A vulnerability classified as problematic was found in Zebra ZTC GK420d 1.0. This vulnerability affects unknown code of
A vulnerability classified as problematic has been found in fridgecow smartalarm 1.8.1 on Android. This affects an unkno
A vulnerability was found in sequentech admin-console up to 6.1.7 and classified as problematic. Affected by this issue
In flashc, there is a possible system crash due to an uncaught exception. This could lead to local denial of service wit
In audio, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to loca
A vulnerability has been found in wp-file-upload Plugin up to 2.4.3 on WordPress and classified as problematic. Affected
IBM CICS Transaction Gateway for Multiplatforms 9.2 and 9.3 could disclose sensitive path information to an attacker tha
A vulnerability was found in DiscuzX up to 3.4-20200818. It has been classified as problematic. Affected is the function
A vulnerability was found in Zimbra zm-admin-ajax up to 8.8.1. It has been classified as problematic. This affects the f
A vulnerability was found in chrisy TFO Graphviz Plugin up to 1.9 on WordPress and classified as problematic. Affected b
A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. It has been classified as problematic. Af
A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0 and classified as problematic. This issue
A vulnerability was found in EasyCorp EasyAdmin up to 4.8.9. It has been declared as problematic. Affected by this vulne
Authorization Bypass Through User-Controlled Key vulnerability in Molongui.This issue affects Molongui: from n/a through
The console may experience a service interruption when processing file names with invalid characters.
An administrative user of WebReports may perform a Cross Site Scripting (XSS) and/or Man in the Middle (MITM) exploit th
An administrative user of WebReports may perform a Server Side Request Forgery (SSRF) exploit through SMTP configuration
A vulnerability was found in code-projects Online Book System 1.0 and classified as problematic. Affected by this issue
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been rated as problem
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been declared as prob
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been classified as pr
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to othe
Ampache is a web based audio/video streaming application and file manager. Stored Cross Site Scripting (XSS) vulnerabili
When a protocol selection parameter option disables all protocols without adding any then the default set of protocols w
TeX Live 944e257 allows a NULL pointer dereference in texk/web2c/pdftexdir/tounicode.c. NOTE: this is disputed because i
A vulnerability classified as problematic was found in Campcodes Online Examination System 1.0. Affected by this vulnera
A vulnerability classified as problematic has been found in Campcodes Online Examination System 1.0. Affected is an unkn
A vulnerability, which was classified as problematic, has been found in SourceCodester Todo List in Kanban Board 1.0. Af
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by negative object number in indirect reference in the inp
Under certain conditions, RSA operations performed by IBM Common Cryptographic Architecture (CCA) 7.0.0 through 7.5.36 m
Nautobot is a Network Source of Truth and Network Automation Platform. A number of Nautobot URL endpoints were found to
phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. There is a Path T
In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.
A vulnerability was found in AwesomestCode LiveBot. It has been classified as problematic. Affected is the function pars
A vulnerability classified as problematic was found in Campcodes Online Shopping System 1.0. This vulnerability affects
Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/categories/delete/2.
Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recove
IBM Security Verify Directory 10.0.0 could allow a remote attacker to obtain sensitive information when a detailed techn
Invocation of the sqlplus command with sensitive information in the command line in the mk_oracle Checkmk agent plugin b
A vulnerability was found in Campcodes Online Marriage Registration System 1.0. It has been declared as problematic. Thi
A vulnerability was found in Campcodes Online Marriage Registration System 1.0. It has been classified as problematic. T
A vulnerability was found in Campcodes Online Marriage Registration System 1.0 and classified as problematic. Affected b
A vulnerability, which was classified as problematic, has been found in Campcodes Online Marriage Registration System 1.
A vulnerability classified as problematic has been found in Campcodes Online Marriage Registration System 1.0. This affe
A vulnerability classified as problematic was found in Campcodes Complete Online DJ Booking System 1.0. Affected by this
A vulnerability classified as problematic has been found in Campcodes Complete Online DJ Booking System 1.0. Affected is
A vulnerability was found in Campcodes Complete Online DJ Booking System 1.0. It has been rated as problematic. This iss
A vulnerability was found in Campcodes Complete Online DJ Booking System 1.0. It has been declared as problematic. This
A vulnerability was found in Campcodes Complete Online DJ Booking System 1.0. It has been classified as problematic. Thi
A vulnerability was found in Campcodes Complete Online DJ Booking System 1.0 and classified as problematic. Affected by
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started