Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate priv
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature lo
Out-of-bounds read in Windows NDIS allows an authorized attacker to elevate privileges locally.
Use after free in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an
Use after free in Connected Devices Platform Service (Cdpsvc) allows an unauthorized attacker to execute code over a net
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileg
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.
Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to ele
Use after free in Xbox allows an authorized attacker to elevate privileges locally.
Reliance on untrusted inputs in a security decision in Windows Virtualization-Based Security (VBS) Enclave allows an aut
Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
Cleartext transmission of sensitive information in Windows Hello allows an unauthorized attacker to bypass a security fe
Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
A Secure Boot Bypass Vulnerability exists in affected Access Points that allows an adversary to bypass the hardware root
A vulnerability in the web-based management interface of network access point configuration services could allow an auth
An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor oper
An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor oper
An arbitrary file write vulnerability exists in the web-based management interface of both the AOS-10 GW and AOS-8 Contr
Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows o
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows o
An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 t
An Incorrect Permission Assignment for Critical Resource vulnerability [CWE-732] in FortiClientMac 7.4.0 through 7.4.3,
An Heap-based Buffer Overflow vulnerability [CWE-122] in FortiOS version 7.6.2 and below, version 7.4.7 and below, versi
A weak authentication vulnerability in Fortinet FortiPAM 1.5.0, FortiPAM 1.4.0 through 1.4.2, FortiPAM 1.3 all versions,
An Improper Verification of Cryptographic Signature vulnerability [CWE-347] in FortiClient MacOS installer version 7.4.2
An Improper Validation of Certificate with Host Mismatch vulnerability [CWE-297] in FortiProxy version 7.6.1 and below,
Clevo’s UEFI firmware update packages, including B10717.exe, inadvertently contained private signing keys used for Boot
A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.2, FortiAnalyzer 7.4.0 through 7.
An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] in
An insufficient session expiration vulnerability [CWE-613] and an incorrect authorization vulnerability [CWE-863] in For
Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Version
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Centreon Inf
OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a
OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a
OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a
Two improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE-78]
APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bou
APTIOV contains a vulnerability in BIOS where an attacker may cause a Buffer Copy without Checking Size of Input by loca
APTIOV contains a vulnerability in BIOS where an attacker may cause an Out-of-bounds Write by local. Successful exploita
APTIOV contains a vulnerability in BIOS where an attacker may cause an Out-of-bounds Write by local. Successful exploita
A security issue exists within the Rockwell Automation Driver Package x64 Microsoft Installer File (MSI) repair function
A security issue exists within the x86 Microsoft Installer File (MSI), installed with FTLinx. Authenticated attackers wi
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started