The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-45461: Use After Free8.4 HighN/A0%Jun 9, 2026
CVE-2026-45460: Buffer Over-read4.7 MediumN/A0%Jun 9, 2026
CVE-2026-45458: Use After Free8.4 HighN/A0%Jun 9, 2026
CVE-2026-45456: Access of Resource Using Incompatible Type8.4 HighN/A0%Jun 9, 2026
CVE-2026-45453: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Jun 9, 2026
CVE-2026-44824: Heap-based Buffer Overflow7.8 HighN/A0%Jun 9, 2026
CVE-2026-44823: Numeric Truncation Error7.8 HighN/A0%Jun 9, 2026
CVE-2026-44821: Out-of-bounds Read5.5 MediumN/A0%Jun 9, 2026
CVE-2026-44820: Out-of-bounds Read7.8 HighN/A0%Jun 9, 2026
CVE-2026-44819: Heap-based Buffer Overflow7.8 HighN/A0%Jun 9, 2026
CVE-2026-44818: Concurrent Execution using Shared Resource with Improper Synchronization7.0 HighN/A0%Jun 9, 2026
CVE-2026-44817: Access of Resource Using Incompatible Type7.8 HighN/A0%Jun 9, 2026
CVE-2026-45483: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-45485: Out-of-bounds Read3.3 LowN/A0%Jun 9, 2026
CVE-2026-45486: Use After Free7.8 HighN/A0%Jun 9, 2026
CVE-2026-45479: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-45474: Use After Free8.4 HighN/A0%Jun 9, 2026
CVE-2026-45471: Untrusted Pointer Dereference7.8 HighN/A0%Jun 9, 2026
CVE-2026-45472: Use After Free8.4 HighN/A0%Jun 9, 2026
CVE-2026-45475: Heap-based Buffer Overflow7.8 HighN/A0%Jun 9, 2026
CVE-2026-45469: Integer Underflow (Wrap or Wraparound)7.8 HighN/A0%Jun 9, 2026
CVE-2026-45468: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-45467: Improper Neutralization of Input During Web Page Generation4.6 MediumN/A0%Jun 9, 2026
CVE-2026-47294: Improper Neutralization of Special Elements used in an OS Command8.0 HighN/A1%Jun 1, 2026
CVE-2026-45659: Deserialization of Untrusted Data8.8 HighN/A3%May 22, 2026
376-400 of 1558