The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-67861: Uncontrolled Resource Consumption7.5 HighN/A0%Aug 4, 2026
CVE-2026-67860: Heap-based Buffer Overflow7.5 HighN/A0%Aug 4, 2026
CVE-2026-67859: Buffer Copy without Checking Size of Input7.5 HighN/A0%Aug 4, 2026
CVE-2026-67858: Buffer Copy without Checking Size of Input7.5 HighN/A0%Aug 4, 2026
CVE-2026-67857: Out-of-bounds Read7.5 HighN/A0%Aug 4, 2026
CVE-2026-67856: Uncontrolled Resource Consumption7.5 HighN/A0%Aug 4, 2026
CVE-2026-67855: Uncontrolled Resource Consumption7.5 HighN/A0%Aug 4, 2026
CVE-2026-52370: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 4, 2026
CVE-2026-51144: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 4, 2026
CVE-2026-45103: Integer Overflow or Wraparound7.5 HighN/A0%Aug 4, 2026
CVE-2026-45100: Buffer Copy without Checking Size of Input9.1 CriticalN/A1%Aug 4, 2026
CVE-2026-45084: NULL Pointer DereferenceN/A8.7 High0%Aug 4, 2026
CVE-2026-18817: Improper Authorization2.2 Low2.1 Low0%Aug 4, 2026
CVE-2026-18816: Improper Authentication5.0 Medium2.3 Low0%Aug 4, 2026
CVE-2026-18814: Improper Neutralization of Special Elements used in a Command7.2 High7.3 High3%Aug 4, 2026
CVE-2026-70619: Missing Authorization8.8 High8.7 High0%Aug 4, 2026
CVE-2026-70588: Improper Neutralization of Input During Web Page Generation5.0 MediumN/A0%Aug 4, 2026
CVE-2026-70494: Missing Authorization8.1 HighN/A0%Aug 4, 2026
CVE-2026-70493: Inefficient Regular Expression Complexity6.5 MediumN/A0%Aug 4, 2026
CVE-2026-70492: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Aug 4, 2026
CVE-2026-70491: Exposure of Sensitive Information to an Unauthorized Actor6.5 MediumN/A0%Aug 4, 2026
CVE-2026-70490: Incorrect Authorization6.3 MediumN/A0%Aug 4, 2026
CVE-2026-70489: Uncontrolled Resource Consumption6.5 MediumN/A0%Aug 4, 2026
CVE-2026-70488: Authorization Bypass Through User-Controlled Key4.3 MediumN/A0%Aug 4, 2026
CVE-2026-70487: Missing Authorization6.5 MediumN/A0%Aug 4, 2026
25301-25325 of 400317