The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-64550: Undefined Security Weakness7.3 HighN/A0%Jul 27, 2026
CVE-2026-64549: Undefined Security WeaknessN/AN/A0%Jul 27, 2026
CVE-2026-64548: Undefined Security Weakness8.4 HighN/A0%Jul 27, 2026
CVE-2026-64547: Undefined Security Weakness8.1 HighN/A0%Jul 27, 2026
CVE-2026-64546: Undefined Security Weakness7.1 HighN/A0%Jul 27, 2026
CVE-2026-64545: Undefined Security Weakness7.5 HighN/A1%Jul 27, 2026
CVE-2026-64544: Undefined Security WeaknessN/AN/A0%Jul 27, 2026
CVE-2026-64543: Undefined Security Weakness7.8 HighN/A0%Jul 27, 2026
CVE-2026-64542: Undefined Security WeaknessN/AN/A0%Jul 27, 2026
CVE-2026-64541: Undefined Security Weakness9.8 CriticalN/A1%Jul 27, 2026
CVE-2026-64540: Undefined Security Weakness8.1 HighN/A0%Jul 27, 2026
CVE-2026-64539: Undefined Security Weakness7.8 HighN/A0%Jul 27, 2026
CVE-2026-64538: Undefined Security WeaknessN/AN/A0%Jul 27, 2026
CVE-2026-64537: Undefined Security WeaknessN/AN/A0%Jul 27, 2026
CVE-2026-59730: URL Redirection to Untrusted SiteN/A2.1 Low0%Jul 27, 2026
CVE-2026-59728: XML Injection (aka Blind XPath Injection)4.3 MediumN/A0%Jul 27, 2026
CVE-2026-43822: Use After Free9.8 CriticalN/A1%Jul 27, 2026
CVE-2026-43821: Improper Access Control6.5 MediumN/A0%Jul 27, 2026
CVE-2026-43819: Improper Access Control5.5 MediumN/A0%Jul 27, 2026
CVE-2026-43818: Integer Overflow or Wraparound8.8 HighN/A1%Jul 27, 2026
CVE-2026-43817: Out-of-bounds Read5.5 MediumN/A0%Jul 27, 2026
CVE-2026-43816: Out-of-bounds Write5.5 MediumN/A0%Jul 27, 2026
CVE-2026-43814: Use After Free9.8 CriticalN/A1%Jul 27, 2026
CVE-2026-43813: Improper Input Validation7.1 HighN/A0%Jul 27, 2026
CVE-2026-43812: Use After Free9.8 CriticalN/A1%Jul 27, 2026
26251-26275 of 552652