The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-37251: Unquoted Search Path or Element7.8 High8.5 High0%Jun 19, 2026
CVE-2020-37250: Unquoted Search Path or Element7.8 High8.5 High0%Jun 19, 2026
CVE-2020-2521: Undefined Security WeaknessN/AN/AN/AJun 12, 2026
CVE-2020-37248: Use of Less Trusted Source6.5 MediumN/A0%Jun 8, 2026
CVE-2020-25900: Exposure of Private Personal Information to an Unauthorized Actor5.3 MediumN/A0%Jun 5, 2026
CVE-2020-37247: Unquoted Search Path or Element7.8 High8.5 High0%May 16, 2026
CVE-2020-37246: Improper Control of Filename for Include/Require Statement in PHP Program6.2 Medium6.9 Medium0%May 16, 2026
CVE-2020-37245: Improper Neutralization of Input During Web Page Generation7.5 High8.7 High0%May 16, 2026
CVE-2020-37244: Improper Neutralization of Special Elements used in an SQL Command8.2 High8.8 High0%May 16, 2026
CVE-2020-37243: Improper Neutralization of Special Elements used in an SQL Command8.2 High8.8 High0%May 16, 2026
CVE-2020-37242: Improper Neutralization of Special Elements used in an SQL Command8.2 High8.8 High0%May 16, 2026
CVE-2020-37241: Cross-Site Request Forgery (CSRF)5.3 Medium6.9 Medium0%May 16, 2026
CVE-2020-37240: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37239: Double Free9.8 Critical9.3 Critical0%May 16, 2026
CVE-2020-37238: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37237: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37236: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37235: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37234: Buffer Copy without Checking Size of Input6.2 Medium6.9 Medium0%May 16, 2026
CVE-2020-37233: Improper Neutralization of Input During Web Page Generation6.4 Medium5.1 Medium0%May 16, 2026
CVE-2020-37232: Unquoted Search Path or Element7.8 High8.5 High0%May 16, 2026
CVE-2020-37231: Unquoted Search Path or Element7.8 High8.5 High0%May 16, 2026
CVE-2020-37230: Unquoted Search Path or Element7.8 High8.5 High0%May 16, 2026
CVE-2020-37229: Unquoted Search Path or Element7.8 High8.5 High0%May 16, 2026
CVE-2020-37228: Improper Restriction of Excessive Authentication Attempts9.8 Critical9.3 Critical0%May 16, 2026
26-50 of 21077