In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: fix stuck flows on cleanup du
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix space cache corruption and potential dou
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix locking in rxrpc's sendmsg Fix three bu
In the Linux kernel, the following vulnerability has been resolved: net: lantiq_xrx200: restore buffer if memory alloca
In the Linux kernel, the following vulnerability has been resolved: writeback: avoid use-after-free after removing devi
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: avoid corrupting page->mapping in huget
In the Linux kernel, the following vulnerability has been resolved: s390: fix double free of GS and RI CBs on fork() fa
In the Linux kernel, the following vulnerability has been resolved: bpf: Don't use tnum_range on array range checking f
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: Fix use-after-free Read in usb_udc_uev
In the Linux kernel, the following vulnerability has been resolved: net: fix refcount bug in sk_psock_get (2) Syzkalle
In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix NULL pointer dereference in is_ftrace_t
In the Linux kernel, the following vulnerability has been resolved: bpf: Don't redirect packets with invalid pkt_len S
In the Linux kernel, the following vulnerability has been resolved: HID: nintendo: fix rumble worker null pointer deref
In the Linux kernel, the following vulnerability has been resolved: xsk: Fix corrupted packets for XDP_SHARED_UMEM Fix
In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix kernel BUG in purge_effective_prog
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: clear optc underflow before turn o
In the Linux kernel, the following vulnerability has been resolved: ieee802154/adf7242: defer destroy_workqueue call T
In the Linux kernel, the following vulnerability has been resolved: drm/i915/ttm: fix CCS handling Crucible + recent M
In the Linux kernel, the following vulnerability has been resolved: bpf: Do mark_chain_precision for ARG_CONST_ALLOC_SI
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8712: fix use after free bugs _Read/Wr
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix memory corruption on probe Add
In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Fix use-after-free during unregist
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix memory corruption on open The p
In the Linux kernel, the following vulnerability has been resolved: vt: Clear selection before changing the font When
In the Linux kernel, the following vulnerability has been resolved: clk: bcm: rpi: Prevent out-of-bounds access The wh
In the Linux kernel, the following vulnerability has been resolved: hwmon: (gpio-fan) Fix array out of bounds access T
In the Linux kernel, the following vulnerability has been resolved: Revert "usb: typec: ucsi: add a common function ucs
In the Linux kernel, the following vulnerability has been resolved: binder: fix UAF of ref->proc caused by race conditi
In the Linux kernel, the following vulnerability has been resolved: dma-buf/dma-resv: check if the new fence is really
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Fix UAF in ieee80211_scan_rx() iee
The CSV Me plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the
In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write I
In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept
In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS lay
In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflo
In the Linux kernel, the following vulnerability has been resolved: alloc_tag: allocate percpu counters for module tags
In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex Th
In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Fix double free that c
In the Linux kernel, the following vulnerability has been resolved: crypto: lzo - Fix compression buffer overrun Unlik
In the Linux kernel, the following vulnerability has been resolved: orangefs: Do not truncate file size 'len' is used
In the Linux kernel, the following vulnerability has been resolved: virtio: break and reset virtio devices on device_sh
In the Linux kernel, the following vulnerability has been resolved: genirq/msi: Store the IOMMU IOVA directly in msi_de
In the Linux kernel, the following vulnerability has been resolved: bpf: copy_verifier_state() should copy 'loop_entry'
In the Linux kernel, the following vulnerability has been resolved: __legitimize_mnt(): check for MNT_SYNC_UMOUNT shoul
In the Linux kernel, the following vulnerability has been resolved: espintcp: fix skb leaks A few error paths are miss
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda: Fix UAF when reloading modul
In the Linux kernel, the following vulnerability has been resolved: net/tipc: fix slab-use-after-free Read in tipc_aead
In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix use-after-free in cifs_fill_dirent
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started