The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-8457: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8456: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8455: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8454: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8453: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8452: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-8451: Undefined Security WeaknessN/AN/AN/AJan 22, 2026
CVE-2020-36930: Unquoted Search Path or Element7.8 High8.5 High0%Jan 16, 2026
CVE-2020-36929: Unquoted Search Path or Element7.8 High8.5 High0%Jan 16, 2026
CVE-2020-36928: Unquoted Search Path or Element7.8 High8.5 High0%Jan 16, 2026
CVE-2020-36927: Unquoted Search Path or Element7.8 High8.5 High0%Jan 16, 2026
CVE-2020-36926: Exposure of Sensitive System Information to an Unauthorized Control Sphere7.5 High6.9 Medium0%Jan 16, 2026
CVE-2020-36919: Improper Neutralization of Input During Web Page Generation6.1 Medium5.1 Medium0%Jan 13, 2026
CVE-2020-36911: Use of Hard-coded Credentials9.8 Critical9.3 Critical1%Jan 13, 2026
CVE-2020-36875: Improper Control of Generation of CodeN/A9.3 Critical0%Jan 9, 2026
CVE-2020-36925: Insufficient Entropy9.8 Critical8.7 High1%Jan 6, 2026
CVE-2020-36924: Inclusion of Functionality from Untrusted Control Sphere6.1 Medium5.3 Medium0%Jan 6, 2026
CVE-2020-36923: Authorization Bypass Through User-Controlled Key9.8 Critical6.9 Medium0%Jan 6, 2026
CVE-2020-36922: Exposure of Sensitive System Information to an Unauthorized Control Sphere7.5 High6.9 Medium0%Jan 6, 2026
CVE-2020-36921: Exposure of Information Through Directory Listing7.5 High6.9 Medium0%Jan 6, 2026
CVE-2020-36920: Incorrect Authorization8.8 High8.7 High0%Jan 6, 2026
CVE-2020-36918: Cross-Site Request Forgery (CSRF)4.3 Medium5.1 Medium0%Jan 6, 2026
CVE-2020-36917: Cleartext Transmission of Sensitive Information7.5 High8.6 High0%Jan 6, 2026
CVE-2020-36916: Incorrect Permission Assignment for Critical Resource8.8 High8.5 High0%Jan 6, 2026
CVE-2020-36915: Use of Hard-coded Credentials7.5 High8.7 High0%Jan 6, 2026
351-375 of 21077