The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-28419: Undefined Security Weakness8.8 HighN/A2%Nov 9, 2021
CVE-2020-10054: Improper Input Validation5.5 MediumN/A0%Nov 9, 2021
CVE-2020-10053: Cleartext Storage of Sensitive Information5.5 MediumN/A0%Nov 9, 2021
CVE-2020-10052: Insertion of Sensitive Information into Log File5.5 MediumN/A0%Nov 9, 2021
CVE-2020-23572: Unrestricted Upload of File with Dangerous Type8.8 HighN/A1%Nov 8, 2021
CVE-2020-4160: Undefined Security Weakness5.9 MediumN/A1%Nov 8, 2021
CVE-2020-4153: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Nov 8, 2021
CVE-2020-4152: Cleartext Transmission of Sensitive Information5.9 MediumN/A1%Nov 8, 2021
CVE-2020-23129: Undefined Security Weakness9.8 CriticalN/AN/ANov 7, 2021
CVE-2020-23130: Undefined Security Weakness9.8 CriticalN/AN/ANov 7, 2021
CVE-2020-22226: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Nov 5, 2021
CVE-2020-22225: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Nov 5, 2021
CVE-2020-22224: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Nov 5, 2021
CVE-2020-22223: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Nov 5, 2021
CVE-2020-22222: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Nov 5, 2021
CVE-2020-23567: Divide By Zero5.5 MediumN/A1%Nov 5, 2021
CVE-2020-23566: Loop with Unreachable Exit Condition5.5 MediumN/A1%Nov 5, 2021
CVE-2020-23565: Undefined Security Weakness7.8 HighN/A1%Nov 5, 2021
CVE-2020-21139: Cross-Site Request Forgery (CSRF)6.5 MediumN/A0%Nov 4, 2021
CVE-2020-25368: Improper Neutralization of Special Elements used in an OS Command9.8 CriticalN/A9%Nov 4, 2021
CVE-2020-25366: Missing Authorization9.1 CriticalN/A2%Nov 4, 2021
CVE-2020-25367: Improper Neutralization of Special Elements used in an OS Command9.8 CriticalN/A9%Nov 4, 2021
CVE-2020-6931: Undefined Security Weakness7.8 HighN/A0%Nov 3, 2021
CVE-2020-28416: Undefined Security Weakness7.8 HighN/A0%Nov 3, 2021
CVE-2020-18263: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A1%Nov 3, 2021
2551-2575 of 21077