The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2026-87238: Improper Privilege Management8.8 HighN/A0%Sep 15, 2026
CVE-2026-87237: Improper Privilege Management7.5 HighN/A0%Sep 15, 2026
CVE-2026-87236: Undefined Security Weakness7.1 HighN/A0%Sep 15, 2026
CVE-2026-87235: Undefined Security Weakness7.4 HighN/A0%Sep 15, 2026
CVE-2026-87234: Undefined Security Weakness8.1 HighN/A0%Sep 15, 2026
CVE-2026-87233: Undefined Security Weakness7.6 HighN/A0%Sep 15, 2026
CVE-2026-87232: Undefined Security Weakness8.1 HighN/A0%Sep 15, 2026
CVE-2026-87231: Improper Privilege Management8.1 HighN/A0%Sep 15, 2026
CVE-2026-87230: Undefined Security Weakness10.0 CriticalN/A0%Sep 15, 2026
CVE-2026-87229: Undefined Security Weakness8.2 HighN/A0%Sep 15, 2026
CVE-2026-87228: Undefined Security Weakness8.2 HighN/A0%Sep 15, 2026
CVE-2026-87227: Improper Privilege Management8.8 HighN/A0%Sep 15, 2026
CVE-2026-87226: Improper Privilege Management8.8 HighN/A0%Sep 15, 2026
CVE-2026-87225: Undefined Security Weakness7.1 HighN/A0%Sep 15, 2026
CVE-2026-87224: Improper Privilege Management8.8 HighN/A0%Sep 15, 2026
CVE-2026-87223: Undefined Security Weakness9.1 CriticalN/A0%Sep 15, 2026
CVE-2026-87222: Uncontrolled Resource Consumption7.5 HighN/A0%Sep 15, 2026
CVE-2026-87221: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A0%Sep 15, 2026
CVE-2026-87220: Improper Access Control7.1 HighN/A0%Sep 15, 2026
CVE-2026-87219: Improper Access Control8.4 HighN/A0%Sep 15, 2026
CVE-2026-87218: Improper Access Control8.1 HighN/A0%Sep 15, 2026
CVE-2026-87217: Improper Authentication9.1 CriticalN/A0%Sep 15, 2026
CVE-2026-87216: Improper Privilege Management7.8 HighN/A0%Sep 15, 2026
CVE-2026-87215: Uncontrolled Resource Consumption7.5 HighN/A0%Sep 15, 2026
CVE-2026-87214: Improper Privilege Management9.1 CriticalN/A0%Sep 15, 2026
3201-3225 of 398446