The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-12903: Out-of-bounds Write7.8 HighN/A0%Nov 15, 2021
CVE-2020-12962: Undefined Security Weakness7.8 HighN/A0%Nov 15, 2021
CVE-2020-12905: Out-of-bounds Read5.5 MediumN/A0%Nov 15, 2021
CVE-2020-12901: Use After Free5.5 MediumN/A0%Nov 15, 2021
CVE-2020-12898: Out-of-bounds Write7.8 HighN/A0%Nov 15, 2021
CVE-2020-12892: Untrusted Search Path7.8 HighN/A0%Nov 15, 2021
CVE-2020-12963: Release of Invalid Pointer or Reference7.8 HighN/A0%Nov 15, 2021
CVE-2020-12895: Out-of-bounds Write7.8 HighN/A0%Nov 15, 2021
CVE-2020-12929: Improper Input Validation7.8 HighN/A0%Nov 15, 2021
CVE-2020-12920: Undefined Security Weakness5.5 MediumN/A0%Nov 15, 2021
CVE-2020-12902: Undefined Security Weakness7.8 HighN/A0%Nov 15, 2021
CVE-2020-12897: Undefined Security Weakness5.5 MediumN/A0%Nov 15, 2021
CVE-2020-12899: Undefined Security Weakness7.1 HighN/A0%Nov 15, 2021
CVE-2020-12900: Undefined Security Weakness7.8 HighN/A0%Nov 15, 2021
CVE-2020-12904: Out-of-bounds Read5.5 MediumN/A0%Nov 15, 2021
CVE-2020-12964: Undefined Security Weakness7.8 HighN/A0%Nov 15, 2021
CVE-2020-16152: Inclusion of Functionality from Untrusted Control Sphere9.8 CriticalN/A36%Nov 14, 2021
CVE-2020-14424: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A2%Nov 14, 2021
CVE-2020-21141: Cross-Site Request Forgery (CSRF)8.8 HighN/A1%Nov 12, 2021
CVE-2020-4146: Incorrect Permission Assignment for Critical Resource5.3 MediumN/A1%Nov 12, 2021
CVE-2020-4140: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Nov 12, 2021
CVE-2020-23906: Insufficient Verification of Data Authenticity5.5 MediumN/A0%Nov 10, 2021
CVE-2020-23904: Out-of-bounds Write5.5 MediumN/A1%Nov 10, 2021
CVE-2020-23903: Divide By Zero5.5 MediumN/A1%Nov 10, 2021
CVE-2020-23902: Buffer Copy without Checking Size of Input5.5 MediumN/A1%Nov 10, 2021
2501-2525 of 21077