A heap-based buffer overflow vulnerability exists in VS6Sim.exe contained in V-SFT and TELLUS provided by FUJI ELECTRIC
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the vid
Memory corruption while processing packet data with exceedingly large packet.
Transient DOS while handling beacon frames with invalid IE header length.
Memory corruption during sub-system restart while processing clean-up to free up resources.
Memory corruption during the image encoding process.
Memory corruption while processing data packets in diag received from Unix clients.
Memory corruption while processing command message in WLAN Host.
Memory corruption while processing event close when client process terminates abruptly.
Memory corruption while processing the TESTPATTERNCONFIG escape path.
Memory corruption while processing multiple simultaneous escape calls.
Memory corruption while executing timestamp video decode command with large input values.
Memory corruption while processing manipulated payload in video firmware.
Memory corruption while processing video packets received from video firmware.
Memory corruption while processing a private escape command in an event trigger.
Transient DOS while processing received beacon frame.
Transient DOS may occur while processing malformed length field in SSID IEs.
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests
Memory corruption while copying the result to the transmission queue which is shared between the virtual machine and the
Memory corruption while copying the result to the transmission queue in EMAC.
Memory corruption while retrieving the CBOR data from TA.
Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.
Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
A vulnerability was found in PHPGurukul Hospital Management System 1.0. It has been declared as critical. Affected by th
Improper error handling vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows
A vulnerability was found in code-projects Library System 1.0 and classified as critical. This issue affects some unknow
A vulnerability has been identified in RUGGEDCOM RMC8388 V5.X (All versions < V5.10.0), RUGGEDCOM RMC8388NC V5.X (All ve
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly valid
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly valid
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vulnerable to SQL injec
A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application allows low-pr
Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 allows local attacke
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connect
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connect
A vulnerability has been identified in RUGGEDCOM i800 (All versions), RUGGEDCOM i801 (All versions), RUGGEDCOM i802 (All
A vulnerability has been found in code-projects Library System 1.0 and classified as critical. This vulnerability affect
A vulnerability, which was classified as critical, was found in code-projects Crime Reporting System 1.0. This affects a
The The Woodmart theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including
A vulnerability, which was classified as critical, has been found in code-projects Crime Reporting System 1.0. Affected
A vulnerability classified as critical was found in code-projects Crime Reporting System 1.0. Affected by this vulnerabi
A vulnerability classified as critical has been found in code-projects Crime Reporting System 1.0. Affected is an unknow
A vulnerability was found in code-projects Crime Reporting System 1.0. It has been rated as critical. This issue affects
In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs.
The WoodMart plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.2.3 via
A low privileged remote attacker with file access can replace a critical file or folder used by the service security-pro
A low privileged remote attacker with file access can replace a critical file used by the arp-preinit script to get read
A low privileged remote attacker with file access can replace a critical file used by the watchdog to get read, write an
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started