The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-89781: Undefined Security Weakness8.4 HighN/A0%Sep 16, 2026
CVE-2026-89780: Undefined Security WeaknessN/AN/A0%Sep 16, 2026
CVE-2026-89779: Undefined Security Weakness9.1 CriticalN/A0%Sep 16, 2026
CVE-2026-89778: Undefined Security Weakness9.8 CriticalN/A0%Sep 16, 2026
CVE-2026-89777: Undefined Security Weakness8.8 HighN/A0%Sep 16, 2026
CVE-2026-89776: Undefined Security WeaknessN/AN/A0%Sep 16, 2026
CVE-2026-89775: Undefined Security Weakness9.3 CriticalN/A0%Sep 16, 2026
CVE-2026-89774: Undefined Security Weakness8.8 HighN/A0%Sep 16, 2026
CVE-2026-89186: Use of Cache Containing Sensitive InformationN/A6.3 Medium0%Sep 16, 2026
CVE-2026-88255: Improper Validation of Unsafe Equivalence in InputN/A6.3 Medium0%Sep 16, 2026
CVE-2026-86465: Authorization Bypass Through User-Controlled Key6.5 MediumN/A0%Sep 16, 2026
CVE-2026-86462: Insufficient Session Expiration9.1 CriticalN/A0%Sep 16, 2026
CVE-2026-86338: Insufficient Granularity of Access ControlN/A6.0 Medium0%Sep 16, 2026
CVE-2026-85501: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Sep 16, 2026
CVE-2026-82720: Use After Free5.9 MediumN/A0%Sep 16, 2026
CVE-2026-82717: Heap-based Buffer Overflow9.8 Critical8.4 High0%Sep 16, 2026
CVE-2026-82311: Insufficient Session Expiration9.8 CriticalN/A0%Sep 16, 2026
CVE-2026-81642: Heap-based Buffer Overflow9.8 Critical9.1 Critical1%Sep 16, 2026
CVE-2026-81634: Heap-based Buffer Overflow7.5 HighN/A0%Sep 16, 2026
CVE-2026-80225: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Sep 16, 2026
CVE-2026-78227: Use After Free6.5 MediumN/A0%Sep 16, 2026
CVE-2026-77955: Insufficient Verification of Data Authenticity4.4 MediumN/A0%Sep 16, 2026
CVE-2026-77860: Multiple Operations on Resource in Single-Operation Context3.7 LowN/A0%Sep 16, 2026
CVE-2026-73464: Improper Control of Generation of Code8.8 High8.7 High0%Sep 16, 2026
CVE-2026-73463: Concurrent Execution using Shared Resource with Improper Synchronization5.3 Medium6.0 Medium0%Sep 16, 2026
7776-7800 of 435938