The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-59532: Improper Validation of Specified Quantity in Input7.5 HighN/A0%Jul 27, 2026
CVE-2026-59531: Improper Validation of Specified Quantity in Input7.5 HighN/A0%Jul 27, 2026
CVE-2026-59530: Missing Authorization7.5 HighN/A0%Jul 27, 2026
CVE-2026-59529: Missing Authorization7.5 HighN/A0%Jul 27, 2026
CVE-2026-59528: Exposure of Sensitive System Information to an Unauthorized Control Sphere7.5 HighN/A0%Jul 27, 2026
CVE-2026-59527: Improper Neutralization of Special Elements used in an SQL Command9.3 CriticalN/A0%Jul 27, 2026
CVE-2026-10819: Improper Handling of Highly Compressed Data (Data Amplification)6.5 MediumN/A0%Jul 27, 2026
CVE-2026-10600: Allocation of Resources Without Limits or Throttling4.3 MediumN/A0%Jul 27, 2026
CVE-2025-59181: Path Traversal: '.../...//'N/A4.8 Medium0%Jul 27, 2026
CVE-2025-59180: Use of Hard-coded CredentialsN/A5.1 Medium0%Jul 27, 2026
CVE-2025-59178: Exposure of Sensitive System Information to an Unauthorized Control SphereN/A4.8 Medium0%Jul 27, 2026
CVE-2025-59177: Generation of Error Message Containing Sensitive InformationN/A6.8 Medium0%Jul 27, 2026
CVE-2025-59172: Improper Neutralization of Special Elements used in an OS CommandN/A8.5 High0%Jul 27, 2026
CVE-2026-65879: Use of Hard-coded Credentials9.8 CriticalN/A0%Jul 27, 2026
CVE-2026-65878: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.3 High0%Jul 27, 2026
CVE-2026-65877: Improper Neutralization of Special Elements used in an SQL CommandN/A8.2 High0%Jul 27, 2026
CVE-2026-65876: Improper Neutralization of Special Elements used in an SQL CommandN/A9.2 Critical0%Jul 27, 2026
CVE-2026-65766: Improper Neutralization of Special Elements used in an SQL CommandN/A9.2 Critical0%Jul 27, 2026
CVE-2026-61511: Improper Neutralization of Directives in Dynamically Evaluated Code9.8 Critical9.3 Critical71%Jul 27, 2026
CVE-2026-17514: Improper Limitation of a Pathname to a Restricted Directory5.3 Medium1.9 Low0%Jul 27, 2026
CVE-2026-17513: Reachable Assertion3.3 Low1.9 Low0%Jul 27, 2026
CVE-2026-15003: Out-of-bounds Read5.6 MediumN/A0%Jul 27, 2026
CVE-2026-59690: Missing Authorization8.0 HighN/A0%Jul 27, 2026
CVE-2026-59689: Incorrect Authorization8.0 HighN/A0%Jul 27, 2026
CVE-2026-59688: Improper Neutralization of Special Elements used in an OS Command8.4 HighN/A1%Jul 27, 2026
26426-26450 of 552652