The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-30082: Use After Free7.8 HighN/A1%Jun 11, 2024
CVE-2024-30080: Use After Free9.8 CriticalN/A43%Jun 11, 2024
CVE-2024-30078: Improper Input Validation8.8 HighN/A5%Jun 11, 2024
CVE-2024-30077: Heap-based Buffer Overflow8.0 HighN/A2%Jun 11, 2024
CVE-2024-30076: Improper Link Resolution Before File Access6.8 MediumN/A2%Jun 11, 2024
CVE-2024-30075: Heap-based Buffer Overflow8.0 HighN/A1%Jun 11, 2024
CVE-2024-30074: Heap-based Buffer Overflow8.0 HighN/A1%Jun 11, 2024
CVE-2024-30072: Integer Overflow or Wraparound7.8 HighN/A1%Jun 11, 2024
CVE-2024-30070: Integer Underflow (Wrap or Wraparound)7.5 HighN/A2%Jun 11, 2024
CVE-2024-30069: Buffer Over-read4.7 MediumN/A1%Jun 11, 2024
CVE-2024-5692: Undefined Security Weakness6.5 MediumN/A1%Jun 11, 2024
CVE-2023-38533: Creation of Temporary File in Directory with Insecure Permissions3.3 Low4.8 Medium0%Jun 11, 2024
CVE-2024-5102: Improper Validation of Specified Quantity in Input7.0 High7.3 High0%Jun 10, 2024
CVE-2024-34332: Improper Privilege Management7.8 HighN/A0%Jun 10, 2024
CVE-2024-4577: Improper Neutralization of Special Elements used in an OS Command9.8 CriticalN/A100%Jun 9, 2024
CVE-2024-2408: Observable Discrepancy5.9 MediumN/A1%Jun 9, 2024
CVE-2024-5585: Improper Encoding or Escaping of Output7.7 HighN/A29%Jun 9, 2024
CVE-2024-37385: Improper Neutralization of Special Elements used in a Command9.8 CriticalN/A1%Jun 7, 2024
CVE-2024-4881: Absolute Path Traversal7.5 HighN/A1%Jun 6, 2024
CVE-2024-37364: Improper Privilege Management6.8 MediumN/A0%Jun 6, 2024
CVE-2024-2548: Absolute Path Traversal7.5 HighN/A1%Jun 6, 2024
CVE-2024-2362: Absolute Path Traversal9.1 CriticalN/A1%Jun 6, 2024
CVE-2024-35178: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A1%Jun 6, 2024
CVE-2024-0912: Insertion of Sensitive Information into Log File4.2 Medium8.5 High0%Jun 6, 2024
CVE-2023-38042: Execution with Unnecessary Privileges7.8 HighN/A0%May 31, 2024