A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts the function
A vulnerability was identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function dele
When an authenticated user is denied access to a gRPC method, their authenticated identity remains bound to the gRPC wor
Improper access control in the vault documentation feature in Devolutions Server allows an authenticated attacker to r
A flaw was found in the OpenShift Container Platform build system. A user with the `edit` ClusterRole can inject arbitra
A vulnerability was detected in DV0x creative-ad-agent up to 751b9e5146604dc65049bd0f62dcbdad6212f8a3. Impacted is an un
A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This impacts the function save_category o
A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. This affects an unknown function of the file /view
A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. The impacted element is the function save_o
A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the f
AVACAST developed by eMPIA Technology has a Unquoted Service Path vulnerability, allowing privileged local attackers to
A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items o
Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommen
Uncontrolled Recursion vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are reco
In Spring AI, a malicious PDF file can be crafted that triggers the allocation of unreasonable amounts of memory when ha
In Spring AI, having access to a shared environment can expose the ONNX model used by the application. Affected version
Due to improper TLS certificate validation in the DeskTime Time Tracking App before version 1.3.674, attackers who can p
A flaw has been found in code-projects Online Music Site 1.0. This affects an unknown part of the file /Administrator/PH
A security vulnerability has been detected in ErlichLiu claude-agent-sdk-master up to b185aa7ff0d864581257008077b4010fca
The Booking Package plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 1.7.06 Th
The Woostify plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.5.0 T
In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a
KDE Dolphin before 25.12.3 allows applications in a Flatpak (or with AppArmor confinement) to open folders outside of th
In Spring AI, an attacker can bypass conversation isolation and exfiltrate sensitive memory from other users’ chat histo
Penetration Testing engineers at Amazon discovered a vulnerability where the camera system failed to properly validate i
Penetration Testing engineers at Amazon have discovered a flaw where the camera system fails to properly handle data sup
A vulnerability was found in SourceCodester Safety Anger Pad 1.0. The affected element is an unknown function. The manip
A vulnerability was found in code-projects Coaching Management System 1.0. This affects an unknown function of the file
The Check & Log Email WordPress plugin before 2.0.13 does not properly handle email replacement, which could allow unau
In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an applica
The Social Post Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Threads embed handler in
The WPC Smart Messages for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text'
The Timeline Blocks for Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'titleTag' a
OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.
In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gss_accept_sec_c
A security vulnerability has been detected in Deepractice PromptX up to 2.4.0. The affected element is the function read
A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions
A command injection vulnerability exists in the web server of specific firmware versions of Milesight cameras.
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is some unknown
A security vulnerability has been detected in CodeAstro Online Classroom 1.0. Affected is an unknown function of the fil
OpenClaw before 2026.4.2 fails to normalize trailing-dot localhost hosts in remote CDP discovery responses, allowing byp
OpenClaw before 2026.3.31 contains a path traversal vulnerability in ACP dispatch that allows attackers to read arbitrar
OpenClaw before 2026.3.31 contains insufficient environment variable sanitization in host exec operations, failing to fi
OpenClaw before 2026.3.28 contains an environment variable disclosure vulnerability in the jq safe-bin policy that fails
OpenClaw versions 2026.2.14 through 2026.3.24 fail to consistently apply guild and channel policy gates to Discord butto
OpenClaw before 2026.3.31 contains a local roots self-whitelisting vulnerability in appendLocalMediaParentRoots that all
OpenClaw before 2026.3.31 contains a sender allowlist bypass vulnerability in MS Teams thread history fetched via Graph
OpenClaw versions 2026.2.6 through 2026.3.24 contain a path traversal vulnerability in the Feishu extension resolveUploa
OpenClaw versions 2026.2.19 before 2026.3.31 contain an improper cache isolation vulnerability in the Zalo webhook repla
When an application is configured to use `ApplicationPidFileWriter`, a local attacker with write access to the PID file'
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started