A vulnerability was found in SourceCodester Record Management System 1.0. It has been classified as problematic. This af
A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as problematic. Thi
A vulnerability classified as problematic has been found in Bolt CMS 3.7.1. Affected is an unknown function of the file
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Bolt CMS 3.7.1. It has been rated as problematic. This issu
A vulnerability has been found in SourceCodester Establishment Billing Management System 1.0 and classified as problemat
A vulnerability, which was classified as problematic, was found in SourceCodester Lot Reservation Management System 1.0.
fuels-ts is a library for interacting with Fuel v2. The typescript SDK has no awareness of to-be-spent transactions cau
In versions of Akana API Platform prior to 2024.1.0 overly verbose errors can be found in SAML integrations
IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could allow a remote attacke
A vulnerability was found in SourceCodester Insurance Management System 1.0. It has been classified as problematic. This
In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Wipe copies of protected- and secure-key
A flaw has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected is an unknown function of t
A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832. It has been classified as problematic. This affects an unknow
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6. An app may be able to view a con
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 16.7.9 and iPadOS
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.9 and iPadOS
This issue was addressed with improved data protection. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14
An authentication issue was addressed with improved state management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.
A logic issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.6. Enabling Lockdown
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonom
This issue was addressed with improved data protection. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, wa
This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14. A Wi-Fi password may
The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 17 and iPadOS 17,
Honeywell PC42t, PC42tp, and PC42d Printers, T10.19.020016 to T10.20.060398, contain a cross-site scripting vulnerabilit
In the Linux kernel, the following vulnerability has been resolved: Fix userfaultfd_api to return EINVAL as expected C
A vulnerability, which was classified as problematic, has been found in SourceCodester Complaints Report Management Syst
A vulnerability was found in TOTOLINK A3000RU 5.9c.5185. It has been rated as problematic. This issue affects some unkno
A vulnerability, which was classified as problematic, was found in SeaCMS 12.9. This affects an unknown part of the file
A vulnerability, which was classified as problematic, has been found in SeaCMS 12.9/13.0. Affected by this issue is some
A vulnerability has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024 and classified as problematic. Affected by this
An improper validation vulnerability was reported in the Lenovo Tab K10 that could allow a specially crafted application
An issue was discovered in WithSecure Elements Agent through 23.x for macOS and WithSecure Elements Client Security thro
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to improper implementation of password policies. A l
In affected versions of Octopus Server under certain conditions, a user with specific role assignments can access restri
An information disclosure vulnerability in GitLab CE/EE in project/group exports affecting all versions from 15.4 prior
A resource misdirection vulnerability in GitLab CE/EE versions 12.0 prior to 17.0.5, 17.1 prior to 17.1.3, and 17.2 prio
IBM InfoSphere Information Server 11.7 could disclose sensitive user information to another user with physical access to
A vulnerability classified as problematic has been found in SourceCodester Insurance Management System 1.0. This affects
An implementation issue in the Connectivity Standards Alliance Matter 1.2 protocol as used in the connectedhomeip SDK al
Canarytokens help track activity and actions on a network. A Cross-Site Scripting vulnerability was identified in the "
Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Input Validation vulnerability that cou
In JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space Application connection
In JetBrains TeamCity before 2024.07 comparison of authorization tokens took non-constant time
In JetBrains TeamCity before 2024.07 stored XSS was possible on Show Connection page
A blocklist bypass vulnerability exists in the LaTeX functionality of Ankitects Anki 24.04. A specially crafted maliciou
A vulnerability was found in SourceCodester Record Management System 1.0. It has been classified as problematic. Affecte
A vulnerability was found in SourceCodester Record Management System 1.0. It has been declared as problematic. Affected
A vulnerability, which was classified as problematic, was found in ThinkSAAS 3.7.0. Affected is an unknown function of t
A vulnerability, which was classified as problematic, has been found in ThinkSAAS 3.7.0. This issue affects some unknown
A vulnerability was found in Xinhu RockOA 2.6.3 and classified as problematic. Affected by this issue is the function ok
Frequently Asked Questions
What does LOW severity mean for CVEs?
CVSS 0.1–3.9 — low-impact vulnerabilities with limited exploitability or minimal consequences
How many low severity CVEs exist?
There are 15,415 CVE records rated LOW in our database. Of these, 6 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize low severity vulnerabilities?
LOW severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect LOW Vulnerabilities
CyberStrike scans your infrastructure and detects low severity vulnerabilities in real time.
Get Started