A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnera
A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as probl
Zulip is an open-source team collaboration tool with unique topic-based threading. Zulip administrators can configure Zu
Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. In contracts with more than one regular no
A vulnerability classified as problematic has been found in SourceCodester Class Scheduling System 1.0. Affected is an u
Azure Arc Jumpstart Information Disclosure Vulnerability
Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform
Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform
Compiler removal of buffer clearing in sli_cryptoacc_transparent_key_agreement in Silicon Labs Gecko Platform SDK v4.2.
A vulnerability classified as problematic has been found in TOTOLINK N200RE 9.3.5u.6255_B20211224. Affected is an unknow
A vulnerability was found in GNU cflow 1.7. It has been rated as problematic. This issue affects the function func_body/
Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability. This vulnerability may be exp
Dgraph is an open source distributed GraphQL database. Existing Dgraph audit logs are vulnerable to brute force attacks
A vulnerability was found in Sucms 1.0. It has been rated as problematic. Affected by this issue is some unknown functio
The Multiple Page Generator Plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to time-based SQL I
Mishandling of guest SSBD selection on AMD hardware The current logic to set SSBD on AMD Family 17h and Hygon Family 18h
Jenkins SAML Single Sign On(SSO) Plugin 2.1.0 and earlier unconditionally disables SSL/TLS certificate validation for co
A vulnerability, which was classified as problematic, has been found in SourceCodester Guest Management System 1.0. Affe
In mnld, there is a possible leak of GPS location due to a missing permission check. This could lead to local informatio
A vulnerability has been found in SourceCodester ICT Laboratory Management System 1.0 and classified as problematic. Aff
A vulnerability, which was classified as problematic, was found in SourceCodester Personnel Property Equipment System 1.
A vulnerability has been found in SourceCodester File Tracker Manager System 1.0 and classified as problematic. This vul
A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been rated as problematic. Thi
A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as problematic. Af
In Xpdf 4.04 (and earlier), a PDF object loop in the embedded file tree leads to infinite recursion and a stack overflo
In Xpdf 4.04 (and earlier), a PDF object loop in the page label tree leads to infinite recursion and a stack overflow.
In Xpdf 4.04 (and earlier), a bad color space object in the input PDF file can cause a divide-by-zero.
etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.4.26 and 3.5.9, the Leas
A vulnerability classified as problematic was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by
Arbitrary Files can be installed in the Setting Data Import function of Office / Small Office Multifunction Printers and
Improper Authentication of RemoteUI of Office / Small Office Multifunction Printers and Laser Printers(*) which may allo
Out-of-bounds write for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 m
Out-of-bounds read for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 ma
Insertion of sensitive information into log file in the Open CAS software for Linux maintained by Intel before version 2
Null pointer dereference for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2
Improper buffer restriction in software for the Intel QAT Driver for Linux before version 1.7.l.4.12 may allow an authen
Improper access control in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to
Incomplete cleanup in the Intel(R) IPP Cryptography software before version 2021.6 may allow a privileged user to potent
Improper input validation in BIOS Firmware for some Intel(R) NUC Kits before version PY0081 may allow a privileged user
Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Atlas Gondal Export All URLs plugin <= 4.1 versions.
A buffer overflow vulnerability was discovered on firmware version validation that could lead to an unauthenticated remo
Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of inte
Microsoft Access Denial of Service Vulnerability
PostgresNIO is a Swift client for PostgreSQL. Any user of PostgresNIO prior to version 1.14.2 connecting to servers with
yasm v1.3.0 was discovered to contain a memory leak via the function yasm_intnum_copy at /libyasm/intnum.c. Note: Multip
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versio
A vulnerability has been identified in SIMATIC Cloud Connect 7 CC712 (All versions >= V2.0 < V2.1), SIMATIC Cloud Connec
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). A heap-based buffer overflow vulnerabilit
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). A path traversal vulnerability was found
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). The `i2c` mutex file is created with the
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started