Buffer overflow vulnerability in function dcputchar in decompile.c in libming 0.4.8.
CWE-434 Unrestricted Upload of File with Dangerous Type
A weakness has been identified in code-projects College Notes Uploading System 1.0. This issue affects some unknown proc
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in
Buffer overflow vulnerability in function strcat in asan_interceptors.cpp in libming 0.4.8.
An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial
An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause
An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause
An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a d
A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a
A vulnerability was identified in code-projects Assessment Management 1.0. This affects an unknown part of the file logi
Nest is a framework for building scalable Node.js server-side applications. Versions prior to 11.1.11 have a Fastify URL
phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16, an unauthenticated remote attacker can trig
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in councilsoft Conten
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in prasadkirpekar Adv
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in INVELITY Invelity
A vulnerability was determined in code-projects Assessment Management 1.0. Affected by this issue is some unknown functi
A vulnerability was detected in D-Link DWR-M920 up to 1.1.50. This affects the function sub_423848 of the file /boafrm/f
A security flaw has been discovered in D-Link DWR-M920 up to 1.1.50. Impacted is the function sub_42261C of the file /bo
A vulnerability was identified in D-Link DWR-M920 up to 1.1.50. This issue affects the function sub_464794 of the file /
A vulnerability has been found in code-projects Refugee Food Management System 1.0. Affected by this issue is some unkno
A flaw has been found in code-projects Refugee Food Management System 1.0. Affected by this vulnerability is an unknown
A vulnerability was detected in code-projects Refugee Food Management System 1.0. Affected is an unknown function of the
A security vulnerability has been detected in code-projects Refugee Food Management System 1.0. This impacts an unknown
A weakness has been identified in code-projects Refugee Food Management System 1.0. This affects an unknown function of
A security flaw has been discovered in code-projects Refugee Food Management System 1.0. The impacted element is an unkn
A vulnerability was identified in Tenda WH450 1.0.0.18. The affected element is an unknown function of the file /goform/
BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Read vulnerability, allowing unauthenticated remote
A vulnerability was determined in Tenda WH450 1.0.0.18. Impacted is an unknown function of the file /goform/qossetting.
A vulnerability was found in Tenda WH450 1.0.0.18. This issue affects some unknown processing of the file /goform/Virtua
WMPro developed by Sunnet has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit
A vulnerability has been found in Tenda WH450 1.0.0.18. This vulnerability affects unknown code of the file /goform/SetI
Improper Authentication vulnerability in Gmission Web Fax allows Privilege Escalation.This issue affects Web Fax: from 3
Missing Authorization vulnerability in Gmission Web Fax allows Authentication Abuse, Session Credential Falsification th
The Plugin Organizer WordPress plugin before 10.2.4 does not sanitize and escape a parameter before using it in a SQL st
A vulnerability was identified in itsourcecode Student Management System 1.0. Affected is an unknown function of the fil
A vulnerability was determined in itsourcecode Online Cake Ordering System 1.0. This impacts an unknown function of the
A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file
A vulnerability has been found in itsourcecode Online Cake Ordering System 1.0. The impacted element is an unknown funct
A security flaw has been discovered in Tenda WH450 1.0.0.18. This affects an unknown part of the file /goform/SafeMacFil
A vulnerability was identified in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file
Unrestricted Upload of File with Dangerous Type vulnerability in Innorix Innorix WP allows Upload a Web Shell to a Web S
A vulnerability was determined in Tenda WH450 1.0.0.18. Affected by this vulnerability is an unknown functionality of th
A vulnerability was found in Tenda WH450 1.0.0.18. Affected is an unknown function of the file /goform/PPTPUserSetting.
A vulnerability has been found in Tenda WH450 1.0.0.18. This impacts an unknown function of the file /goform/PPTPServer.
In GnuPG before 2.4.9, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leadin
A vulnerability was identified in 9786 phpok3w up to 901d96a06809fb28b17f3a4362c59e70411c933c. Impacted is an unknown fu
A vulnerability was found in saiftheboss7 onlinemcqexam up to 0e56806132971e49721db3ef01868098c7b42ada. This vulnerabili
A vulnerability was detected in TRENDnet TEW-800MB 1.0.1.0. Affected by this vulnerability is the function sub_F934 of
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started