The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-55997: Cleartext Storage of Sensitive Information8.8 HighN/A0%Aug 5, 2026
CVE-2026-55996: Allocation of Resources Without Limits or Throttling4.3 MediumN/A0%Aug 5, 2026
CVE-2026-55747: Improper Limitation of a Pathname to a Restricted Directory6.8 MediumN/A0%Aug 5, 2026
CVE-2026-55739: Authorization Bypass Through User-Controlled Key8.3 HighN/A0%Aug 5, 2026
CVE-2026-54418: Missing Authorization8.1 HighN/A0%Aug 5, 2026
CVE-2026-54416: Unrestricted Upload of File with Dangerous Type7.2 HighN/A0%Aug 5, 2026
CVE-2026-4431: Missing Authorization9.1 CriticalN/A0%Aug 5, 2026
CVE-2026-18881: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A0%Aug 5, 2026
CVE-2026-17532: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 5, 2026
CVE-2026-17505: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 5, 2026
CVE-2026-15281: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 5, 2026
CVE-2026-12000: Missing Authorization7.5 HighN/A1%Aug 5, 2026
CVE-2026-11977: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 5, 2026
CVE-2026-11969: Improper Neutralization of Special Elements used in an SQL Command4.9 MediumN/A0%Aug 5, 2026
CVE-2026-11920: Improper Neutralization of Special Elements used in an SQL Command4.9 MediumN/A0%Aug 5, 2026
CVE-2026-11454: Authorization Bypass Through User-Controlled Key6.5 MediumN/A0%Aug 5, 2026
CVE-2026-71201: Incorrect Authorization5.0 MediumN/A0%Aug 5, 2026
CVE-2026-70375: Improper Neutralization of Special Elements used in an OS Command8.8 HighN/A1%Aug 5, 2026
CVE-2026-70374: Improper Neutralization of Special Elements used in an OS Command8.8 HighN/A1%Aug 5, 2026
CVE-2026-68080: Insufficient Control of Network Message Volume (Network Amplification)6.5 MediumN/A0%Aug 5, 2026
CVE-2026-68078: Allocation of Resources Without Limits or Throttling6.5 MediumN/A0%Aug 5, 2026
CVE-2026-68077: Unchecked Input for Loop Condition6.5 MediumN/A0%Aug 5, 2026
CVE-2026-68075: Allocation of Resources Without Limits or Throttling6.5 MediumN/A0%Aug 5, 2026
CVE-2026-68073: Uncontrolled Recursion7.5 HighN/A0%Aug 5, 2026
CVE-2026-67592: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Aug 5, 2026
25201-25225 of 400966