The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-32849: Integer Overflow or Wraparound5.5 Medium5.7 Medium0%May 18, 2026
CVE-2026-8776: Buffer Copy without Checking Size of Input8.8 High7.4 High1%May 18, 2026
CVE-2026-8775: Buffer Copy without Checking Size of Input8.8 High7.4 High1%May 18, 2026
CVE-2026-8764: Buffer Copy without Checking Size of Input7.2 High7.3 High1%May 17, 2026
CVE-2026-8507: Out-of-bounds Write9.8 CriticalN/A1%May 17, 2026
CVE-2018-25328: Buffer Copy without Checking Size of Input8.4 High8.6 High0%May 17, 2026
CVE-2018-25323: Buffer Copy without Checking Size of Input8.4 High8.6 High0%May 17, 2026
CVE-2018-25322: Stack-based Buffer Overflow8.4 High8.6 High0%May 17, 2026
CVE-2026-8733: Stack-based Buffer Overflow6.3 Medium2.1 Low0%May 17, 2026
CVE-2020-37234: Buffer Copy without Checking Size of Input6.2 Medium6.9 Medium0%May 16, 2026
CVE-2026-41963: Stack-based Buffer Overflow2.8 LowN/A0%May 15, 2026
CVE-2025-52532: Time-of-check Time-of-use (TOCTOU) Race ConditionN/A2.0 Low0%May 15, 2026
CVE-2026-43490: Out-of-bounds Write8.8 HighN/A1%May 15, 2026
CVE-2025-29944: Buffer Copy without Checking Size of InputN/A6.8 Medium0%May 15, 2026
CVE-2025-0045: Buffer Copy without Checking Size of InputN/A6.9 Medium0%May 15, 2026
CVE-2026-44673: Integer Overflow or Wraparound7.5 HighN/A1%May 14, 2026
CVE-2026-8577: External Control of Assumed-Immutable Web Parameter8.8 HighN/A0%May 14, 2026
CVE-2026-8573: External Control of Assumed-Immutable Web Parameter8.3 HighN/A0%May 14, 2026
CVE-2026-8567: External Control of Assumed-Immutable Web Parameter4.3 MediumN/A0%May 14, 2026
CVE-2026-8560: Heap-based Buffer Overflow4.3 MediumN/A0%May 14, 2026
CVE-2026-8559: External Control of Assumed-Immutable Web Parameter4.3 MediumN/A0%May 14, 2026
CVE-2026-8552: Heap-based Buffer Overflow4.3 MediumN/A0%May 14, 2026
CVE-2026-8534: External Control of Assumed-Immutable Web Parameter8.3 HighN/A0%May 14, 2026
CVE-2026-8532: External Control of Assumed-Immutable Web Parameter8.8 HighN/A0%May 14, 2026
CVE-2026-8531: Heap-based Buffer Overflow8.8 HighN/A0%May 14, 2026
2776-2800 of 27836