External control of file name or path issue exists in RICOH Streamline NX V3 PC Client versions 3.5.0 to 3.242.0. If an
The Auto Attachments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all version
The Game Review Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘className’ parameter in
Worker process denial of service through file read operation. .A vulnerability exists in the Master's “pub_ret” method w
File contents overwrite the VirtKey class is called when “on-demand pillar” data is requested and uses un-validated inpu
Arbitrary directory creation or file deletion. In the find_file method of the GitFS class, a path is created using os.pa
Directory traversal attack in minion file cache creation. The master's default cache is vulnerable to a directory traver
An attacker with access to a minion key can exploit the 'on demand' pillar functionality with a specially crafted git ur
The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate whic
The Traffic Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability
The IndieBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘kind’ parameter in all versio
The Telegram for WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions
The Digital Marketing and Agency Templates Addons for Elementor plugin for WordPress is vulnerable to Cross-Site Request
The WP2HTML plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.2
The WP Sliding Login/Dashboard Panel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up
The Link Shield plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0
The ACF Onyx Poll plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘class’ parameter in all ver
The Color Palette plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘hex’ parameter in all versi
The Contact Us Page – Contact People plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘style’ p
The IRM Newsroom plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'irmcalendarview' sh
The IRM Newsroom plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'irmflat' shortcode
The IRM Newsroom plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'irmeventlist' short
Description In Spring Framework, versions 6.0.x as of 6.0.5, versions 6.1.x and 6.2.x, an application is vulnerable to
Description: VMware AVI Load Balancer contains an authenticated blind SQL Injection vulnerability. VMware has evaluated
yangyouwang crud v1.0.0 is vulnerable to Cross Site Scripting (XSS) via the role management function.
An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14
A cross-site scripting vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if exploi
AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an authenticate
A cross-site scripting vulnerability exists in AVEVA PI Web API version 2023 SP1 and prior that, if exploited, could al
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. All system messages in menu headings
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Various date messages returned by `La
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Various preferences messages are inse
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. The citizen-search-noresults-title an
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Multiple system messages are inserted
There is an insufficient input validation vulnerability in the warehouse component of Absolute Secure Access prior to se
Multiple SQL injection vulnerabilities in the EuroInformation MoneticoPaiement module before 1.1.1 for PrestaShop allow
pg-promise before 11.5.5 is vulnerable to SQL Injection due to improper handling of negative numbers.
uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/
go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.
The created backup files are unencrypted, making the application vulnerable for gathering sensitive information by downl
The application uses a weak password hash function, allowing an attacker to crack the weak password hash to gain access
A service supports the use of a deprecated and unsafe TLS version. This could be exploited to expose sensitive informati
The FTP server’s login mechanism does not restrict authentication attempts, allowing an attacker to brute-force user pas
The application fails to implement several security headers. These headers help increase the overall security level of t
The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an atta
Linked URLs during the creation of iFrame widgets and dashboards are vulnerable to code execution. The URLs get embedded
The application is vulnerable to Server-Side Request Forgery (SSRF). An endpoint can be used to send server internal req
The HttpOnlyflag of the session cookie \"@@\" is set to false. Since this flag helps preventing access to cookies via cl
The application sends user credentials as URL parameters instead of POST bodies, making it vulnerable to information gat
For failed login attempts, the application returns different error messages depending on whether the login failed due to
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started