A weakness has been identified in itsourcecode sanitize or validate this input 1.0. Affected is an unknown function of t
A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. The affected element is an unknown f
A flaw has been found in SourceCodester Client Database Management System 1.0. This issue affects some unknown processin
A vulnerability was identified in SourceCodester Sales and Inventory System up to 1.0. Affected is an unknown function o
A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This impacts an unknown function of the
A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown function of the file
A vulnerability has been found in SourceCodester Sales and Inventory System up to 1.0. The impacted element is an unknow
A flaw has been found in SourceCodester Employee Task Management System up to 1.0. The affected element is an unknown fu
A vulnerability was detected in SourceCodester Employee Task Management System 1.0. Impacted is an unknown function of t
A security vulnerability has been detected in ContiNew Admin up to 4.2.0. This issue affects the function URI.create of
A weakness has been identified in Bytedesk up to 1.3.9. This vulnerability affects the function handleFileUpload of the
A security flaw has been discovered in Bytedesk up to 1.3.9. This affects the function uploadFile of the file source-cod
A vulnerability was found in code-projects Student Web Portal 1.0. Affected is an unknown function of the file profile.p
A security flaw has been discovered in suitenumerique messages 0.2.0. This issue affects the function ThreadAccessSerial
A vulnerability was identified in SourceCodester Pet Grooming Management Software 1.0. This vulnerability affects unknow
A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. This affects an unknown part of t
A vulnerability was detected in xuxueli xxl-job up to 3.3.2. This impacts an unknown function of the file source-code/sr
A weakness has been identified in libssh up to 0.11.3. The impacted element is the function sftp_extensions_get_name/sft
A flaw has been found in 1024-lab/lab1024 SmartAdmin up to 3.29. Affected by this issue is the function freemarkerResolv
A weakness has been identified in SourceCodester Patients Waiting Area Queue Management System 1.0. This impacts an unkn
A vulnerability was identified in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). This issue affects som
A vulnerability has been found in OpenCart 4.0.2.3. Affected by this issue is the function Save of the file admin/contro
A flaw has been found in pnggroup libpng up to 1.6.55. Affected by this vulnerability is the function do_pnm2png of the
A vulnerability was detected in code-projects Simple Flight Ticket Booking System 1.0. Affected is an unknown function o
A security vulnerability has been detected in code-projects Simple Flight Ticket Booking System 1.0. This impacts an unk
A vulnerability was identified in MrNanko webp4j up to 1.3.x. The affected element is the function DecodeGifFromMemory o
A vulnerability was detected in SourceCodester Loan Management System 1.0. Affected by this issue is some unknown functi
A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file
A vulnerability was determined in Planet ICG-2510 1.0_20250811. The impacted element is the function sub_40C8E4 of the f
A vulnerability has been found in SourceCodester Modern Image Gallery App 1.0. Impacted is an unknown function of the fi
A vulnerability was detected in bufanyun HotGo up to 2.0. This issue affects the function ImageTransferStorage of the fi
A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. This vulnerability affects the function E
A weakness has been identified in welovemedia FFmate up to 2.0.15. This affects the function fireWebhook of the file /in
A security flaw has been discovered in RyuzakiShinji biome-mcp-server up to 1.0.0. Affected by this issue is some unknow
A vulnerability was determined in Freedom Factory dGEN1 up to 20260221. Affected by this issue is the function FakeAppRe
A vulnerability was found in Freedom Factory dGEN1 up to 20260221. Affected by this vulnerability is the function FakeAp
A vulnerability has been found in JeecgBoot up to 3.9.1. Affected is the function isExistSqlInjectKeyword of the file /j
A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown function of the component c
A security vulnerability has been detected in Freedom Factory dGEN1 up to 20260221. This impacts the function AlarmServi
WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.
WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.
WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.
WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. From version 9.3
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version
Netmaker makes networks with WireGuard. Prior to version 1.5.0, a user assigned the platform-user role can retrieve Wire
Netmaker makes networks with WireGuard. Prior to version 1.5.0, the user update handler (PUT /api/users/{username}) lack
A security flaw has been discovered in Freedom Factory dGEN1 up to 20260221. The impacted element is the function FakeAp
league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by i
mcp-memory-service is an open-source memory backend for multi-agent systems. Prior to version 10.21.0, the /api/health/d
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started