In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the devic
In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the devic
In multiple locations, there is a possible way to leak audio files across user profiles due to a confused deputy. This c
A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /newrec
A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an unknown function of the file
A security vulnerability has been detected in code-projects Online Ordering System 1.0. This affects an unknown function
A weakness has been identified in code-projects Online Ordering System 1.0. The impacted element is an unknown function
A security flaw has been discovered in code-projects Online Ordering System 1.0. The affected element is an unknown func
A vulnerability was identified in code-projects Simple Shopping Cart 1.0. Impacted is an unknown function of the file /a
A vulnerability has been found in IdeaCMS up to 1.8. This affects the function whereRaw of the file app/common/logic/ind
A vulnerability was identified in itsourcecode Student Management System 1.0. This vulnerability affects unknown code of
Multi-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vuln
Race condition vulnerability in the network module. Impact: Successful exploitation of this vulnerability may affect ser
Improper Input Validation vulnerability in Infinera MTC-9 allows remote unauthenticated users to crash the service and c
Server-Side Request Forgery (SSRF) vulnerability in Infinera MTC-9 version allows remote unauthenticated users to gain
A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEX
Input verification vulnerability in the compression and decompression module. Impact: Successful exploitation of this vu
A vulnerability has been found in code-projects Simple Leave Manager 1.0. Affected by this vulnerability is an unknown f
A security flaw has been discovered in code-projects Currency Exchange System 1.0. The affected element is an unknown fu
A vulnerability was identified in code-projects Currency Exchange System 1.0. Impacted is an unknown function of the fil
A vulnerability was determined in code-projects Currency Exchange System 1.0. This issue affects some unknown processing
A vulnerability was found in code-projects Currency Exchange System 1.0. This vulnerability affects unknown code of the
A flaw has been found in projectworlds Advanced Library Management System 1.0. Affected by this issue is some unknown fu
A vulnerability was detected in projectworlds Advanced Library Management System 1.0. Affected by this vulnerability is
A security vulnerability has been detected in projectworlds Advanced Library Management System 1.0. Affected is an unkno
A weakness has been identified in Campcodes School File Management System 1.0. This impacts an unknown function of the f
In the Linux kernel, the following vulnerability has been resolved: regmap-irq: Fix out-of-bounds access when allocatin
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Handle lock during peer_id find ath1
In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: fix to do sanity check on extent cach
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix UAF in hci_disconnect_all_
In the Linux kernel, the following vulnerability has been resolved: HID: hidraw: fix data race on device refcount The
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix mapping to non-allocated addre
In the Linux kernel, the following vulnerability has been resolved: net: deal with integer overflows in kmalloc_reserve
In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Fix potential array out-of
In the Linux kernel, the following vulnerability has been resolved: vc_screen: reload load of struct vc_data pointer in
In the Linux kernel, the following vulnerability has been resolved: mm: hugetlb: fix UAF in hugetlb_handle_userfault T
In the Linux kernel, the following vulnerability has been resolved: fpga: prevent integer overflow in dfl_feature_ioctl
In the Linux kernel, the following vulnerability has been resolved: NFSD: Define actions for the new time_deleg FATTR4
In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix crash in nfsd4_read_release() When traci
In the Linux kernel, the following vulnerability has been resolved: fbcon: Set fb_display[i]->mode to NULL when the mod
In the Linux kernel, the following vulnerability has been resolved: fbdev: bitblit: bound-check glyph index in bit_putc
In the Linux kernel, the following vulnerability has been resolved: bpf: Sync pending IRQ work before freeing ring buff
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix race in hci_cmd_sync_deque
In the Linux kernel, the following vulnerability has been resolved: regmap: slimbus: fix bus_context pointer in regmap
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_conn_free BUG: KASA
In the Linux kernel, the following vulnerability has been resolved: exfat: validate cluster allocation bits of the allo
In the Linux kernel, the following vulnerability has been resolved: orangefs: fix xattr related buffer overflow... Wil
In the Linux kernel, the following vulnerability has been resolved: fbdev: Add bounds checking in bit_putcs to fix vmal
In the Linux kernel, the following vulnerability has been resolved: btrfs: ensure no dirty metadata is written back for
In the Linux kernel, the following vulnerability has been resolved: media: videobuf2: forbid remove_bufs when legacy fi
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started