Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

MEDIUM Severity CVEs

CVSS 4.0 – 6.9

CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit

164,190
Total
101
Known Exploited
Showing 88,803 of 164,190 total · Page 66/1777
5.4
CVE-2026-18584

A security vulnerability has been detected in GL.iNet E5800, E750, X2000, X3000, XE3000 and XE300 up to 20260707. Impact

5.3
CVE-2026-18583

A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAcc

5.3
CVE-2026-12860

In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issu

6.0
CVE-2026-20498

In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es

6.0
CVE-2026-20497

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

4.4
CVE-2026-20496

In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information

5.5
CVE-2026-20494

In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc

4.4
CVE-2026-20493

In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servi

5.5
CVE-2026-20492

In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial

5.5
CVE-2026-20491

In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of ser

4.4
CVE-2026-20490

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic

4.4
CVE-2026-20489

In display, there is a possible information disclosure due to an integer overflow. This could lead to local information

4.4
CVE-2026-20488

In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informati

6.7
CVE-2026-20486

In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation

6.0
CVE-2026-20485

In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p

4.4
CVE-2026-20484

In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local informati

6.5
CVE-2026-20482

In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adj

6.0
CVE-2026-20481

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

5.5
CVE-2026-20480

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of

5.5
CVE-2026-20478

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of

6.0
CVE-2026-20477

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

5.5
CVE-2026-20476

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic

6.0
CVE-2026-20475

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.0
CVE-2026-20474

In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of

6.0
CVE-2026-20473

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privileg

4.4
CVE-2026-20472

In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servic

4.6
CVE-2026-20471

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service

6.2
CVE-2026-20470

In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local inf

6.0
CVE-2026-20469

In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local e

6.0
CVE-2026-20468

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of

6.0
CVE-2026-20467

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalatio

6.1
CVE-2026-20466

In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalat

6.5
CVE-2026-20464

In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalatio

5.3
CVE-2026-18582

A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Re

5.3
CVE-2026-59648

In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also aff

5.3
CVE-2026-59647

In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects

5.3
CVE-2026-59641

In Bouncy Castle for Java before 1.85, S/MIME validator trusts signer-asserted signingTime for path validation. This iss

5.3
CVE-2026-59640

In Bouncy Castle for Java before 1.85, OpenPGP CFB quick-check oracle active on symmetric/session-key paths. This issue

6.5
CVE-2026-59638

In Bouncy Castle for Java before 1.85, JSSE hostname verifier CN-fallback enabled by default despite documented opt-in.

5.4
CVE-2026-68583

luci-app-adblock-fast before 1.2.4-4 contains a stored cross-site scripting vulnerability in the blocklist name field th

6.5
CVE-2026-68582

Vikunja versions >= 0.24.0 and <= 2.3.0 contain a broken object level authorization (BOLA) vulnerability in the task-col

5.9
CVE-2025-71401

better-auth (npm) before 1.4.2 allows an external request to configure baseURL when it is not otherwise defined (e.g., B

6.4
CVE-2026-12231

The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ exad_info

6.5
CVE-2026-18573

A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authoriza

6.5
CVE-2026-18572

Keycloak provides authorization services that allow administrators to restrict access to resources based on time policie

6.6
CVE-2026-18571

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled.

5.4
CVE-2026-18570

A flaw was found in the full-scope-disabled client-policy executor within the keycloak-services component. This componen

5.4
CVE-2026-16292

The Frontend File Manager Plugin WordPress plugin through 23.6 does not perform nonce validation on one of its file-meta

4.3
CVE-2026-16291

The ProfileGrid WordPress plugin before 5.9.9.8 does not verify that a notification belongs to the requesting user befo

4.6
CVE-2026-16273

The Narrative Publisher WordPress plugin through 1.0.7 does not restrict write access to a REST-exposed post meta field

Frequently Asked Questions

What does MEDIUM severity mean for CVEs?

CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit

How many medium severity CVEs exist?

There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.

How should I prioritize medium severity vulnerabilities?

MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.

Detect MEDIUM Vulnerabilities

CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.

Get Started