A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unk
A vulnerability has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function formeditFileName of the fil
A vulnerability was identified in Tenda CH22 1.0.0.1. Affected by this vulnerability is the function formdelFileName of
A vulnerability was identified in Surbowl dormitory-management-php 1.0. This affects an unknown part of the file login.p
The WooCommerce OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to authentication bypas
The Order Tip for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Improper Input Validation in all ver
A vulnerability was found in Mechrevo Control Center GX V2 5.56.51.48. Affected by this vulnerability is an unknown func
A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of
A vulnerability was determined in code-projects Online Medicine Guide 1.0. Affected is an unknown function of the file /
A vulnerability was found in SourceCodester COVID 19 Testing Management System 1.0. This issue affects some unknown proc
A vulnerability has been found in SourceCodester COVID 19 Testing Management System 1.0. This vulnerability affects unkn
A vulnerability was identified in SourceCodester COVID 19 Testing Management System 1.0. This affects an unknown part of
A vulnerability was determined in SourceCodester COVID 19 Testing Management System 1.0. Affected by this issue is some
A vulnerability was found in SourceCodester COVID 19 Testing Management System 1.0. Affected by this vulnerability is an
A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1.0. Affected is an unknown func
A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unk
A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects
A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech System
Cross-Site Request Forgery (CSRF) vulnerability in ApusTheme Findgo findgo allows Cross Site Request Forgery.This issue
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in primersoftware Pri
Cross-Site Request Forgery (CSRF) vulnerability in josepsitjar StoryMap wp-storymap allows SQL Injection.This issue affe
Cross-Site Request Forgery (CSRF) vulnerability in lisensee NetInsight Analytics Implementation Plugin netinsight-analyt
A vulnerability has been found in SourceCodester Cashier Queuing System 1.0. Affected is an unknown function of the file
A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unk
An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v.2018-09-12 allowing attackers to
A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects
A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of
A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1.0. Affected by this issue is s
A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. Affected by this vulnerabil
@std/toml is the Deno Standard Library. Prior to version 1.0.9, an attacker can pollute the prototype chain in Node.js r
A vulnerability in the web services interface of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Ci
A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA Software, and Secure FT
A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar
A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar
A vulnerability in the management and VPN web servers of Cisco Secure Firewall ASA Software and Secure FTD Software coul
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Fi
A vulnerability in the RADIUS proxy feature for the IPsec VPN feature of Cisco Secure Firewall Adaptive Security Applian
A vulnerability in the packet inspection functionality of the Snort 3 Detection Engine of Cisco Secure Firewall Threat D
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could al
A vulnerability in the function that performs IPv4 and IPv6 Network Address Translation (NAT) DNS inspection for Cisco S
A vulnerability in the certificate processing of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Ci
A vulnerability in the management and VPN web servers of the Remote Access SSL VPN feature of Cisco Secure Firewall ASA
A vulnerability in the TLS 1.3 implementation for a specific cipher for Cisco Secure Firewall Adaptive Security Applianc
An issue was discovered in Malwarebytes before 4.6.14.326 and before 5.1.5.116 (and Nebula 2020-10-21 and later). Out-of
A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. Affected is an unknown func
A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unknown
Youki is a container runtime written in Rust. Prior to version 0.5.5, if /proc and /sys in the rootfs are symbolic links
Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: be
Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started