The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2026-87266: Undefined Security Weakness8.2 HighN/A0%Sep 15, 2026
CVE-2026-87265: Undefined Security Weakness8.1 HighN/A0%Sep 15, 2026
CVE-2026-87264: Improper Access Control7.7 HighN/A0%Sep 15, 2026
CVE-2026-87262: Improper Access Control7.1 HighN/A0%Sep 15, 2026
CVE-2026-87261: Improper Access Control7.3 HighN/A0%Sep 15, 2026
CVE-2026-87260: Improper Access Control7.3 HighN/A0%Sep 15, 2026
CVE-2026-87259: Improper Access Control8.4 HighN/A0%Sep 15, 2026
CVE-2026-87258: Improper Access Control7.6 HighN/A0%Sep 15, 2026
CVE-2026-87257: Improper Access Control7.7 HighN/A0%Sep 15, 2026
CVE-2026-87256: Improper Access Control7.7 HighN/A0%Sep 15, 2026
CVE-2026-87254: Improper Access Control7.5 HighN/A0%Sep 15, 2026
CVE-2026-87253: Improper Access Control6.1 MediumN/A0%Sep 15, 2026
CVE-2026-87252: Improper Access Control6.8 MediumN/A0%Sep 15, 2026
CVE-2026-87250: Improper Access Control7.6 HighN/A0%Sep 15, 2026
CVE-2026-87249: Improper Access Control7.1 HighN/A0%Sep 15, 2026
CVE-2026-87248: Improper Privilege Management6.7 MediumN/A0%Sep 15, 2026
CVE-2026-87247: Improper Privilege Management7.5 HighN/A0%Sep 15, 2026
CVE-2026-87246: Improper Privilege Management7.2 HighN/A0%Sep 15, 2026
CVE-2026-87245: Improper Privilege Management8.0 HighN/A0%Sep 15, 2026
CVE-2026-87244: Improper Privilege Management7.2 HighN/A0%Sep 15, 2026
CVE-2026-87243: Undefined Security Weakness8.0 HighN/A0%Sep 15, 2026
CVE-2026-87242: Undefined Security Weakness7.4 HighN/A0%Sep 15, 2026
CVE-2026-87241: Undefined Security Weakness8.1 HighN/A0%Sep 15, 2026
CVE-2026-87240: Improper Privilege Management7.0 HighN/A0%Sep 15, 2026
CVE-2026-87239: Improper Privilege Management7.2 HighN/A0%Sep 15, 2026
3176-3200 of 401370