A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been rated as problematic. This issue affects
A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been declared as problematic. This vulnerabil
A vulnerability, which was classified as problematic, has been found in Cosmote Greece What's Up App 4.47.3 on Android.
A vulnerability classified as problematic was found in PHPGurukul Online Shopping Portal 2.0. This vulnerability affects
A vulnerability classified as problematic has been found in PHPGurukul Online Shopping Portal 2.0. This affects an unkno
A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been rated as problematic. Affected by this i
A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been declared as problematic. Affected by thi
A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been classified as problematic. Affected is a
A vulnerability was found in PHPGurukul Car Rental Portal 1.0. It has been rated as problematic. This issue affects some
When using Arm Cortex-M Security Extensions (CMSE), Secure stack contents can be leaked to Non-secure state via floatin
A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially
A vulnerability was found in Klokan MapTiler tileserver-gl 2.3.1 and classified as problematic. This issue affects some
The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified
Organization admins can delete pending invites created in an organization they are not part of.
Kyverno is a policy engine designed for Kubernetes. A kyverno ClusterPolicy, ie. "disallow-privileged-containers," can b
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide po
A vulnerability, which was classified as problematic, was found in LinZhaoguan pb-cms up to 2.0.1. Affected is an unknow
A vulnerability, which was classified as problematic, has been found in LinZhaoguan pb-cms up to 2.0.1. This issue affec
A vulnerability classified as problematic was found in LinZhaoguan pb-cms up to 2.0.1. This vulnerability affects unknow
HCL Connections is vulnerable to an information disclosure vulnerability, due to an IBM WebSphere Application Server err
The issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Sequoia 15.1, ma
This issue was addressed through improved state management. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.1, ma
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequo
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18 and iPadOS 18.
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 1
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A malicious app
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia
Duende IdentityServer is an OpenID Connect and OAuth 2.x framework for ASP.NET Core. IdentityServer's local API authenti
Mattermost versions 9.11.X <= 9.11.1, 9.5.x <= 9.5.9 icorrectly issues two sessions when using desktop SSO - one in the
A bug in query analysis of certain complex self-referential $lookup subpipelines may result in literal values in express
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Genians Genian NAC
A vulnerability was found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as problematic. Affecte
GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When
A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been rated as problematic. Affected
A vulnerability, which was classified as problematic, was found in PHPGurukul Vehicle Record System 1.0. This affects an
A vulnerability was found in Poco-z Guns-Medical 1.0. It has been declared as problematic. Affected by this vulnerabilit
Dell Data Lakehouse, version(s) 1.0.0.0 and 1.1.0.0, contain(s) an Improper Neutralization of Special Elements used in a
A vulnerability was found in SourceCodester Best House Rental Management System 1.0. It has been classified as problemat
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information t
A vulnerability has been found in Telestream Sentry 6.0.9 and classified as problematic. Affected by this vulnerability
IBM Concert 1.0.0 and 1.0.1 vulnerable to attacks that rely on the use of cookies without the SameSite attribute.
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tipd: Free IRQ only if it was requested
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't use rate mask for offchannel
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been rated as problematic. Affected by
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been declared as problematic. Affected
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. Affect
A vulnerability has been found in PHPGurukul IFSC Code Finder Project 1.0 and classified as problematic. This vulnerabil
A vulnerability, which was classified as problematic, was found in PHPGurukul Boat Booking System 1.0. This affects an u
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started