Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

HIGH Severity CVEs

CVSS 7.0 – 8.9

CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption

143,102
Total
363
Known Exploited
Showing 73,421 of 143,102 total · Page 529/1469
7.0
CVE-2025-55678

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

7.8
CVE-2025-55677

Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate priv

7.0
CVE-2025-55340

Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature lo

7.8
CVE-2025-55339

Out-of-bounds read in Windows NDIS allows an authorized attacker to elevate privileges locally.

7.4
CVE-2025-55335

Use after free in Windows NTFS allows an unauthorized attacker to elevate privileges locally.

7.0
CVE-2025-55331

Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.

7.8
CVE-2025-55328

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an

7.5
CVE-2025-55326

Use after free in Connected Devices Platform Service (Cdpsvc) allows an unauthorized attacker to execute code over a net

7.3
CVE-2025-55247

Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileg

7.3
CVE-2025-55240

Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.

8.4
CVE-2025-53782

Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to ele

7.8
CVE-2025-53768

Use after free in Xbox allows an authorized attacker to elevate privileges locally.

7.0
CVE-2025-53717

Reliance on untrusted inputs in a security decision in Windows Virtualization-Based Security (VBS) Enclave allows an aut

7.8
CVE-2025-53150

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.

7.7
CVE-2025-53139

Cleartext transmission of sensitive information in Windows Hello allows an unauthorized attacker to bypass a security fe

7.8
CVE-2025-50175

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.

7.0
CVE-2025-50174

Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.

7.8
CVE-2025-50152

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

7.4
CVE-2025-48004

Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.

7.0
CVE-2025-47989

Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.

7.1
CVE-2025-37147

A Secure Boot Bypass Vulnerability exists in affected Access Points that allows an adversary to bypass the hardware root

7.2
CVE-2025-37146

A vulnerability in the web-based management interface of network access point configuration services could allow an auth

7.2
CVE-2025-37134

An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor oper

7.2
CVE-2025-37133

An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor oper

7.2
CVE-2025-37132

An arbitrary file write vulnerability exists in the web-based management interface of both the AOS-10 GW and AOS-8 Contr

7.3
CVE-2025-25004

Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

7.8
CVE-2025-24990 KEV

Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows o

7.8
CVE-2025-24052

Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows o

8.2
CVE-2025-58325

An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 t

7.8
CVE-2025-57741

An Incorrect Permission Assignment for Critical Resource vulnerability [CWE-732] in FortiClientMac 7.4.0 through 7.4.3,

7.5
CVE-2025-57740

An Heap-based Buffer Overflow vulnerability [CWE-122] in FortiOS version 7.6.2 and below, version 7.4.7 and below, versi

8.1
CVE-2025-49201

A weak authentication vulnerability in Fortinet FortiPAM 1.5.0, FortiPAM 1.4.0 through 1.4.2, FortiPAM 1.3 all versions,

7.5
CVE-2025-46774

An Improper Verification of Cryptographic Signature vulnerability [CWE-347] in FortiClient MacOS installer version 7.4.2

7.5
CVE-2025-25253

An Improper Validation of Certificate with Host Mismatch vulnerability [CWE-297] in FortiProxy version 7.6.1 and below,

7.6
CVE-2025-11577

Clevo’s UEFI firmware update packages, including B10717.exe, inadvertently contained private signing keys used for Boot

7.2
CVE-2024-50571

A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.2, FortiAnalyzer 7.4.0 through 7.

7.0
CVE-2024-48891

An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] in

7.4
CVE-2024-33507

An insufficient session expiration vulnerability [CWE-613] and an incorrect authorization vulnerability [CWE-863] in For

8.1
CVE-2025-62156

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Version

7.2
CVE-2025-5946

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Centreon Inf

7.2
CVE-2025-10985

OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a

7.2
CVE-2025-10243

OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a

7.2
CVE-2025-10242

OS command injection in the admin panel of Ivanti EPMM before version 12.6.0.2, 12.5.0.4, and 12.4.0.4 allows a remote a

7.2
CVE-2025-47856

Two improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE-78]

7.8
CVE-2025-33044

APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bou

7.3
CVE-2025-22833

APTIOV contains a vulnerability in BIOS where an attacker may cause a Buffer Copy without Checking Size of Input by loca

7.8
CVE-2025-22832

APTIOV contains a vulnerability in BIOS where an attacker may cause an Out-of-bounds Write by local. Successful exploita

7.8
CVE-2025-22831

APTIOV contains a vulnerability in BIOS where an attacker may cause an Out-of-bounds Write by local. Successful exploita

7.8
CVE-2025-9068

A security issue exists within the Rockwell Automation Driver Package x64 Microsoft Installer File (MSI) repair function

7.8
CVE-2025-9067

A security issue exists within the x86 Microsoft Installer File (MSI), installed with FTLinx. Authenticated attackers wi

Frequently Asked Questions

What does HIGH severity mean for CVEs?

CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption

How many high severity CVEs exist?

There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.

How should I prioritize high severity vulnerabilities?

HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.

Detect HIGH Vulnerabilities

CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.

Get Started