The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
CVE-2026-63520:Microsoft SharePoint Remote Code Execution (FIXED)
CVE-2026-55040:Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)
CVE-2026-63077:Rapid7 Analysis: Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
CVE-2026-18577:N-able N-central Authentication Bypass Exploited in the Wild
TitleEitWModules
CVE-2019-25718: User Interface (UI) Misrepresentation of Critical Information7.8 High8.6 High0%Jun 1, 2026
CVE-2019-25716: External Control of System or Configuration Setting7.5 High7.1 High0%Jun 1, 2026
CVE-2019-25714: Unrestricted Upload of File with Dangerous TypeN/A9.3 Critical1%Apr 21, 2026
CVE-2019-25712: Out-of-bounds Write6.2 Medium6.9 Medium0%Apr 12, 2026
CVE-2019-25711: Reliance on Untrusted Inputs in a Security Decision6.2 Medium6.9 Medium0%Apr 12, 2026
CVE-2019-25710: Improper Neutralization of Special Elements used in an SQL Command8.2 High8.8 High0%Apr 12, 2026
CVE-2019-25709: Files or Directories Accessible to External Parties9.8 Critical9.3 Critical0%Apr 12, 2026
CVE-2019-25707: Improper Neutralization of Special Elements used in an SQL Command7.1 High7.1 High0%Apr 12, 2026
CVE-2019-25706: Insertion of Sensitive Information into Externally-Accessible File or Directory7.5 High8.7 High0%Apr 12, 2026
CVE-2019-25705: Out-of-bounds Write8.4 High8.6 High0%Apr 12, 2026
CVE-2019-25703: Improper Neutralization of Special Elements used in an SQL Command7.1 High7.1 High0%Apr 12, 2026
CVE-2019-25701: Out-of-bounds Write8.4 High8.6 High0%Apr 12, 2026
CVE-2019-25699: Improper Neutralization of Special Elements used in an SQL Command7.1 High7.1 High0%Apr 12, 2026
CVE-2019-25697: Improper Neutralization of Special Elements used in an SQL Command8.2 High8.8 High0%Apr 12, 2026
CVE-2019-25695: Out-of-bounds Write8.4 High8.6 High0%Apr 12, 2026
CVE-2019-25693: Cross-Site Request Forgery (CSRF)7.1 High7.1 High0%Apr 12, 2026
CVE-2019-25691: Out-of-bounds Write8.4 High8.6 High0%Apr 12, 2026
CVE-2019-25689: Out-of-bounds Write8.4 High8.6 High0%Apr 12, 2026
CVE-2019-25713: Improper Neutralization of Special Elements used in an SQL Command7.1 High7.1 High0%Apr 12, 2026
CVE-2019-25708: Cross-Site Request Forgery (CSRF)4.3 Medium5.3 Medium0%Apr 12, 2026
CVE-2019-25704: Improper Neutralization of Special Elements used in an SQL Command9.1 Critical8.8 High0%Apr 5, 2026
CVE-2019-25702: Improper Neutralization of Special Elements used in an SQL Command9.1 Critical8.8 High0%Apr 5, 2026
CVE-2019-25700: Improper Neutralization of Special Elements used in an SQL Command9.1 Critical8.8 High0%Apr 5, 2026
CVE-2019-25698: Improper Neutralization of Special Elements used in an SQL Command9.1 Critical8.8 High0%Apr 5, 2026
CVE-2019-25696: Improper Neutralization of Special Elements used in an SQL Command9.1 Critical8.8 High0%Apr 5, 2026
51-75 of 17623