The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-14388: Improper Neutralization of Null Byte or NUL Character9.8 CriticalN/A0%Dec 23, 2025
CVE-2025-14163: Cross-Site Request Forgery (CSRF)4.3 MediumN/A0%Dec 23, 2025
CVE-2025-14155: Missing Authorization5.3 MediumN/A1%Dec 23, 2025
CVE-2025-12934: Missing Authorization8.1 HighN/A0%Dec 23, 2025
CVE-2025-68655: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-68654: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-68653: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-68652: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-68651: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-68650: Undefined Security WeaknessN/AN/AN/ADec 23, 2025
CVE-2025-67743: Server-Side Request Forgery (SSRF)6.3 MediumN/A0%Dec 23, 2025
CVE-2025-15034: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Dec 23, 2025
CVE-2025-68615: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A0%Dec 23, 2025
CVE-2025-68614: Improper Neutralization of Input During Web Page Generation4.3 MediumN/A0%Dec 23, 2025
CVE-2025-68480: Asymmetric Resource Consumption (Amplification)5.3 MediumN/A0%Dec 22, 2025
CVE-2025-68476: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.2 High0%Dec 22, 2025
CVE-2025-68475: Inefficient Regular Expression Complexity7.5 HighN/A0%Dec 22, 2025
CVE-2025-67436: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A0%Dec 22, 2025
CVE-2025-65857: Exposure of Private Personal Information to an Unauthorized Actor7.5 HighN/A0%Dec 22, 2025
CVE-2025-65856: Missing Authentication for Critical Function9.8 CriticalN/A1%Dec 22, 2025
CVE-2025-34458: Reachable AssertionN/A8.7 High0%Dec 22, 2025
CVE-2025-34457: Stack-based Buffer OverflowN/A8.7 High0%Dec 22, 2025
CVE-2023-53981: Improper Neutralization of Special Elements used in an OS Command7.2 High8.6 High1%Dec 22, 2025
CVE-2023-53980: Unrestricted Upload of File with Dangerous Type9.8 Critical8.7 High0%Dec 22, 2025
CVE-2023-53979: Improper Limitation of a Pathname to a Restricted Directory8.8 High8.6 High0%Dec 22, 2025
79601-79625 of 405400