In the Linux kernel, the following vulnerability has been resolved: PCI: use generic driver_override infrastructure Wh
In the Linux kernel, the following vulnerability has been resolved: platform/wmi: use generic driver_override infrastru
In the Linux kernel, the following vulnerability has been resolved: vdpa: use generic driver_override infrastructure W
In the Linux kernel, the following vulnerability has been resolved: s390/cio: use generic driver_override infrastructur
In the Linux kernel, the following vulnerability has been resolved: s390/ap: use generic driver_override infrastructure
In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: use generic driver_override infrastruc
In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: pci: fix possible use-after-free cau
In the Linux kernel, the following vulnerability has been resolved: s390/bpf: Zero-extend bpf prog return values and kf
In the Linux kernel, the following vulnerability has been resolved: powerpc/pgtable-frag: Fix bad page state in pte_fra
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix use-after-free bugs in mt79
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix use-after-free bugs in mt79
In the Linux kernel, the following vulnerability has been resolved: bpf: Use RCU-safe iteration in dev_map_redirect_mul
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix stale offload->prog pointer after constant
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix linked reg delta tracking when src_reg ==
In the Linux kernel, the following vulnerability has been resolved: net: pull headers in qdisc_pkt_len_segs_init() Mos
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix ld_{abs,ind} failure path analysis in subp
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in offloaded map/prog info
In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix leaking free_bds While reclaimi
In the Linux kernel, the following vulnerability has been resolved: bpf: fix mm lifecycle in open-coded task_vma iterat
In the Linux kernel, the following vulnerability has been resolved: bpf: Enforce regsafe base id consistency for BPF_AD
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix same-register dst/src OOB read and pointer
In the Linux kernel, the following vulnerability has been resolved: net/rds: Restrict use of RDS/IB to the initial netw
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix OOB in pcpu_init_value An out-of-bounds r
In the Linux kernel, the following vulnerability has been resolved: ppp: require CAP_NET_ADMIN in target netns for unat
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix locking in hci_conn_request_evt() wi
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: Add missing chan lock in l2cap_ec
In the Linux kernel, the following vulnerability has been resolved: sctp: disable BH before calling udp_tunnel_xmit_skb
In the Linux kernel, the following vulnerability has been resolved: net, bpf: fix null-ptr-deref in xdp_master_redirect
In the Linux kernel, the following vulnerability has been resolved: drm/komeda: fix integer overflow in AFBC framebuffe
In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-ep-msi: Fix error unwind and pre
In the Linux kernel, the following vulnerability has been resolved: dm cache policy smq: fix missing locks in invalidat
In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count
In the Linux kernel, the following vulnerability has been resolved: iommu/riscv: Add IOTINVAL after updating DDT/PDT en
In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix VM_BIND UNMAP locking Wrong argument
In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix clone_alias() to use the original de
In the Linux kernel, the following vulnerability has been resolved: quota: Fix race of dquot_scan_active() with quota d
In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix listxattr handling when the buffer is fu
In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate bg_bits during freefrag scan [BUG]
In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix off-by-one in check_imm signed rang
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Take state lock for af_unix iter Whe
In the Linux kernel, the following vulnerability has been resolved: bpf: Validate node_id in arena_alloc_pages() arena
In the Linux kernel, the following vulnerability has been resolved: NFSD: fix nfs4_file access extra count in nfsd4_add
In the Linux kernel, the following vulnerability has been resolved: greybus: raw: fix use-after-free on cdev close Thi
In the Linux kernel, the following vulnerability has been resolved: greybus: raw: fix use-after-free if write is called
In the Linux kernel, the following vulnerability has been resolved: um: Fix potential race condition in TLB sync Durin
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - copy IV using skcipher ivsize AF_ALG
In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix use-after-free in advance_sc
In the Linux kernel, the following vulnerability has been resolved: ice: fix double-free of tx_buf skb If ice_tso() or
In the Linux kernel, the following vulnerability has been resolved: af_unix: Drop all SCM attributes for SOCKMAP. SOCK
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started