The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-65561: Improper Neutralization of Input During Web Page Generation6.5 MediumN/A0%Jul 27, 2026
CVE-2026-65558: Server-Side Request Forgery (SSRF)5.4 MediumN/A0%Jul 27, 2026
CVE-2026-65557: Improper Neutralization of Input During Web Page Generation5.9 MediumN/A0%Jul 27, 2026
CVE-2026-65436: Improper Limitation of a Pathname to a Restricted Directory6.8 MediumN/A0%Jul 27, 2026
CVE-2026-65435: Missing Authorization6.5 MediumN/A0%Jul 27, 2026
CVE-2026-65434: Insertion of Sensitive Information Into Sent Data6.5 MediumN/A0%Jul 27, 2026
CVE-2026-65433: Missing Authorization6.5 MediumN/A0%Jul 27, 2026
CVE-2026-59560: Missing Authorization6.5 MediumN/A0%Jul 27, 2026
CVE-2026-59559: Improper Neutralization of Input During Web Page Generation6.5 MediumN/A0%Jul 27, 2026
CVE-2026-59558: Improper Neutralization of Input During Web Page Generation7.1 HighN/A0%Jul 27, 2026
CVE-2026-59557: Missing Authorization6.5 MediumN/A0%Jul 27, 2026
CVE-2026-59556: Improper Neutralization of Input During Web Page Generation7.1 HighN/A0%Jul 27, 2026
CVE-2026-59553: Improper Neutralization of Input During Web Page Generation7.1 HighN/A0%Jul 27, 2026
CVE-2026-59552: Server-Side Request Forgery (SSRF)7.2 HighN/A0%Jul 27, 2026
CVE-2026-59551: Improper Neutralization of Special Elements used in an SQL Command8.5 HighN/A0%Jul 27, 2026
CVE-2026-59550: Improper Neutralization of Special Elements used in an SQL Command9.3 CriticalN/A0%Jul 27, 2026
CVE-2026-59549: Improper Neutralization of Special Elements used in an SQL Command9.3 CriticalN/A0%Jul 27, 2026
CVE-2026-59548: Exposure of Sensitive System Information to an Unauthorized Control Sphere7.5 HighN/A0%Jul 27, 2026
CVE-2026-59546: Authorization Bypass Through User-Controlled Key7.4 HighN/A0%Jul 27, 2026
CVE-2026-59539: Authorization Bypass Through User-Controlled Key7.5 HighN/A0%Jul 27, 2026
CVE-2026-59538: Improper Neutralization of Special Elements used in an SQL Command9.3 CriticalN/A0%Jul 27, 2026
CVE-2026-59537: Improper Neutralization of Special Elements used in an SQL Command7.6 HighN/A0%Jul 27, 2026
CVE-2026-59536: Missing Authorization7.5 HighN/A0%Jul 27, 2026
CVE-2026-59535: Missing Authorization7.3 HighN/A0%Jul 27, 2026
CVE-2026-59534: Missing Authorization7.5 HighN/A0%Jul 27, 2026
26401-26425 of 552652