tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails. The return value of re
Tor before 0.4.9.9 was prone to a compression bomb bypass where an attacker could concatenate many gzip or zlib sub-stre
Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg rev
Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS.
DiceBear is an avatar library for designers and developers. Prior to 9.4.3, @dicebear/core interpolates the rotate optio
Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit decodes attacker-supplied image attach
Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit reads SMTP commands through internal/s
Incorrect privilege assignment in the ClickHouse connector deployment template in Amazon Athena Federated Query prior to
The github-issue-bot templates in appwrite/templates verify the GitHub webhook signature with an inverted condition. ver
django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. From 5.0.8 u
BunkerWeb is an open-source, next-generation Web Application Firewall. Prior to 1.6.13, the blacklist, greylist, and ant
msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_buffer API, computes
A malicious builder peer may be able to request an in-context file by name from the host and receive the contents of wha
django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0
django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0
django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0
django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing
An unauthenticated remote peer can crash any NIOWebSocket-based server (including Vapor and Hummingbird) with a single 1
Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark responses as publicly cacheable. The _serve_static
A vulnerability was found in elunez eladmin up to 2.7. The impacted element is the function EmailController/AliPayContro
Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can send a crafted percent-enco
Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can place a lone carriage retur
Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control an SSI-enabled file c
Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can create a file with an HTML pa
broot renders each file and directory name in its interactive tree view exactly as read from the filesystem. Names are c
The Lean 4 kernel does not verify that the structure named in a projection expression matches the type of the value bein
django CMS is a content management system powered by Django. Prior to 5.0.8 and in 5.1.0a1, the django CMS page cache in
A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file
VictoriaMetrics is a scalable solution for monitoring and managing time series data. Prior to 1.122.25, 1.136.12, and 1.
SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, a crafted CHM file can supply malformed LZX Huffm
WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_absolute() in src/webob
Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows
Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows physically present attac
Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows physica
Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulnerability allows phys
Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability allows physically pres
A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affec
A weakness has been identified in SourceCodester Simple Online Food Ordering System 1.0. The affected element is an unkn
Server-Side Request Forgery (SSRF) vulnerability in Apache InLong. Any authenticated user (no admin role required) can
Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational configuration or allow
Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons can view template inf
A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown
A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown code of the compone
A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /view
aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_tls in src/aiosmtplib
EMQX is a scalable and reliable MQTT broker for AI, IoT, IIoT, and connected vehicles. Prior to versions 5.8.11, 5.9.3,
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started