The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-36883: Improper Limitation of a Pathname to a Restricted Directory8.1 High8.8 High0%Dec 10, 2025
CVE-2020-36895: Authorization Bypass Through User-Controlled KeyN/A8.7 High0%Dec 10, 2025
CVE-2020-36894: Missing Authentication for Critical FunctionN/A9.3 Critical1%Dec 10, 2025
CVE-2020-36893: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.7 High10%Dec 10, 2025
CVE-2020-36892: Missing Authentication for Critical FunctionN/A9.3 Critical1%Dec 10, 2025
CVE-2020-36885: Out-of-bounds Write9.8 Critical9.3 Critical0%Dec 10, 2025
CVE-2020-36882: Unrestricted Upload of File with Dangerous Type7.5 High8.7 High0%Dec 5, 2025
CVE-2020-36881: Improper Restriction of Operations within the Bounds of a Memory Buffer7.8 High8.6 High0%Dec 5, 2025
CVE-2020-36880: Improper Restriction of Operations within the Bounds of a Memory Buffer7.8 High8.6 High0%Dec 5, 2025
CVE-2020-36879: Unquoted Search Path or ElementN/A8.5 High0%Dec 5, 2025
CVE-2020-36878: External Control of File Name or PathN/A8.7 High0%Dec 5, 2025
CVE-2020-36877: Improper Neutralization of Special Elements used in an OS CommandN/A9.3 Critical1%Dec 5, 2025
CVE-2020-36876: Insertion of Sensitive Information into Log FileN/A8.7 High0%Dec 5, 2025
CVE-2020-36874: Missing Authentication for Critical FunctionN/A8.7 High0%Nov 26, 2025
CVE-2020-36871: Missing Authentication for Critical FunctionN/A8.7 High0%Nov 26, 2025
CVE-2020-36872: Uncontrolled Resource ConsumptionN/A8.7 High0%Nov 26, 2025
CVE-2020-36873: Missing Authentication for Critical FunctionN/A8.7 High1%Nov 26, 2025
CVE-2020-36870: Improper Control of Generation of CodeN/A9.2 Critical0%Nov 7, 2025
CVE-2020-36869: Improper Neutralization of Special Elements used in an SQL Command7.2 High8.7 High1%Oct 30, 2025
CVE-2020-36868: External Control of File Name or Path7.8 High8.5 High0%Oct 30, 2025
CVE-2020-36867: Improper Neutralization of Special Elements used in an OS Command8.8 High8.7 High2%Oct 30, 2025
CVE-2020-36866: Improper Neutralization of Input During Web Page Generation5.4 Medium5.1 Medium1%Oct 30, 2025
CVE-2020-36865: Improper Neutralization of Input During Web Page Generation5.4 Medium5.1 Medium1%Oct 30, 2025
CVE-2020-36864: Improper Neutralization of Input During Web Page Generation5.4 Medium5.1 Medium1%Oct 30, 2025
CVE-2020-36863: Unrestricted Upload of File with Dangerous Type8.8 High8.7 High1%Oct 30, 2025
401-425 of 21077