In the Linux kernel, the following vulnerability has been resolved: x86/cpu: Avoid running off the end of an AMD erratu
In the Linux kernel, the following vulnerability has been resolved: net: ppp: Add bound checking for skb data on ppp_sy
In the Linux kernel, the following vulnerability has been resolved: jfs: Prevent copying of nlink with value 0 from dis
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-bounds access in f2fs_tru
In the Linux kernel, the following vulnerability has been resolved: ext4: ignore xattrs past end Once inside 'ext4_xat
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add a check to handle OOB in sfr
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add check to handle incorrect qu
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: add check to avoid out of
In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: refactor hfi packet parsi
In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Fix accessing freed irq affinity_hint
In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Fix race between unprepare and queu
In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller d
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer in can_accept_new_subflow
In the Linux kernel, the following vulnerability has been resolved: sctp: detect and prevent references to a freed tran
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to prote
A vulnerability, which was classified as critical, was found in PHPGurukul Employee Record Management System 1.3. Affect
A vulnerability classified as critical was found in PCMan FTP Server up to 2.0.7. This vulnerability affects unknown cod
A vulnerability classified as critical has been found in PCMan FTP Server up to 2.0.7. This affects an unknown part of t
A vulnerability was found in PCMan FTP Server up to 2.0.7. It has been rated as critical. Affected by this issue is some
A vulnerability was found in PCMan FTP Server up to 2.0.7. It has been declared as critical. Affected by this vulnerabil
A vulnerability was found in PCMan FTP Server up to 2.0.7. It has been classified as critical. Affected is an unknown fu
A vulnerability classified as critical was found in PHPGurukul Park Ticketing Management System 2.0. Affected by this vu
A vulnerability classified as critical has been found in PHPGurukul Online Birth Certificate System 1.0. Affected is an
A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been rated as critical. This issue a
A vulnerability was found in Netgear EX6200 1.0.3.94. It has been declared as critical. This vulnerability affects the f
The Projectopia – WordPress Project Management plugin for WordPress is vulnerable to unauthorized modification of data t
A vulnerability was found in Netgear EX6200 1.0.3.94. It has been classified as critical. This affects the function sub_
A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function
The NewsBlogger theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.
The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the new
The Page View Count plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of
A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this vulnerability is
A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. Affected is the function sub_41
A vulnerability, which was classified as critical, has been found in Netgear EX6200 1.0.3.94. This issue affects the fun
A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. This vulnerability affects the fun
A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. This affects the function sub_3
A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affected by this issue is
Insufficient URI protocol whitelist in HCL Domino Volt and Domino Leap allow script injection through query parameters.
A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulnerability is the funct
Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent att
Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerability. This vulnerability allows local attack
Tesla Model S oFono AT Command Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local
Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability allows local attackers to es
Tesla Model S Iris Modem QCMAP_ConnectionManager Improper Input Validation Sandbox Escape Vulnerability. This vulnerabil
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface, wh
: Modification of Assumed-Immutable Data (MAID) vulnerability in ABB ANC, ABB ANC-L, ABB ANC-mini.This issue affects ANC
A security issue has been discovered in Couchbase Server before 7.6.4 and fixed in v.7.6.4 and v.7.2.7 for Windows that
SourceCodester Simple Barangay Management System v1.0 has a SQL injection vulnerability in /barangay_management/admin/?p
SourceCodester Simple Barangay Management System v1.0 has a SQL injection vulnerability in /barangay_management/admin/?p
Improper verification of cryptographic signature in Microsoft Azure Functions allows an authorized attacker to execute c
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started