In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: fix OOB read in decod
In the Linux kernel, the following vulnerability has been resolved: net: wan: farsync: Fix use-after-free bugs caused b
In the Linux kernel, the following vulnerability has been resolved: net/rds: Clear reconnect pending bit When cancelin
In the Linux kernel, the following vulnerability has been resolved: net/rds: No shortcut out of RDS_CONN_ERROR RDS con
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: AV1: Fix tile info buffer size
In the Linux kernel, the following vulnerability has been resolved: cifs: Fix locking usage for tcon fields We used to
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Add SRCU protection for reading PDPTRs in
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: validate sequence number of TX re
In the Linux kernel, the following vulnerability has been resolved: LoongArch: Make cpumask_of_node() robust against NU
In the Linux kernel, the following vulnerability has been resolved: PCI: Fix pci_slot_trylock() error handling Commit
In the Linux kernel, the following vulnerability has been resolved: media: mtk-mdp: Fix error handling in probe functio
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix out-of-bounds write in kfd_event_pa
In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: validate num_ifs to prevent out-of-bo
In the Linux kernel, the following vulnerability has been resolved: atm: fore200e: fix use-after-free in tasklets durin
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix "scheduling while atomic" in IPsec M
In the Linux kernel, the following vulnerability has been resolved: soc: ti: pruss: Fix double free in pruss_clk_mux_se
In the Linux kernel, the following vulnerability has been resolved: net: consume xmit errors of GSO frames udpgro_frgl
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_tcpmss: check remaining length before
In the Linux kernel, the following vulnerability has been resolved: xfs: delete attr leaf freemap entries when empty B
In the Linux kernel, the following vulnerability has been resolved: rnbd-srv: Zero the rsp buffer before using it Befo
In the Linux kernel, the following vulnerability has been resolved: net: usb: kaweth: remove TX queue manipulation in k
In the Linux kernel, the following vulnerability has been resolved: procfs: fix possible double mmput() in do_procmap_q
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: validate release report content b
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix 22000 series SMEM parsing If th
In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced plain identification for enco
In the Linux kernel, the following vulnerability has been resolved: udplite: Fix null-ptr-deref in __udp_enqueue_schedu
In the Linux kernel, the following vulnerability has been resolved: xfs: fix freemap adjustments when adding xattrs to
In the Linux kernel, the following vulnerability has been resolved: xfs: remove xfs_attr_leaf_hasname The calling conv
In the Linux kernel, the following vulnerability has been resolved: perf/arm-cmn: Reject unsupported hardware configura
In the Linux kernel, the following vulnerability has been resolved: ntb: ntb_hw_switchtec: Fix shift-out-of-bounds for
In the Linux kernel, the following vulnerability has been resolved: xfrm6: fix uninitialized saddr in xfrm6_get_saddr()
In the Linux kernel, the following vulnerability has been resolved: reset: gpio: suppress bind attributes in sysfs Thi
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix missing key size check for L2
In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emula
In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix double dma_buf_unpin in failure path
In the Linux kernel, the following vulnerability has been resolved: ALSA: mixer: oss: Add card disconnect checkpoints
In the Linux kernel, the following vulnerability has been resolved: jfs: nlink overflow in jfs_rename If nlink is maxi
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: handle attr_set_size() errors when trunca
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-topology: Correct the allocation si
In the Linux kernel, the following vulnerability has been resolved: rpmsg: core: fix race in driver_override_show() and
HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smuggling vulnerability. A flaw in a
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Wicket. This issue affects Apache Wi
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix double free related to rereg_user_m
In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: ensure safe access to master
In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: validate packet IDs before indexing t
In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanit
In the Linux kernel, the following vulnerability has been resolved: HID: roccat: fix use-after-free in roccat_report_ev
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF event
In the Linux kernel, the following vulnerability has been resolved: cachefiles: fix incorrect dentry refcount in cachef
In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: fix potential NULL dereferences in __io
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started