A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected is an
A vulnerability, which was classified as critical, has been found in DrayTek Vigor2960 and Vigor300B 1.5.1.3/1.5.1.4. Th
The Four-Faith router models F3x24 and F3x36 are affected by an operating system (OS) command injection vulnerability. A
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix UAF via mismatching bpf_prog/attachment RC
In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: Fix UAF in blkcg_unpin_online() blkcg_
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Remove cache tags before disabling ATS
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix race between element replace and
In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: fix NL80211_ATTR_MLO_LINK_ID off-by-
In the Linux kernel, the following vulnerability has been resolved: acpi: nfit: vmalloc-out-of-bounds Read in acpi_nfit
In the Linux kernel, the following vulnerability has been resolved: net: defer final 'struct net' free in netns dismant
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not defer rule destruction
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix using rcu_read_(un)lock w
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: avoid UAF in btmtk_process_coredu
In the Linux kernel, the following vulnerability has been resolved: drm/xe/reg_sr: Remove register pool That pool impl
In the Linux kernel, the following vulnerability has been resolved: can: hi311x: hi3110_can_ist(): fix potential use-af
In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: fix LED ID check in led_tg_che
In the Linux kernel, the following vulnerability has been resolved: net/ipv6: release expired exception dst cached in s
In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free of kernel socket in cleanu
In the Linux kernel, the following vulnerability has been resolved: net/smc: initialize close_work early to avoid warni
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: incorrect percpu area handlin
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Hold module reference while reque
In the Linux kernel, the following vulnerability has been resolved: net: avoid potential UAF in default_operstate() sy
In the Linux kernel, the following vulnerability has been resolved: tcp_bpf: Fix the sk_mem_uncharge logic in tcp_bpf_s
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix the memleak while create new ctrl fai
In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Fix slab-use-after-free read in sg_releas
In the Linux kernel, the following vulnerability has been resolved: LoongArch: Add architecture specific huge_pte_clear
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Out-of-Bounds Read in ksmbd_vfs_stream_r
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Out-of-Bounds Write in ksmbd_vfs_stream_
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix out_fput in iommufd_fault_alloc() As
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential out-of-bounds memory access i
In the Linux kernel, the following vulnerability has been resolved: drm/dp_mst: Fix MST sideband message body length ch
In the Linux kernel, the following vulnerability has been resolved: bpf: fix OOB devmap writes when deleting elements
In the Linux kernel, the following vulnerability has been resolved: xsk: fix OOB map writes when deleting elements Jor
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: use ieee80211_purge_tx_queue() to purg
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix out-of-bounds access in 'dcn21
In the Linux kernel, the following vulnerability has been resolved: af_packet: avoid erroring out after sock_init_data(
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: do not leave dangling sk pointer
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: avoid leaving dangling sk pointe
In the Linux kernel, the following vulnerability has been resolved: net: af_can: do not leave a dangling sk pointer in
In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: do not leave a dangling sk pointer
In the Linux kernel, the following vulnerability has been resolved: net: inet: do not leave a dangling sk pointer in in
In the Linux kernel, the following vulnerability has been resolved: net: inet6: do not leave a dangling sk pointer in i
In the Linux kernel, the following vulnerability has been resolved: jfs: array-index-out-of-bounds fix in dtReadFirst
In the Linux kernel, the following vulnerability has been resolved: jfs: fix shift-out-of-bounds in dbSplit When dmt_b
In the Linux kernel, the following vulnerability has been resolved: jfs: fix array-index-out-of-bounds in jfs_readdir
In the Linux kernel, the following vulnerability has been resolved: jfs: add a check to prevent array-index-out-of-boun
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Use disable_delayed_work_sync
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix not checking skb length on
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free in btrfs_encoded_read_end
In the Linux kernel, the following vulnerability has been resolved: btrfs: ref-verify: fix use-after-free after invalid
Frequently Asked Questions
What does HIGH severity mean for CVEs?
CVSS 7.0–8.9 — serious vulnerabilities that can lead to significant data exposure, privilege escalation, or service disruption
How many high severity CVEs exist?
There are 143,102 CVE records rated HIGH in our database. Of these, 363 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize high severity vulnerabilities?
HIGH severity vulnerabilities should be patched immediately, especially if they are in the CISA KEV catalog or have a high EPSS score. Use CyberStrike to automatically detect and prioritize these vulnerabilities across your infrastructure.
Detect HIGH Vulnerabilities
CyberStrike scans your infrastructure and detects high severity vulnerabilities in real time.
Get Started