv_or
In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/adm1266) include PEC byte in pmbus_bl
In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/adm1266) cap PDIO scan in get_multipl
In the Linux kernel, the following vulnerability has been resolved: riscv: Fix register corruption from uninitialized c
In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Validate framework notification
In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: add and use xtables_unregister
In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: move to two-stage removal sche
In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: eb_tables: close module init rac
In the Linux kernel, the following vulnerability has been resolved: fs/statmount: fix slab out-of-bounds write in statm
In the Linux kernel, the following vulnerability has been resolved: irq_work: Fix use-after-free in irq_work_single() o
In the Linux kernel, the following vulnerability has been resolved: netfs: Fix netfs_read_folio() to wait on writeback
In the Linux kernel, the following vulnerability has been resolved: afs: Fix the locking used by afs_get_link() The af
In the Linux kernel, the following vulnerability has been resolved: block: don't overwrite bip_vcnt in bio_integrity_co
In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Add overflow check to remap_pfn_range d
In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: don't mix devm and drmm functions Mix
In the Linux kernel, the following vulnerability has been resolved: net/smc: reject CHID-0 ACCEPT that matches an empty
In the Linux kernel, the following vulnerability has been resolved: ovpn: tcp - use cached peer pointer in ovpn_tcp_clo
In the Linux kernel, the following vulnerability has been resolved: ovpn: respect peer refcount in CMD_NEW_PEER error p
In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Check BAR resources before exporting a DM
In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: fs210x: fix possible buffer overflow
In the Linux kernel, the following vulnerability has been resolved: drm/msm/snapshot: fix dumping of the unaligned regi
In the Linux kernel, the following vulnerability has been resolved: cgroup/rstat: validate cpu before css_rstat_cpu() a
In the Linux kernel, the following vulnerability has been resolved: bridge: mcast: Fix a possible use-after-free when r
In the Linux kernel, the following vulnerability has been resolved: erofs: fix managed cache race for unaligned extents
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bounds-check link_id in ieee80211_m
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Serialize UMP output teardown with event
In the Linux kernel, the following vulnerability has been resolved: net: shaper: rework the VALID marking (again) Rece
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix DATA decrypt vs splice() by copying data
In the Linux kernel, the following vulnerability has been resolved: gpio: aggregator: fix a potential use-after-free O
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix dma_vecs leak on p2p memory We don't
In the Linux kernel, the following vulnerability has been resolved: blk-mq: pop cached request if it is usable When su
In the Linux kernel, the following vulnerability has been resolved: security/keys: fix missed RCU read section on looku
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started