The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-16442: Origin Validation Error7.4 HighN/A0%Aug 5, 2026
CVE-2026-7529: Missing Authorization7.5 HighN/A1%Aug 5, 2026
CVE-2026-7456: Missing Authorization6.5 MediumN/A0%Aug 5, 2026
CVE-2026-67623: Inclusion of Functionality from Untrusted Control Sphere8.8 High8.6 High1%Aug 5, 2026
CVE-2026-17506: Improper Neutralization of Input During Web Page Generation7.2 HighN/A0%Aug 5, 2026
CVE-2026-15979: Improper Limitation of a Pathname to a Restricted Directory8.1 HighN/A1%Aug 5, 2026
CVE-2025-70962: Improper Access Control7.5 HighN/A1%Aug 5, 2026
CVE-2026-16100: Allocation of Resources Without Limits or Throttling6.5 MediumN/A1%Aug 5, 2026
CVE-2026-16071: Improper Neutralization of Special Elements used in an LDAP Query5.4 MediumN/A0%Aug 5, 2026
CVE-2026-16443: Improper Verification of Cryptographic Signature7.4 HighN/A0%Aug 5, 2026
CVE-2026-71294: Deserialization of Untrusted Data7.6 HighN/A0%Aug 5, 2026
CVE-2026-71293: Exposure of Sensitive Information to an Unauthorized Actor6.2 MediumN/A0%Aug 5, 2026
CVE-2026-71292: Improper Neutralization of Special Elements used in an SQL Command7.2 HighN/A0%Aug 5, 2026
CVE-2026-71291: Improper Neutralization of Special Elements Used in a Template Engine8.8 HighN/A0%Aug 5, 2026
CVE-2026-71289: Missing Authentication for Critical Function9.8 CriticalN/A0%Aug 5, 2026
CVE-2026-71288: Improper Neutralization of Special Elements used in an SQL Command8.8 HighN/A0%Aug 5, 2026
CVE-2026-71287: Improper Neutralization of Special Elements used in an SQL Command8.8 HighN/A0%Aug 5, 2026
CVE-2026-71286: Improper Neutralization of Special Elements Used in a Template Engine6.1 MediumN/A0%Aug 5, 2026
CVE-2026-71285: Improper Neutralization of Input During Web Page Generation8.1 HighN/A0%Aug 5, 2026
CVE-2026-71284: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A1%Aug 5, 2026
CVE-2026-71283: Improper Limitation of a Pathname to a Restricted Directory4.9 MediumN/A0%Aug 5, 2026
CVE-2026-71282: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 5, 2026
CVE-2026-71281: Deserialization of Untrusted Data8.8 HighN/A0%Aug 5, 2026
CVE-2026-71280: Server-Side Request Forgery (SSRF)8.5 HighN/A0%Aug 5, 2026
CVE-2026-71279: Improper Limitation of a Pathname to a Restricted Directory8.0 HighN/A0%Aug 5, 2026
25101-25125 of 399626