In the Linux kernel, the following vulnerability has been resolved: iommu: disable SVA when CONFIG_X86 is set Patch se
In the Linux kernel, the following vulnerability has been resolved: net: rose: fix invalid array index in rose_kill_by_
In the Linux kernel, the following vulnerability has been resolved: ipv6: BUG() in pskb_expand_head() as part of calips
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: revert use of devm_kzalloc in btu
In the Linux kernel, the following vulnerability has been resolved: ipv6: fix a BUG in rt6_get_pcpu_route() under PREEM
In the Linux kernel, the following vulnerability has been resolved: powerpc/64s/slb: Fix SLB multihit issue during SLB
In the Linux kernel, the following vulnerability has been resolved: scsi: aic94xx: fix use-after-free in device removal
In the Linux kernel, the following vulnerability has been resolved: functionfs: fix the open/removal races ffs_epfile_
In the Linux kernel, the following vulnerability has been resolved: Input: lkkbd - disable pending work before freeing
In the Linux kernel, the following vulnerability has been resolved: shmem: fix recovery on rename failures maple_tree
In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: fix use-after-free on probe deferra
In the Linux kernel, the following vulnerability has been resolved: ublk: clean up user copy references on ublk server
In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: Always remove class from active lis
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the wanMTU2 parameter of the fromAdvSetMacMtuWa
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the wanSpeed2 parameter of the fromAdvSetMacMtu
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the cloneType2 parameter of the fromAdvSetMacMt
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the serviceName2 parameter of the fromAdvSetMac
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the mac2 parameter of the fromAdvSetMacMtuWan f
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security_5g parameter of the sub_4CA50 function
In the Linux kernel, the following vulnerability has been resolved: Input: alps - fix use-after-free bugs caused by dev
In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb: dtv5100: fix out-of-bounds in dtv51
In the Linux kernel, the following vulnerability has been resolved: scsi: Revert "scsi: qla2xxx: Perform lockless comma
In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: Remove drr class from the active li
In the Linux kernel, the following vulnerability has been resolved: KVM: Disallow toggling KVM_MEM_GUEST_MEMFD on an ex
In the Linux kernel, the following vulnerability has been resolved: media: vidtv: initialize local pointers upon transf
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix buffer validation by including null term
In the Linux kernel, the following vulnerability has been resolved: fuse: fix io-uring list corruption for terminated n
In the Linux kernel, the following vulnerability has been resolved: NFSD: NFSv4 file creation neglects setting ACL An
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_router: Fix neighbour use-after-fre
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_mr: Fix use-after-free when updatin
In the Linux kernel, the following vulnerability has been resolved: caif: fix integer underflow in cffrml_receive() Th
In the Linux kernel, the following vulnerability has been resolved: ethtool: Avoid overflowing userspace buffer on stat
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix a job->pasid access race in gpu rec
In the Linux kernel, the following vulnerability has been resolved: tpm2-sessions: Fix out of range indexing in name_si
In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix middle attribute validation i
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Reset t_task_cdb pointer in error cas
In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix missing hfs_bnode_get() in __hfs_bnode
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix XDP_TX path For XDP_TX action in bnxt
An issue in Semantic machines v5.4.8 allows attackers to bypass authentication via sending a crafted HTTP request to var
A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray App on Windows Hosts whi
OS Command Injection Remote Code Execution Vulnerability in API in Progress LoadMaster allows an authenticated attacker
OS Command Injection Remote Code Execution Vulnerability in API in Progress LoadMaster allows an authenticated attacker
Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these b
Denial-of-service in the DOM: Service Workers component. This vulnerability was fixed in Firefox 147 and Thunderbird 147
Use-after-free in the IPC component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7,
Sandbox escape due to integer overflow in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox E
Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firef
Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versi
A vulnerability exists in Progress Flowmon ADS versions prior to 12.5.4 and 13.0.1 where an SQL injection vulnerability
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started