In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix a procfs host directory removal reg
In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix memory leaks in mpi3mr_init_ioc()
In the Linux kernel, the following vulnerability has been resolved: i40e: Fix kernel crash during reboot when adapter i
In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: fix NULL-ptr deref in offchan check
In the Linux kernel, the following vulnerability has been resolved: net: tunnels: annotate lockless accesses to dev->ne
In the Linux kernel, the following vulnerability has been resolved: net/iucv: Fix size of interrupt data iucv_irq_data
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix cleanup null-ptr deref on encap lock
In the Linux kernel, the following vulnerability has been resolved: bonding: restore bond's IFF_SLAVE flag if a non-eth
In the Linux kernel, the following vulnerability has been resolved: ext4: zero i_disksize when initializing the bootloa
In the Linux kernel, the following vulnerability has been resolved: firmware: xilinx: don't make a sleepable memory all
In the Linux kernel, the following vulnerability has been resolved: media: rc: gpio-ir-recv: add remove function In ca
In the Linux kernel, the following vulnerability has been resolved: powerpc/iommu: fix memory leak with using debugfs_l
In the Linux kernel, the following vulnerability has been resolved: interconnect: fix mem leak when freeing nodes The
In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Fix a NULL pointer dereference The LRU me
In the Linux kernel, the following vulnerability has been resolved: tracing: Do not let histogram values have some modi
In the Linux kernel, the following vulnerability has been resolved: interconnect: exynos: fix node leak in probe PM QoS
In the Linux kernel, the following vulnerability has been resolved: ext4: update s_journal_inum if it changes after jou
In the Linux kernel, the following vulnerability has been resolved: ext4: fix task hung in ext4_xattr_delete_inode Syz
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix steering rules cleanup vport's mc, u
In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_dh_alua: Fix memleak for 'qdata' in alua
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix ttm_bo calltrace warning in psp_hw_
In the Linux kernel, the following vulnerability has been resolved: perf/x86/amd/core: Always clear status for idx The
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: do not run mt76_unregister_device() on
In the Linux kernel, the following vulnerability has been resolved: ACPI: PPTT: Fix to avoid sleep in the atomic contex
In the Linux kernel, the following vulnerability has been resolved: octeontx2-vf: Add missing free for alloc_percpu Ad
In the Linux kernel, the following vulnerability has been resolved: net: usb: lan78xx: Limit packet length to skb->len
In the Linux kernel, the following vulnerability has been resolved: LoongArch: Only call get_timer_irq() once in consta
In the Linux kernel, the following vulnerability has been resolved: qed/qed_sriov: guard against NULL derefs from qed_i
In the Linux kernel, the following vulnerability has been resolved: iavf: fix hang on reboot with ice When a system wi
In the Linux kernel, the following vulnerability has been resolved: net: usb: smsc95xx: Limit packet length to skb->len
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix possible refcount leak in smb2_open() R
In the Linux kernel, the following vulnerability has been resolved: igb: revert rtnl_lock() that causes deadlock The c
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-Switch, Fix an Oops in error handling c
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Synchronize the IOCB count to be in
In the Linux kernel, the following vulnerability has been resolved: fscrypt: destroy keyring after security_sb_delete()
In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: fix a devres leak in hw_enable upon susp
In the Linux kernel, the following vulnerability has been resolved: dm crypt: add cond_resched() to dmcrypt_write() Th
In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Fix memory leak in margining Memory f
In the Linux kernel, the following vulnerability has been resolved: usb: ucsi: Fix NULL pointer deref in ucsi_connector
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: fix warning when handle discover_
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: don't let userspace block dri
In the Linux kernel, the following vulnerability has been resolved: dm stats: check for and propagate alloc_percpu fail
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Do not set DRR on pipe Commit [WH
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Perform lockless command completion
In the Linux kernel, the following vulnerability has been resolved: ca8210: fix mac_len negative array access This pat
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Check kzalloc() in lpfc_sli4_cgn_params
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix call trace warning and hang when re
In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Do _all_ initialization before exposing /
Vault Community and Vault Enterprise Key/Value (kv) Version 2 plugin may unintentionally expose sensitive information in
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Profelis In
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started