Exposure of sensitive information due to incompatible policies vulnerability in NOMYSOFT Informatics Education and Consu
The input file does not need to be strictly in a structurally valid PDF format. Instead, after reviewing the content, th
The PRC file header parsing logic trusts the constructed file structure description information, assumes that the underl
During the PRC parsing stage, there is a lack of boundary verification for the PRC entity index, which leads to an out-o
The application opens a PDF containing an abnormal color space whose attributes reference a valid but semantically malfo
An abnormal image object causes the renderer to enter the wrong processing branch. When converting the scan lines, an in
During the process of page opening and form formatting, a JavaScript reentrancy results in an inconsistent document stat
The application opens the PDF, and JavaScript performs operations on the page and the document, causing the page-related
The Wp Js Detect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,
The Bulk Order Update for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Read in versions up to, and i
The User Management plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.2
The Chatra Live Chat + ChatBot + Cart Saver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin
The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Refle
The Sympl Repeater for ACF and Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ACF repea
sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay.
In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not
sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if th
internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important
scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs betwee
sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is u
Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.17, 2.32.7
Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.17, 2.32.7
Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7,
Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7,
Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7,
Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.24.0 and pr
Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.17.0 and pr
An out-of-bounds read vulnerability exists in FreeType 2.14.3 and versions before commit 5a280ecde6f324de0d226261036e736
A NULL pointer dereference in smooth_parse_stream_index() in src/media_tools/mpd.c in GPAC master HEAD before commit b35
An HTML injection vulnerability in the file view endpoint of LiquidFiles v4.2.7 allows authenticated attackers to execut
An authenticated stored cross-site scripting (XSS) vulnerability in the Upload File Shares API of LiquidFiles v4.2.7 all
Anki is a program for creating and reviewing flashcards. Prior to 25.09.4, Anki's webview-based pages communicate with t
OpenWrt is a Linux operating system targeting embedded devices. Before v25.12.5, an integer underflow in handle_send_a()
Hasura is an open-source product that provides users GraphQL or REST APIs. Prior to 2.49.2 and 2.45.5, a user can use a
FastGPT is an open source AI knowledge base platform. From 4.14.17 to before 4.15.0-beta4, FastGPT allows an authenticat
Actual is a local-first personal finance tool. Prior to 26.6.0, exportToCSV and exportQueryToCSV in packages/loot-core/s
Coder allows organizations to provision remote development environments via Terraform. Versions prior tp 2.24.5, 2.29.13
GNU Wget through 1.25.0, fixed in commit dd692d9, contains a heap buffer overflow vulnerability in the html_quote_string
GNU Wget through 1.25.0, fixed in commit c2640fe, contains a heap buffer overflow vulnerability in the convert_fname() f
GNU Wget through 1.25.0, fixed in commit 43d3ba9, contains an integer overflow vulnerability in the parse_content_range(
Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.33.0 and pr
Cilium is a networking, observability, and security solution. Prior to 1.17.16, from 1.18.2 to 1.18.9, and from 1.19.0 t
Actual is a local-first personal finance tool. Prior to 26.6.0, the GET /secret/:name endpoint in @actual-app/sync-serve
Actual is a local-first personal finance app. Prior to 26.6.0, @actual-app/cli ships a hand-rolled CSV serializer in pac
NocoBase through 2.1.20 contains a server-side request forgery vulnerability in the serverRequest wrapper that allows au
An unauthenticated remote disclosure vulnerability has been identified in HPE Networking Instant On 1830, 1930, and 1960
Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.30.0 and pr
An improper access check allows users to display a list of modules in the frontend.
An improper access check allows unauthorized users to access workflow stage and transition information.
Improper validation leads to a generic XSS vector in the language override feature.
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started