In the Linux kernel, the following vulnerability has been resolved: net: nfc: Fix use-after-free in local_cleanup() Fi
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_taprio: fix possible use-after-free
In the Linux kernel, the following vulnerability has been resolved: net: mdio: validate parameter addr in mdiobus_get_p
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Add sync after creating vram bo There
In the Linux kernel, the following vulnerability has been resolved: EDAC/qcom: Do not pass llcc_driv_data as edac_devic
In the Linux kernel, the following vulnerability has been resolved: netlink: prevent potential spectre v1 gadgets Most
In the Linux kernel, the following vulnerability has been resolved: net: fix UaF in netns ops registration error path
In the Linux kernel, the following vulnerability has been resolved: net: fix NULL pointer in skb_segment_list Commit 3
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/via: Avoid potential array out-of-bound i
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-mtrace: prevent underflow in sof_ip
In the Linux kernel, the following vulnerability has been resolved: block, bfq: fix uaf for bfqq in bic_set_bfqq() Aft
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix request ref counting during error cap
In the Linux kernel, the following vulnerability has been resolved: block: ublk: extending queue_size to fix overflow
In the Linux kernel, the following vulnerability has been resolved: scsi: iscsi_tcp: Fix UAF during logout when accessi
In the Linux kernel, the following vulnerability has been resolved: scsi: iscsi_tcp: Fix UAF during login when accessin
In the Linux kernel, the following vulnerability has been resolved: vc_screen: move load of struct vc_data pointer in v
In the Linux kernel, the following vulnerability has been resolved: mm/khugepaged: fix ->anon_vma race If an ->anon_vm
In the Linux kernel, the following vulnerability has been resolved: mm/MADV_COLLAPSE: catch !none !huge !bad pmd lookup
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Avoid potential vm use-after-free Adding
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix potential bit_17 double-free A users
In the Linux kernel, the following vulnerability has been resolved: btrfs: always report error in run_one_delayed_ref()
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix PTE marker handling in hugetlb_chan
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Prevent race during ffs_ep0_queu
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix a buffer overflow in mgmt_mesh_add()
In the Linux kernel, the following vulnerability has been resolved: dmaengine: Fix double increment of client_count in
In the Linux kernel, the following vulnerability has been resolved: ovl: Use "buf" flexible array for memcpy() destinat
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Check the count value of channel sp
In the Linux kernel, the following vulnerability has been resolved: gfs2: Always check inode size of inline inodes Che
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on i_extra_isize in is
In the Linux kernel, the following vulnerability has been resolved: can: j1939: fix errant WARN_ON_ONCE in j1939_sessio
An integer overflow in Nethermind Juno before v.12.05 within the Sierra bytecode decompression logic within the "cairo-l
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in downloadFile.cgi.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SEO Squirrly SEO P
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FolioVision Filled
Mesop is a Python-based UI framework that allows users to build web applications. A class pollution vulnerability in Mes
Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Kylin. If an attacker gets access to
An out-of-memory error in the parseABC_STRING_INFO function of libming v0.4.8 allows attackers to cause a Denial of Serv
An out-of-memory error in the parseABC_NS_SET_INFO function of libming v0.4.8 allows attackers to cause a Denial of Serv
Cross-Site Request Forgery (CSRF) vulnerability in Listings for Appfolio Listings for Appfolio listings-for-appfolio all
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kendysond Payment
In the Linux kernel, the following vulnerability has been resolved: idpf: fix checksums set in idpf_rx_rsc() idpf_rx_r
In the Linux kernel, the following vulnerability has been resolved: perf/core: Add RCU read lock protection to perf_ite
In the Linux kernel, the following vulnerability has been resolved: ovl: fix UAF in ovl_dentry_update_reval by moving d
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix the page details for the srq crea
In the Linux kernel, the following vulnerability has been resolved: net: better track kernel sockets lifetime While ke
In the Linux kernel, the following vulnerability has been resolved: ice: Fix deinitializing VF in error path If ice_en
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix vport QoS cleanup on error When enab
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free on inode when scanning ro
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix suspicious RCU usage Commit <d7416
In the Linux kernel, the following vulnerability has been resolved: mptcp: always handle address removal under msk sock
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started