A vulnerability was found in SourceCodester CRUD without Page Reload 1.0. It has been rated as problematic. Affected by
A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform exists due to missing a s
A vulnerability classified as problematic has been found in Armcode AlienIP 2.41. Affected is an unknown function of the
A vulnerability was found in Navicat 12.0.29. It has been rated as problematic. This issue affects some unknown processi
A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic. Affected by this issue is some
A vulnerability, which was classified as problematic, was found in Rizone Soft Notepad3 1.0.2.350. Affected is an unknow
A vulnerability, which was classified as problematic, has been found in Munsoft Easy Outlook Express Recovery 2.0. This
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. When calls to external contracts are made,
A vulnerability classified as problematic was found in Munsoft Easy Archive Recovery 2.0. This vulnerability affects unk
A vulnerability classified as problematic has been found in Nsasoft NBMonitor Network Bandwidth Monitor 1.6.5.0. This af
An unchecked return value vulnerability has been reported to affect several QNAP operating system versions. If exploited
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver
A vulnerability was found in Nsasoft Network Sleuth 3.0.0.0. It has been rated as problematic. Affected by this issue is
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause heap overflow through integer overflow.
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause heap overflow through integer overflow.
in OpenHarmony v3.2.4 and prior versions allow a local attacker causes information leak through out-of-bounds Read.
in OpenHarmony v3.2.4 and prior versions allow a local attacker causes information leak through out-of-bounds Read.
IBM Storage Ceph 5.3z1, 5.3z5, and 6.1z1 could allow an authenticated user on the network to cause a denial of service f
IBM PowerSC 1.3, 2.0, and 2.1 may allow a remote attacker to view session identifiers passed via URL query strings. IBM
In Helix Sync versions prior to 2024.1, a local command injection was identified. Reported by Bryan Riggins.
Bref enable serverless PHP on AWS Lambda. When Bref is used with the Event-Driven Function runtime and the handler is a
A vulnerability was found in CodeAstro Real Estate Management System 1.0. It has been rated as problematic. Affected by
Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with t
A vulnerability was found in Rebuild up to 3.5.5. It has been classified as problematic. Affected is the function getFil
In Spring Cloud Contract, versions 4.1.x prior to 4.1.1, versions 4.0.x prior to 4.0.5, and versions 3.1.x prior to 3.1.
TablePress is a table plugin for Wordpress. For importing tables, TablePress makes external HTTP requests based on a URL
vantage6-UI is the User Interface for vantage6. The docker image used to run the UI leaks the nginx version. To mitigate
The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Mul
The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Mul
A vulnerability was found in CodeAstro Expense Management System 1.0. It has been declared as problematic. This vulnerab
A vulnerability was found in Cogites eReserv 7.7.58. It has been classified as problematic. This affects an unknown part
Use After Free vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (bluetooth modules) allows Local Execution
A vulnerability was found in Cogites eReserv 7.7.58 and classified as problematic. Affected by this issue is some unknow
A vulnerability has been found in SourceCodester Facebook News Feed Like 1.0 and classified as problematic. Affected by
A vulnerability was found in Cogites eReserv 7.7.58 and classified as problematic. This issue affects some unknown proce
A vulnerability has been found in SourceCodester Facebook News Feed Like 1.0 and classified as problematic. This vulnera
A vulnerability, which was classified as problematic, was found in CodeAstro Simple Student Result Management System 5.6
A vulnerability classified as problematic was found in Rebuild up to 3.5.5. Affected by this vulnerability is the functi
A vulnerability classified as problematic has been found in PbootCMS 3.2.5-20230421. Affected is an unknown function of
In cases where a multi-tenant stack user is operating Foundry’s Linter service, and the user changes a group name from t
A vulnerability classified as problematic has been found in SourceCodester Employee Management System 1.0. This affects
Improper Input Validation vulnerability in the upload functionality for user avatars allows functionality misuse due to
Notion through 3.1.0 on macOS might allow code execution because of RunAsNode and enableNodeClilnspectArguments. NOTE: t
A vulnerability was found in CodeAstro Stock Management System 1.0 and classified as problematic. This issue affects som
** DISPUTED ** A vulnerability, which was classified as problematic, has been found in NetBox up to 3.7.0. This issue af
A vulnerability was found in Totolink T8 4.1.5cu.833_20220905. It has been rated as problematic. Affected by this issue
A vulnerability was found in Totolink N350RT 9.3.5u.6255. It has been declared as problematic. Affected by this vulnerab
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started