The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-45484: Deserialization of Untrusted Data8.8 HighN/A1%Jun 9, 2026
CVE-2026-45481: Improper Neutralization of Input During Web Page Generation7.3 HighN/A0%Jun 9, 2026
CVE-2026-47640: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-47634: Improper Neutralization of Special Elements in Output Used by a Downstream Component7.3 HighN/A1%Jun 9, 2026
CVE-2026-47293: Use After Free7.0 HighN/A0%Jun 9, 2026
CVE-2026-45465: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-45464: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-45463: Integer Underflow (Wrap or Wraparound)8.4 HighN/A0%Jun 9, 2026
CVE-2026-45462: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-45459: Protection Mechanism Failure3.3 LowN/A0%Jun 9, 2026
CVE-2026-45457: Out-of-bounds Read7.8 HighN/A0%Jun 9, 2026
CVE-2026-45455: Out-of-bounds Read3.3 LowN/A1%Jun 9, 2026
CVE-2026-45454: Improper Limitation of a Pathname to a Restricted Directory6.5 MediumN/A0%Jun 9, 2026
CVE-2026-44822: Out-of-bounds Read8.2 HighN/A0%Jun 9, 2026
CVE-2026-33113: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-47641: Improper Input Validation4.6 MediumN/A1%Jun 9, 2026
CVE-2026-47639: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-47638: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-47637: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-47636: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-47635: Heap-based Buffer Overflow8.4 HighN/A0%Jun 9, 2026
CVE-2026-47298: Improper Authorization8.0 HighN/A0%Jun 9, 2026
CVE-2026-45645: Untrusted Pointer Dereference7.8 HighN/A0%Jun 9, 2026
CVE-2026-45643: Untrusted Pointer Dereference7.8 HighN/A0%Jun 9, 2026
CVE-2026-45466: Heap-based Buffer Overflow3.3 LowN/A0%Jun 9, 2026
351-375 of 1558