The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2024-43634: Out-of-bounds Read6.8 MediumN/A1%Nov 12, 2024
CVE-2024-43633: Sensitive Data Storage in Improperly Locked Memory6.5 MediumN/A1%Nov 12, 2024
CVE-2024-43631: Untrusted Pointer Dereference6.7 MediumN/A1%Nov 12, 2024
CVE-2024-43630: Stack-based Buffer Overflow7.8 HighN/A4%Nov 12, 2024
CVE-2024-43629: Untrusted Pointer Dereference7.8 HighN/A4%Nov 12, 2024
CVE-2024-43628: Integer Overflow or Wraparound8.8 HighN/A2%Nov 12, 2024
CVE-2024-43627: Heap-based Buffer Overflow8.8 HighN/A2%Nov 12, 2024
CVE-2024-43626: Heap-based Buffer Overflow7.8 HighN/A1%Nov 12, 2024
CVE-2024-43625: Use After Free8.1 HighN/A1%Nov 12, 2024
CVE-2024-43624: Untrusted Pointer Dereference8.8 HighN/A2%Nov 12, 2024
CVE-2024-43623: Integer Overflow or Wraparound7.8 HighN/A4%Nov 12, 2024
CVE-2024-43622: Heap-based Buffer Overflow8.8 HighN/A2%Nov 12, 2024
CVE-2024-43621: Heap-based Buffer Overflow8.8 HighN/A2%Nov 12, 2024
CVE-2024-43620: Heap-based Buffer Overflow8.8 HighN/A2%Nov 12, 2024
CVE-2024-43530: Improper Access Control7.8 HighN/A0%Nov 12, 2024
CVE-2024-43452: Time-of-check Time-of-use (TOCTOU) Race Condition7.5 HighN/A28%Nov 12, 2024
CVE-2024-43450: Improper Enforcement of Message Integrity During Transmission in a Communication Channel7.5 HighN/A1%Nov 12, 2024
CVE-2024-43449: Out-of-bounds Read6.8 MediumN/A1%Nov 12, 2024
CVE-2024-43447: Double Free8.1 HighN/A1%Nov 12, 2024
CVE-2024-38203: Protection Mechanism Failure6.2 MediumN/A1%Nov 12, 2024
CVE-2024-47535: Uncontrolled Resource Consumption5.5 MediumN/A0%Nov 12, 2024
CVE-2024-50592: Time-of-check Time-of-use (TOCTOU) Race Condition7.0 HighN/A0%Nov 8, 2024
CVE-2024-50591: Improper Neutralization of Special Elements used in a Command7.8 HighN/A2%Nov 8, 2024
CVE-2024-50590: Incorrect Default Permissions7.8 HighN/A0%Nov 8, 2024
CVE-2024-8424: Improper Privilege ManagementN/A8.5 High0%Nov 8, 2024
4151-4175 of 16003