The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2021-42205: Improper Check or Handling of Exceptional Conditions4.7 MediumN/A0%Nov 7, 2022
CVE-2021-39473: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Nov 4, 2022
CVE-2021-41574: Undefined Security WeaknessN/AN/AN/ANov 4, 2022
CVE-2021-41575: Undefined Security Weakness9.8 CriticalN/AN/ANov 4, 2022
CVE-2021-41576: Undefined Security Weakness9.8 CriticalN/AN/ANov 4, 2022
CVE-2021-39432: Double Free6.5 MediumN/A1%Nov 4, 2022
CVE-2021-34686: Undefined Security Weakness9.8 CriticalN/AN/ANov 4, 2022
CVE-2021-34055: Buffer Copy without Checking Size of Input7.8 HighN/A0%Nov 4, 2022
CVE-2021-36906: Authorization Bypass Through User-Controlled Key2.7 LowN/A1%Nov 3, 2022
CVE-2021-44862: Insertion of Sensitive Information into Log File8.4 HighN/A0%Nov 3, 2022
CVE-2021-46846: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Nov 3, 2022
CVE-2021-37823: Improper Neutralization of Special Elements used in an SQL Command4.9 MediumN/A1%Nov 3, 2022
CVE-2021-39077: Cleartext Transmission of Sensitive Information4.4 MediumN/A0%Nov 3, 2022
CVE-2021-46853: Time-of-check Time-of-use (TOCTOU) Race Condition5.9 MediumN/A1%Nov 3, 2022
CVE-2021-45448: Improper Limitation of a Pathname to a Restricted Directory7.1 HighN/A1%Nov 2, 2022
CVE-2021-45447: Cleartext Transmission of Sensitive Information7.7 HighN/A0%Nov 2, 2022
CVE-2021-45446: Exposure of Information Through Directory Listing5.0 MediumN/A0%Nov 2, 2022
CVE-2021-37789: Out-of-bounds Write8.1 HighN/A1%Nov 2, 2022
CVE-2021-27784: Use of a Broken or Risky Cryptographic Algorithm5.9 MediumN/A0%Oct 31, 2022
CVE-2021-44597: Undefined Security WeaknessN/AN/AN/AOct 31, 2022
CVE-2021-40241: Buffer Copy without Checking Size of Input9.8 CriticalN/A1%Oct 31, 2022
CVE-2021-40661: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A5%Oct 31, 2022
CVE-2021-42777: Generation of Error Message Containing Sensitive Information9.8 CriticalN/A1%Oct 29, 2022
CVE-2021-36898: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A1%Oct 28, 2022
CVE-2021-36864: Improper Neutralization of Input During Web Page Generation3.4 LowN/A0%Oct 28, 2022
2601-2625 of 23470