In Frappe ERPNext 15.57.5, the function get_rfq_containing_supplier() at erpnext/buying/doctype/request_for_quotation/re
In Frappe ERPNext 15.57.5, the function get_stock_balance_for() at erpnext/stock/doctype/stock_reconciliation/stock_reco
In Frappe ERPNext 15.57.5, the function get_blanket_orders() at erpnext/controllers/queries.py is vulnerable to SQL Inje
In Frappe ERPNext 15.57.5, the function get_material_requests_based_on_supplier() at erpnext/stock/doctype/material_requ
In the Linux kernel, the following vulnerability has been resolved: null_blk: fix poll request timeout handling When d
In the Linux kernel, the following vulnerability has been resolved: jbd2: check 'jh->b_transaction' before removing it
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: pcie: Fix integer overflow in iwl_wr
In the Linux kernel, the following vulnerability has been resolved: cgroup,freezer: hold cpu_hotplug_lock before freeze
In the Linux kernel, the following vulnerability has been resolved: scsi: ses: Fix slab-out-of-bounds in ses_intf_remov
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix hci_suspend_sync crash If hci_unreg
In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Fix leak in devfreq_dev_release() sr
In the Linux kernel, the following vulnerability has been resolved: macvlan: add forgotten nla_policy for IFLA_MACVLAN_
In the Linux kernel, the following vulnerability has been resolved: virtio-mmio: don't break lifecycle of vm_dev vm_de
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix handling of lrbp->cmd ufshcd_
In the Linux kernel, the following vulnerability has been resolved: ublk: fail to start device if queue setup is interr
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Unregister devlink params in case interfa
In the Linux kernel, the following vulnerability has been resolved: udf: Do not bother merging very long extents When
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Properly order ib_device_unalloc() to
In the Linux kernel, the following vulnerability has been resolved: xfrm: fix slab-use-after-free in decode_session6 W
In the Linux kernel, the following vulnerability has been resolved: virtio_net: Fix error unwinding of XDP initializati
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mvpp2_main: fix possible OOB write i
In the Linux kernel, the following vulnerability has been resolved: crypto: xts - Handle EBUSY correctly As it is xts
In the Linux kernel, the following vulnerability has been resolved: accel/qaic: tighten bounds checking in decode_messa
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not ignore genmask when lo
In the Linux kernel, the following vulnerability has been resolved: start_kernel: Add __no_stack_protector function att
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix disconnect vs accept race Despite commi
In the Linux kernel, the following vulnerability has been resolved: powerpc/rtas_flash: allow user copy to flash block
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Enhance the attribute size check This co
In the Linux kernel, the following vulnerability has been resolved: fs: jfs: Fix UBSAN: array-index-out-of-bounds in db
In the Linux kernel, the following vulnerability has been resolved: lib: cpu_rmap: Avoid use after free on rmap->obj ar
In the Linux kernel, the following vulnerability has been resolved: ubi: ubi_wl_put_peb: Fix infinite loop when wear-le
In the Linux kernel, the following vulnerability has been resolved: cxl/acpi: Fix a use-after-free in cxl_parse_cfmws()
In the Linux kernel, the following vulnerability has been resolved: tracing/synthetic: Fix races on freeing last_cmd C
In the Linux kernel, the following vulnerability has been resolved: x86/MCE/AMD: Use an u64 for bank_map Thee maximum
In the Linux kernel, the following vulnerability has been resolved: ext4: improve error handling from ext4_dirhash() T
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/gfx: disable gfx9 cp_ecc_error_irq only
In the Linux kernel, the following vulnerability has been resolved: soundwire: qcom: fix storing port config out-of-bou
In the Linux kernel, the following vulnerability has been resolved: ibmvnic: Do not reset dql stats on NON_FATAL err A
In the Linux kernel, the following vulnerability has been resolved: hsr: Fix uninit-value access in fill_frame_info()
In the Linux kernel, the following vulnerability has been resolved: HID: mcp-2221: prevent UAF in delayed work If the
In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Correct devm device reference for
In the Linux kernel, the following vulnerability has been resolved: scsi: iscsi: iscsi_tcp: Fix null-ptr-deref while ca
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix a use-after-free in nouveau_gem_pr
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate buffer length while parsing inde
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Validate the box size for the snooped c
In the Linux kernel, the following vulnerability has been resolved: drm/msm/hdmi: fix memory corruption with too many b
In the Linux kernel, the following vulnerability has been resolved: efi: ssdt: Don't free memory if ACPI table was load
In the Linux kernel, the following vulnerability has been resolved: kernfs: fix use-after-free in __kernfs_remove Syzk
In the Linux kernel, the following vulnerability has been resolved: ACPICA: Fix use-after-free in acpi_ut_copy_ipackage
In the Linux kernel, the following vulnerability has been resolved: scsi: libsas: Fix use-after-free bug in smp_execute
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started