Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

MEDIUM Severity CVEs

CVSS 4.0 – 6.9

CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit

164,190
Total
101
Known Exploited
Showing 88,803 of 164,190 total · Page 8/1777
5.3
CVE-2026-81033

Automatisch reveals whether an address is registered through the response to its forgot-password request. The controller

6.5
CVE-2026-81030

Mage AI does not confine the paths accepted by its browser-items API to the project directory. BrowserItemResource in ma

4.9
CVE-2026-81028

ZLMediaKit confines the downloadFile API to a configured set of root directories with a prefix comparison that does not

4.3
CVE-2026-54614

DebugKit provides a debugging toolbar for CakePHP applications. Prior to 4.10.3 and 5.2.4, the DebugKit MailPreview feat

6.5
CVE-2026-48549

Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 contains a CSRF vulnerability in cmd.cgi. When no Cookie header

6.5
CVE-2026-48548

Nagios Core before 4.5.12 contains a cross-site request forgery vulnerability in cmd.cgi where the CSRF protection mecha

5.4
CVE-2026-54553

Starlette-Admin is a fast, beautiful and extensible administrative interface framework for FastAPI and Starlette applica

5.4
CVE-2026-13481

The IEEE 1588 PTP management-message parser in subsys/net/lib/ptp/tlv.c mishandles the PTP_MGMT_TIME management id. In t

5.5
CVE-2026-79902

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin

6.5
CVE-2026-77801

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.1.7, 19.2 before 19.2.5, and 1

5.7
CVE-2026-73102

RustDesk versions 1.3.9 through 1.4.9 contain a path traversal vulnerability in the macOS clipboard file-paste code path

5.5
CVE-2026-3035

GitLab has remediated an issue in GitLab EE affecting all versions from 11.3 before 19.1.7, 19.2 before 19.2.5, and 19.3

4.3
CVE-2026-15387

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3

6.5
CVE-2025-10903

GitLab has remediated an issue in GitLab EE affecting all versions from 11.10 before 19.1.7, 19.2 before 19.2.5, and 19.

5.9
CVE-2026-80206

NLTK before 3.10.3 contains a regular expression denial of service (ReDoS) vulnerability in the tgrep module. The _tgrep

5.4
CVE-2026-80204

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.18 does not apply the API-key scope cap in the injectSecurityTa

6.4
CVE-2026-5092

The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via

5.3
CVE-2026-3235

The WP Data Access plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and inc

6.4
CVE-2026-2388

The Reviews and Rating – Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all version

5.3
CVE-2026-80234

CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remot

6.3
CVE-2026-19197

A user with organization administrator permissions can delete dashboard snapshots belonging to other organizations on th

6.3
CVE-2026-9668

With legitimate user credentials in hand, attackers can construct malicious SQL statements to bypass authentication logi

6.4
CVE-2026-6178

The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the theme's 'icon_box_2' shortcode in a

6.4
CVE-2026-3002

The Gutenverse – Ultimate WordPress FSE Blocks Addons & Ecosystem plugin for WordPress is vulnerable to Stored Cross-Sit

4.3
CVE-2026-79654

A flaw was found in Katello where the Content View History API does not properly enforce authorization when accessing a

6.5
CVE-2026-78146

The Simple Newsletter Plugin WordPress plugin before 4.3.3 does not verify that the requester is the subscriber named i

4.3
CVE-2026-77789

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not verify that a subscription belongs to th

5.3
CVE-2026-77758

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not properly verify that a customer portal s

5.4
CVE-2026-77757

The Directorist: AI-Powered Business Directory, Listings & Classified Ads WordPress plugin before 8.9.3 does not sanitiz

5.3
CVE-2026-77754

The Kirki WordPress plugin before 6.0.14 does not perform a capability check on some endpoints of one of its public AJA

6.5
CVE-2026-77695

The Return Refund and Exchange For WooCommerce WordPress plugin before 4.6.4 does not correctly verify the ownership of

5.3
CVE-2026-77694

The Eventin WordPress plugin before 4.1.19 does not properly restrict which changes a guest checkout token is allowed t

5.3
CVE-2026-75798

The AI Engine WordPress plugin before 3.7.2 does not perform an authorisation check on one of its administration-only f

4.3
CVE-2026-74930

The Project Manager WordPress plugin before 4.0.7 does not check that the user whose activity is being requested is the

5.4
CVE-2026-74929

The Project Manager WordPress plugin before 4.0.7 does not restrict several of its REST API routes to the projects a us

6.8
CVE-2026-19226

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not validate some widget settings before outputtin

5.3
CVE-2026-19094

The Tutor LMS WordPress plugin before 4.0.6 does not validate values used to build a database query, and does not restr

5.3
CVE-2026-16986

The Booking Package WordPress plugin before 1.7.25 does not validate the payment amount server-side against the stored s

6.5
CVE-2026-16984

The Privacy Policy Generator, Terms & Conditions, GDPR, CCPA, Cookie Policy & Disclaimer Templates WordPress plugin bef

5.3
CVE-2026-14550

The WPCafe WordPress plugin before 3.0.18 does not perform an authorization check when creating a reservation through i

6.5
CVE-2026-14216

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.7 does not require authentication before p

4.7
CVE-2026-14212

The Booking for Appointments and Events Calendar WordPress plugin before 9.8 does not verify that an authenticated empl

5.3
CVE-2026-13406

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or nonce check before r

5.3
CVE-2026-13404

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or ownership check (rel

5.3
CVE-2026-13172

The Eventin WordPress plugin before 4.1.22 does not restrict access to non-published content by status or ownership in

4.7
CVE-2026-80200

Kimai before 2.53.0 contains an open redirect vulnerability in the SAML authentication success handler that accepts unva

4.3
CVE-2026-80197

Kimai before 2.57.0 contains an improper authorization vulnerability in the favorite timesheet add and remove endpoints

5.4
CVE-2026-80195

Kimai before 2.63.0 contains a business logic / improper authorization vulnerability in the team update API endpoint (PA

4.3
CVE-2026-80194

Kimai before 2.64.0 contains a missing authorization vulnerability in the ProjectViewController export route (report_pro

6.5
CVE-2026-80189

LeafWiki extracts an uploaded ZIP archive without limiting how much data it will write. ZipExtractor.ExtractToDir in int

Frequently Asked Questions

What does MEDIUM severity mean for CVEs?

CVSS 4.0–6.9 — moderate vulnerabilities that may require specific conditions or user interaction to exploit

How many medium severity CVEs exist?

There are 164,190 CVE records rated MEDIUM in our database. Of these, 101 are listed in CISA's Known Exploited Vulnerabilities catalog.

How should I prioritize medium severity vulnerabilities?

MEDIUM severity vulnerabilities should be addressed as part of regular patching cycles. Prioritize those with high EPSS scores or that affect critical systems. CyberStrike helps you assess real-world exploitability beyond CVSS scores.

Detect MEDIUM Vulnerabilities

CyberStrike scans your infrastructure and detects medium severity vulnerabilities in real time.

Get Started