Automatisch reveals whether an address is registered through the response to its forgot-password request. The controller
Mage AI does not confine the paths accepted by its browser-items API to the project directory. BrowserItemResource in ma
ZLMediaKit confines the downloadFile API to a configured set of root directories with a prefix comparison that does not
DebugKit provides a debugging toolbar for CakePHP applications. Prior to 4.10.3 and 5.2.4, the DebugKit MailPreview feat
Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 contains a CSRF vulnerability in cmd.cgi. When no Cookie header
Nagios Core before 4.5.12 contains a cross-site request forgery vulnerability in cmd.cgi where the CSRF protection mecha
Starlette-Admin is a fast, beautiful and extensible administrative interface framework for FastAPI and Starlette applica
The IEEE 1588 PTP management-message parser in subsys/net/lib/ptp/tlv.c mishandles the PTP_MGMT_TIME management id. In t
A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.1.7, 19.2 before 19.2.5, and 1
RustDesk versions 1.3.9 through 1.4.9 contain a path traversal vulnerability in the macOS clipboard file-paste code path
GitLab has remediated an issue in GitLab EE affecting all versions from 11.3 before 19.1.7, 19.2 before 19.2.5, and 19.3
GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3
GitLab has remediated an issue in GitLab EE affecting all versions from 11.10 before 19.1.7, 19.2 before 19.2.5, and 19.
NLTK before 3.10.3 contains a regular expression denial of service (ReDoS) vulnerability in the tgrep module. The _tgrep
The Grav API plugin (getgrav/grav-plugin-api) before 1.0.18 does not apply the API-key scope cap in the injectSecurityTa
The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via
The WP Data Access plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and inc
The Reviews and Rating – Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all version
CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remot
A user with organization administrator permissions can delete dashboard snapshots belonging to other organizations on th
With legitimate user credentials in hand, attackers can construct malicious SQL statements to bypass authentication logi
The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the theme's 'icon_box_2' shortcode in a
The Gutenverse – Ultimate WordPress FSE Blocks Addons & Ecosystem plugin for WordPress is vulnerable to Stored Cross-Sit
A flaw was found in Katello where the Content View History API does not properly enforce authorization when accessing a
The Simple Newsletter Plugin WordPress plugin before 4.3.3 does not verify that the requester is the subscriber named i
The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not verify that a subscription belongs to th
The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not properly verify that a customer portal s
The Directorist: AI-Powered Business Directory, Listings & Classified Ads WordPress plugin before 8.9.3 does not sanitiz
The Kirki WordPress plugin before 6.0.14 does not perform a capability check on some endpoints of one of its public AJA
The Return Refund and Exchange For WooCommerce WordPress plugin before 4.6.4 does not correctly verify the ownership of
The Eventin WordPress plugin before 4.1.19 does not properly restrict which changes a guest checkout token is allowed t
The AI Engine WordPress plugin before 3.7.2 does not perform an authorisation check on one of its administration-only f
The Project Manager WordPress plugin before 4.0.7 does not check that the user whose activity is being requested is the
The Project Manager WordPress plugin before 4.0.7 does not restrict several of its REST API routes to the projects a us
The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not validate some widget settings before outputtin
The Tutor LMS WordPress plugin before 4.0.6 does not validate values used to build a database query, and does not restr
The Booking Package WordPress plugin before 1.7.25 does not validate the payment amount server-side against the stored s
The Privacy Policy Generator, Terms & Conditions, GDPR, CCPA, Cookie Policy & Disclaimer Templates WordPress plugin bef
The WPCafe WordPress plugin before 3.0.18 does not perform an authorization check when creating a reservation through i
The Booking for Appointments and Events Calendar WordPress plugin before 2.4.7 does not require authentication before p
The Booking for Appointments and Events Calendar WordPress plugin before 9.8 does not verify that an authenticated empl
The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or nonce check before r
The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or ownership check (rel
The Eventin WordPress plugin before 4.1.22 does not restrict access to non-published content by status or ownership in
Kimai before 2.53.0 contains an open redirect vulnerability in the SAML authentication success handler that accepts unva
Kimai before 2.57.0 contains an improper authorization vulnerability in the favorite timesheet add and remove endpoints
Kimai before 2.63.0 contains a business logic / improper authorization vulnerability in the team update API endpoint (PA
Kimai before 2.64.0 contains a missing authorization vulnerability in the ProjectViewController export route (report_pro
LeafWiki extracts an uploaded ZIP archive without limiting how much data it will write. ZipExtractor.ExtractToDir in int
Frequently Asked Questions
What does MEDIUM severity mean for CVEs?
CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit
How many medium severity CVEs exist?
There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.
How should I prioritize medium severity vulnerabilities?
MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.
Detect MEDIUM Vulnerabilities
CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.
Get Started