Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for
Missing Release of Resource after Effective Lifetime vulnerability in Apache CloudStack's scoped global configuration fu
Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve
The MCP Streamable HTTP server transport (WebFlux and WebMvc variants) does not place any limit on the number of session
Reconmap's API applies a fallback authorization policy in apps/api/app/Program.cs that requires an authenticated user ho
Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell comma
Certificate validation failures in SAML authentication in Apache CloudStack 4.20.3.0 and 4.22.1.0 on all platforms allow
Improper authorization for CRUD operations on Project Roles and Project Role permissions for domain admins in CloudStack
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Apache InLong. Agent
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache CloudStack's
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's OAuth2 authentication pl
Improper Privilege Management vulnerability in Apache CloudStack's Two-factor authentication plugin allowing bypass of t
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's LDAP authentication plug
Cleartext Storage of Sensitive Information vulnerability in Apache CloudStack with AsyncJob storage in the database. Th
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's OAuth authentication plu
Missing Authorization, Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's U
SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a template pointing to an attacker-contro
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache Cloud
Execution after redirect (EAR) vulnerability in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin Panel
The AI Engine WordPress plugin before 3.6.1 does not verify that the requesting user is authorized to act on the target
The Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin before 1.3.9.9 does not validate the final na
The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.14 does not correctly ch
Rocket.Chat in versions before 8.8.0, 8.7.1, 8.6.2, 8.5.3, 8.4.6, 8.3.8, 8.2.8, 8.1.8, and 7.10.15 has a REST API endpoi
Software installed and run as a non-privileged user may conduct improper GPU system calls to pass invalid log2 page size
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a writ
The WPForms Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Single Line Text and Paragraph Tex
A flaw was found in the clusterclaims-controller component of multicluster engine (MCE). A tenant with standard permissi
tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected s
The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP reque
SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py applies the documented restrict_to_same_d
The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokeniz
Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information o
Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose
Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a
Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a networ
Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a net
Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a
An attacker that can reach a container's published TCP port may be able to force the host's forwarding process to buffer
CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.28.4 and
Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locall
LinkAce is a self-hosted archive to collect website links. Prior to version 2.5.7, the Bulk Link API endpoint (`POST /ap
Mailu is a mail server as a set of Docker images. Prior to version 2024.06.52, a missing authorization check in the Mail
BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton allowed authenticated moderators to in
BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton exposed /bigbluebutton/api/handleJoinE
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a vulnerability in cmdnim that may allow an unprivileged local user to
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 allows a remote unauthenticated attacker can send a crafted UDP packet to
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exists in the AIX Virtual SCSI (vSCSI) initi
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a buffer ov
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to an out-of-
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to improper val
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started