Admidio is an open-source user management solution. Prior to version 5.0.10, when debug logging is enabled, `Session::se
Admidio is an open-source user management solution. Version 5.0.9 added a missing `isAdministratorInventory()` gate to `
A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets in a serialized format within unused disk s
Admidio is an open-source user management solution. Prior to version 5.0.10, the sensitive `mode=export` action in `modu
Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` mode `file_re
Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/sso/clients.php` validates an `adm
Admidio is an open-source user management solution. `modules/registration.php` mode `send_login` regenerates a random pa
Admidio is an open-source user management solution. `modules/categories.php` checks that the supplied `type` parameter (
Improper restriction of XML external entity reference vulnerability in Ministry of Justice UYAP Document Editor allows S
A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an
A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.
Admidio is an open-source user management solution. Prior to version 5.0.10, an authenticated Admidio member with upload
Ultimate POS (Stock Management & Point of Sale) contains a stored cross-site scripting vulnerability that allows low-pri
The Quick Paypal Payments WordPress plugin through 5.7.50 does not verify the paid amount, receiver, or payment status i
The Payment Button for PayPal WordPress plugin through 1.2.3.44 does not enforce the merchant-configured price server-si
The Kirki WordPress plugin before 6.2.1 does not properly authorise its front-end form submission REST routes and passes
The Payment Gateway for PayPal on WooCommerce WordPress plugin before 9.2.1 does not verify that payment actually succee
The Welcart e-Commerce WordPress plugin before 2.11.33 does not verify the authenticity of its convenience-store / bank-
The Wallet System for WooCommerce WordPress plugin before 2.7.10 does not validate a user-supplied wallet amount against
The Google Cloud Secret Manager secrets backend in Apache Airflow's Google provider never applied the team scope when re
When Microsoft Excel imports a CSV file, it executes cells beginning with certain characters as formulas, giving such CS
The hunt_delete() VQL function allows deleting hunts. Velociraptor misapplied the permission check requiring only COLL
A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function frees the parsed controls array on the Sess
Velociraptor allows reading Stacked result sets from the GUI. Velociraptor's multi-tenant design stores sub orgs within
An authenticated attacker with low privileges can access an endpoint in the controller’s web interface that is vulnerabl
The Royal Addons for Elementor WordPress plugin before 1.7.1065 does not validate a widget setting used to build an HTM
The Order Sync with Zendesk for WooCommerce WordPress plugin before 2.2.3 does not perform any capability check on one o
The ProSolution WP Client WordPress plugin before 2.0.9 does not perform capability checks on two administrative AJAX ac
The ProSolution WP Client WordPress plugin before 2.0.9 does not validate a user-supplied URL, and does not check the ca
The WP Photo Album Plus WordPress plugin before 9.2.09.002 does not check that the current user is allowed to upload int
The WPC Admin Columns WordPress plugin before 2.3.4 does not have authorisation checks in one of its AJAX actions, allow
The Cookie Consent WordPress plugin before 0.0.10 does not correctly enforce its intended administrator-only capability
The User Access Manager WordPress plugin before 2.3.15 does not apply its access restrictions to REST API requests, allo
The WP Photo Album Plus WordPress plugin before 9.2.07.002 does not sanitise and escape a parameter before reflecting it
The WP Travel Engine WordPress plugin before 6.8.5 does not perform authorization or ownership checks when loading a ca
The Welcart e-Commerce WordPress plugin before 2.11.34 does not sanitise or escape a product field before outputting it
The Cookie Consent WordPress plugin before 0.0.10 does not correctly enforce its intended administrator-only capability
The Patterns Kit WordPress plugin through 1.0.3 does not escape a link attribute before its client-side script inserts i
The WP Crowdfunding WordPress plugin before 2.2.1 does not check the campaign-submission capability in one of its AJAX a
The WP Crowdfunding WordPress plugin before 2.2.1 does not verify order ownership before returning order details, allowi
The WP Crowdfunding WordPress plugin before 2.2.1 does not verify ownership of a campaign before allowing its update his
The KiviCare WordPress plugin before 4.5.2 does not verify that the requesting user owns the records being accessed, al
The Eventin WordPress plugin before 4.1.20 does not properly restrict access to individual order records, allowing user
The Eventin WordPress plugin before 4.1.20 does not properly restrict access to stored customer records, allowing users
The LearnPress WordPress plugin before 4.4.4 does not verify that a user is enrolled in a course before processing AI-a
The Linkable Loadable Extensions (llext) subsystem mis-handles PLT/RELA relocation entries when linking a relocatable (p
The PSA Protected Storage credential backend (subsys/net/lib/tls_credentials/tls_credentials_trusted.c) declared its cre
The Intel ALH digital-audio-interface driver function dai_alh_get_properties() in drivers/dai/intel/alh/alh.c used a cal
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started