An integer underflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access t
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C
A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5O__fsinfo_
A vulnerability, which was classified as problematic, was found in code-projects Food Distributor Site 1.0. Affected is
The Nix, Lix, and Guix package managers fail to properly set permissions when a derivation build fails. This may allow a
The Nix, Lix, and Guix package managers default to using temporary build directories in a world-readable and world-writa
The Nix, Lix, and Guix package managers allow a bypass of build isolation in which a user can elevate their privileges t
A race condition in the Nix, Lix, and Guix package managers allows the removal of content from arbitrary folders. This a
Lychee is a free, open-source photo-management tool. Prior to version 6.6.13, a critical Server-Side Request Forgery (SS
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. Affected by this issue is the funct
Flock Safety LPR (License Plate Reader) devices with firmware through 2.2 have cleartext storage of code.
Flock Safety LPR (License Plate Reader) devices with firmware through 2.2 have a hardcoded password for a system.
Flock Safety Gunshot Detection devices before 1.3 have a hardcoded password for a system.
A vulnerability classified as problematic has been found in Bharti Airtel Thanks App 4.105.4 on Android. Affected is an
Flock Safety Gunshot Detection devices before 1.3 have cleartext storage of code.
Flock Safety Gunshot Detection devices before 1.3 have a hard-coded password for a connection.
pycode-browser before version 1.0 is prone to a predictable temporary file vulnerability.
A vulnerability, which was classified as problematic, has been found in Xuxueli xxl-sso 1.1.0. This issue affects some u
A vulnerability classified as problematic has been found in LabRedesCefetRJ WeGIA 3.4.0. This affects an unknown part of
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been rated as problematic. Affected by this issue is so
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been declared as problematic. Affected by this vulnerab
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been classified as problematic. Affected is an unknown
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0 and classified as problematic. This issue affects some unknown
A vulnerability has been found in LabRedesCefetRJ WeGIA 3.4.0 and classified as problematic. This vulnerability affects
An issue has been discovered in GitLab EE affecting all versions from 16.10 before 17.11.5, 18.0 before 18.0.3, and 18.1
An issue has been discovered in GitLab CE/EE affecting all versions from 17.3 before 17.11.5, 18.0 before 18.0.3, and 18
A vulnerability was found in gooaclok819 sublinkX up to 1.8. It has been declared as problematic. This vulnerability aff
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remot
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r
Adobe Commerce versions 2.4.8, 2.4.7-p5, 2.4.6-p10, 2.4.5-p12, 2.4.4-p13 and earlier are affected by an Incorrect Author
Incus is a system container and virtual machine manager. When using an ACL on a device connected to a bridge, Incus vers
Vault Community and Vault Enterprise rekey and recovery key operations can lead to a denial of service due to uncontroll
A vulnerability classified as problematic was found in PHPGurukul Hospital Management System 4.0. Affected by this vulne
Successful exploitation of the vulnerability could allow an attacker to intercept data and conduct session hijacking on
A vulnerability was found in java-aodeng Hope-Boot 1.0.0 and classified as problematic. This issue affects the function
A vulnerability has been found in Tarantool up to 3.3.1 and classified as problematic. Affected by this vulnerability is
A vulnerability, which was classified as problematic, was found in 70mai M300 up to 20250611. Affected is an unknown fun
A vulnerability, which was classified as problematic, has been found in 70mai M300 up to 20250611. This issue affects so
A vulnerability classified as problematic has been found in 70mai 1S up to 20250611. This affects an unknown part of the
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started