In the Linux kernel, the following vulnerability has been resolved: maple_tree: fix potential out-of-bounds access in m
In the Linux kernel, the following vulnerability has been resolved: erofs: stop parsing non-compact HEAD index if clust
In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: avoid WARN_ON() for sanity check, use
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Add validation for lmac type Upon ph
In the Linux kernel, the following vulnerability has been resolved: fs: drop peer group ids under namespace lock When
In the Linux kernel, the following vulnerability has been resolved: fs/jfs: prevent double-free in dbUnmount() after fa
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Return error for inconsistent extended at
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to drop all dirty pages during umount() i
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix incorrect splitting in btrfs_drop_extent
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix race condition in hidp_session_threa
In the Linux kernel, the following vulnerability has been resolved: drm/fbdev-generic: prohibit potential out-of-bounds
In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: dropping parent refcount after pd_free_
In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: fsl_upm: Fix an off-by one test in fu
In the Linux kernel, the following vulnerability has been resolved: scsi: qedi: Fix use after free bug in qedi_remove()
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix gvt debugfs destroy When gvt deb
In the Linux kernel, the following vulnerability has been resolved: soundwire: fix enumeration completion The soundwir
In the Linux kernel, the following vulnerability has been resolved: powerpc/iommu: Fix notifiers being shared by PCI an
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pv: fix index value of replaced ASCE Th
In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: hold queue_lock when removing blkg->q_n
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer dereference on fastopen ear
In the Linux kernel, the following vulnerability has been resolved: phy: tegra: xusb: Clear the driver reference in usb
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq27xxx: Fix poll_interval handling
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix memory leak if ntfs_read_mft failed
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Use correct encap attribute during inval
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: use work to update rate to avoid RCU w
In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix to call f2fs_wait_on_page_write
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race when deleting free space root from
In the Linux kernel, the following vulnerability has been resolved: net: dsa: realtek: fix out-of-bounds access The pr
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix OOB read in indx_insert_into_buffer
In the Linux kernel, the following vulnerability has been resolved: ext4: fix invalid free tracking in ext4_xattr_move_
In the Linux kernel, the following vulnerability has been resolved: iommufd: Set end correctly when doing batch carry
In the Linux kernel, the following vulnerability has been resolved: ubifs: Fix memleak when insert_old_idx() failed Fo
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Prevent handling any completions afte
In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Handle EBUSY correctly As it is es
In the Linux kernel, the following vulnerability has been resolved: iommufd: Do not add the same hwpt to the ioas->hwpt
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPJobBoard allows
In the Linux kernel, the following vulnerability has been resolved: net: fix UAF issue in nfqnl_nf_hook_drop() when ops
In the Linux kernel, the following vulnerability has been resolved: staging: vt6655: fix potential memory leak In func
In the Linux kernel, the following vulnerability has been resolved: media: camss: Clean up received buffers on failed s
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix mempool alloc size Convert the max s
In the Linux kernel, the following vulnerability has been resolved: udf: Avoid double brelse() in udf_rename() syzbot
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on summary info As We
In the Linux kernel, the following vulnerability has been resolved: md/raid5: Remove unnecessary bio_put() in raid5_rea
In the Linux kernel, the following vulnerability has been resolved: drm/panel/panel-sitronix-st7701: Remove panel on DS
In the Linux kernel, the following vulnerability has been resolved: hfs: Fix OOB Write in hfs_asc2mac Syzbot reported
In the Linux kernel, the following vulnerability has been resolved: erofs: validate the extent length for uncompressed
In the Linux kernel, the following vulnerability has been resolved: staging: media: tegra-video: fix device_node use af
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate index root when initialize NTFS
In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix immediate work request flush to compl
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8192u: Fix use after free in ieee80211_
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started