The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-21253: Use After Free7.0 HighN/A1%Feb 10, 2026
CVE-2026-21255: Improper Access Control8.8 HighN/A0%Feb 10, 2026
CVE-2026-21508: Improper Authentication7.0 HighN/A0%Feb 10, 2026
CVE-2026-21525: NULL Pointer Dereference6.2 MediumN/A5%Feb 10, 2026
CVE-2026-21510: Protection Mechanism Failure8.8 HighN/A26%Feb 10, 2026
CVE-2026-21513: Protection Mechanism Failure8.8 HighN/A16%Feb 10, 2026
CVE-2026-21533: Improper Privilege Management7.8 HighN/A4%Feb 10, 2026
CVE-2026-21236: Heap-based Buffer Overflow7.8 HighN/A0%Feb 10, 2026
CVE-2026-21234: Concurrent Execution using Shared Resource with Improper Synchronization7.0 HighN/A0%Feb 10, 2026
CVE-2026-21235: Use After Free7.3 HighN/A1%Feb 10, 2026
CVE-2026-21242: Use After Free7.0 HighN/A0%Feb 10, 2026
CVE-2026-21246: Heap-based Buffer Overflow7.8 HighN/A0%Feb 10, 2026
CVE-2026-21247: Improper Input Validation7.3 HighN/A1%Feb 10, 2026
CVE-2026-21248: Heap-based Buffer Overflow7.3 HighN/A1%Feb 10, 2026
CVE-2026-21517: Improper Link Resolution Before File Access4.7 MediumN/A0%Feb 10, 2026
CVE-2026-21519: Access of Resource Using Incompatible Type7.8 HighN/A2%Feb 10, 2026
CVE-2025-62676: Improper Link Resolution Before File Access7.1 HighN/A0%Feb 10, 2026
CVE-2026-25925: Deserialization of Untrusted Data7.8 HighN/A0%Feb 9, 2026
CVE-2026-24466: Unquoted Search Path or Element6.7 Medium8.4 High0%Feb 9, 2026
CVE-2020-37160: Incorrect Default Permissions6.2 Medium8.5 High0%Feb 7, 2026
CVE-2026-25635: Improper Limitation of a Pathname to a Restricted Directory8.6 HighN/A0%Feb 6, 2026
CVE-2026-1769: Improper Neutralization of Input During Web Page Generation5.3 MediumN/A0%Feb 6, 2026
CVE-2025-10314: Incorrect Default Permissions8.8 HighN/A0%Feb 5, 2026
CVE-2019-25281: Unquoted Search Path or Element7.8 High8.5 High0%Feb 5, 2026
CVE-2019-25271: Unquoted Search Path or Element7.8 High8.5 High0%Feb 5, 2026
2526-2550 of 16013