In the Linux kernel, the following vulnerability has been resolved: drm/gem: Acquire references on GEM handles for fram
In the Linux kernel, the following vulnerability has been resolved: mm/rmap: fix potential out-of-bounds page table acc
In the Linux kernel, the following vulnerability has been resolved: clk: imx: Fix an out-of-bounds access in dispmix_cs
In the Linux kernel, the following vulnerability has been resolved: md/raid1: Fix stack memory use after return in raid
In the Linux kernel, the following vulnerability has been resolved: nbd: fix uaf in nbd_genl_connect() error path Ther
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix race between DIM disable and net_dim
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential use-after-free in oplock/lease
An authenticated remote code execution vulnerability exists in GetSimpleCMS version 3.2.1. The application’s upload.php
A vulnerability classified as critical has been found in Tenda AC20 up to 16.03.08.12. Affected is an unknown function o
A vulnerability was found in D-Link DIR-513 1.0. It has been rated as critical. This issue affects the function formLang
A Cross-Site Scripting (XSS) vulnerability exists in the OPAC search feature of Koha Library Management System v24.05. U
Unitree Go1 <= Go1_2022_05_11 is vulnerable to Insecure Permissions as the firmware update functionality (via Wi-Fi/Ethe
In the Linux kernel, the following vulnerability has been resolved: riscv: vector: Fix context save/restore with xthead
In the Linux kernel, the following vulnerability has been resolved: Revert "riscv: Define TASK_SIZE_MAX for __access_ok
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - check record size in ims_pcu_flash
In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: check msg length in SMBUS block read F
In the Linux kernel, the following vulnerability has been resolved: perf: Fix sample vs do_exit() Baisheng Gao reporte
In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd9375: Fix double free of regulator
In the Linux kernel, the following vulnerability has been resolved: net: lan743x: Modify the EEPROM and OTP size for PC
In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd: pmf: Use device managed allocatio
An issue in ETSI Open-Source MANO (OSM) 14.0.x before 14.0.3, 15.0.x before 15.0.2, 16.0.0, and 17.0.0 allows a remote a
In the Linux kernel, the following vulnerability has been resolved: NFC: nci: uart: Set tty->disc_data only in success
In the Linux kernel, the following vulnerability has been resolved: Squashfs: check return result of sb_min_blocksize
In the Linux kernel, the following vulnerability has been resolved: virtio-net: xsk: rx: fix the frame's length check
In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Fix WMI data block r
In the Linux kernel, the following vulnerability has been resolved: genirq/irq_sim: Initialize work context pointers pr
In the Linux kernel, the following vulnerability has been resolved: nvmet: fix memory leak of bio integrity If nvmet r
In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: Clear the vmci transport packet properl
In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map fail
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix NULL pointer dereference in core_
In the Linux kernel, the following vulnerability has been resolved: spi: spi-qpic-snand: reallocate BAM transactions U
In the Linux kernel, the following vulnerability has been resolved: fs: export anon_inode_make_secure_inode() and fix s
In the Linux kernel, the following vulnerability has been resolved: regulator: gpio: Fix the out-of-bounds access to dr
In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix memory corruption of input_ha
In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Fix timeline left held on VMA alloc er
In the Linux kernel, the following vulnerability has been resolved: ACPICA: Refuse to evaluate a method if arguments ar
In the Linux kernel, the following vulnerability has been resolved: net: usb: lan78xx: fix WARN in __netif_napi_del_loc
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix iteration of extrefs during log replay
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix warning when reconnecting channel
In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix slab use-after-free bug in ap
In the Linux kernel, the following vulnerability has been resolved: rose: fix dangling neighbour pointers in rose_rt_de
In the Linux kernel, the following vulnerability has been resolved: virtio-net: ensure the received length does not exc
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix unsafe xarray access in implicit ODP
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Check availability of workqueue al
In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Avoid overflow with array index Th
In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Check validity of "num_cpu" from us
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check dce_hwseq before dereferenci
In the Linux kernel, the following vulnerability has been resolved: fuse: fix runtime warning on truncate_folio_batch_e
NULL Pointer Dereference in µD3TN via non-singleton destination Endpoint Identifier allows remote attacker to reliably c
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started