The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-20875: NULL Pointer Dereference7.5 HighN/A2%Jan 13, 2026
CVE-2026-20874: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Jan 13, 2026
CVE-2026-20873: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Jan 13, 2026
CVE-2026-20872: External Control of File Name or Path6.5 MediumN/A20%Jan 13, 2026
CVE-2026-20871: Use After Free7.8 HighN/A4%Jan 13, 2026
CVE-2026-20870: Use After Free7.8 HighN/A0%Jan 13, 2026
CVE-2026-20869: Concurrent Execution using Shared Resource with Improper Synchronization7.0 HighN/A0%Jan 13, 2026
CVE-2026-20868: Heap-based Buffer Overflow8.8 HighN/A1%Jan 13, 2026
CVE-2026-20867: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Jan 13, 2026
CVE-2026-20866: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Jan 13, 2026
CVE-2026-20865: Use After Free7.8 HighN/A0%Jan 13, 2026
CVE-2026-20864: Heap-based Buffer Overflow7.8 HighN/A1%Jan 13, 2026
CVE-2026-20863: Double Free7.0 HighN/A0%Jan 13, 2026
CVE-2026-20862: Exposure of Sensitive Information to an Unauthorized Actor5.5 MediumN/A1%Jan 13, 2026
CVE-2026-20861: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Jan 13, 2026
CVE-2026-20860: Access of Resource Using Incompatible Type7.8 HighN/A8%Jan 13, 2026
CVE-2026-20859: Use After Free7.8 HighN/A0%Jan 13, 2026
CVE-2026-20858: Use After Free7.8 HighN/A0%Jan 13, 2026
CVE-2026-20857: Untrusted Pointer Dereference7.8 HighN/A0%Jan 13, 2026
CVE-2026-20856: Improper Input Validation8.1 HighN/A1%Jan 13, 2026
CVE-2026-20854: Use After Free7.5 HighN/A1%Jan 13, 2026
CVE-2026-20853: Concurrent Execution using Shared Resource with Improper Synchronization7.4 HighN/A0%Jan 13, 2026
CVE-2026-20852: Incorrect Privilege Assignment7.7 HighN/A1%Jan 13, 2026
CVE-2026-20851: Out-of-bounds Read6.2 MediumN/A1%Jan 13, 2026
CVE-2026-20849: Reliance on Untrusted Inputs in a Security Decision7.5 HighN/A1%Jan 13, 2026
2676-2700 of 16011