The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2021-36614: NULL Pointer Dereference6.5 MediumN/A2%May 11, 2022
CVE-2021-31330: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%May 11, 2022
CVE-2021-33317: NULL Pointer Dereference7.5 HighN/A1%May 11, 2022
CVE-2021-33315: Improper Input Validation9.8 CriticalN/A1%May 11, 2022
CVE-2021-33316: Improper Input Validation9.8 CriticalN/A1%May 11, 2022
CVE-2021-30361: Improper Neutralization of Special Elements used in an OS Command6.7 MediumN/A4%May 11, 2022
CVE-2021-46744: Observable Discrepancy6.5 MediumN/A0%May 11, 2022
CVE-2021-26400: Undefined Security Weakness4.0 MediumN/A0%May 11, 2022
CVE-2021-26388: Out-of-bounds Read5.5 MediumN/A0%May 11, 2022
CVE-2021-26376: Undefined Security Weakness5.5 MediumN/A0%May 11, 2022
CVE-2021-26373: Improper Input Validation5.5 MediumN/A0%May 11, 2022
CVE-2021-26348: Undefined Security Weakness5.5 MediumN/A0%May 11, 2022
CVE-2021-26364: Improper Restriction of Operations within the Bounds of a Memory Buffer5.5 MediumN/A0%May 11, 2022
CVE-2021-26349: Undefined Security Weakness5.5 MediumN/A0%May 11, 2022
CVE-2021-26378: Improper Restriction of Operations within the Bounds of a Memory Buffer5.5 MediumN/A0%May 11, 2022
CVE-2021-26347: Improper Validation of Specified Quantity in Input4.7 MediumN/A0%May 11, 2022
CVE-2021-26342: Undefined Security Weakness3.3 LowN/A0%May 11, 2022
CVE-2021-26375: Undefined Security Weakness5.5 MediumN/A0%May 11, 2022
CVE-2021-26372: Improper Restriction of Operations within the Bounds of a Memory Buffer5.5 MediumN/A0%May 11, 2022
CVE-2021-26339: Undefined Security Weakness5.5 MediumN/A0%May 11, 2022
CVE-2021-26350: Time-of-check Time-of-use (TOCTOU) Race Condition4.7 MediumN/A0%May 11, 2022
CVE-2021-39059: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%May 11, 2022
CVE-2021-38969: Use of Hard-coded Credentials9.8 CriticalN/A1%May 11, 2022
CVE-2021-43066: Exposure of Resource to Wrong Sphere8.4 HighN/A0%May 11, 2022
CVE-2021-3611: Improper Restriction of Operations within the Bounds of a Memory Buffer6.5 MediumN/A0%May 11, 2022
3576-3600 of 23470