The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-14801: Improper Neutralization of Input During Web Page Generation2.4 Low1.9 Low0%Dec 17, 2025
CVE-2025-11369: Missing Authorization4.3 MediumN/A0%Dec 17, 2025
CVE-2025-11009: Cleartext Storage of Sensitive Information5.1 MediumN/A0%Dec 17, 2025
CVE-2025-53524: Out-of-bounds Write7.8 High8.4 High0%Dec 17, 2025
CVE-2025-14701: Improper Neutralization of Input During Web Page Generation7.1 HighN/A0%Dec 17, 2025
CVE-2025-14700: Improper Neutralization of Special Elements Used in a Template Engine9.9 CriticalN/A0%Dec 17, 2025
CVE-2025-14766: Out-of-bounds Read8.8 HighN/A0%Dec 16, 2025
CVE-2025-14765: Use After Free8.8 HighN/A0%Dec 16, 2025
CVE-2025-34288: Incorrect Permission Assignment for Critical Resource6.7 Medium8.6 High0%Dec 16, 2025
CVE-2025-68274: NULL Pointer Dereference7.5 High8.7 High1%Dec 16, 2025
CVE-2025-64520: Missing Authorization6.5 MediumN/A0%Dec 16, 2025
CVE-2025-53619: Improper Restriction of Operations within the Bounds of a Memory Buffer7.4 HighN/A0%Dec 16, 2025
CVE-2025-53618: Improper Restriction of Operations within the Bounds of a Memory Buffer7.4 HighN/A0%Dec 16, 2025
CVE-2025-52582: Improper Restriction of Operations within the Bounds of a Memory Buffer7.4 HighN/A0%Dec 16, 2025
CVE-2025-48429: Improper Restriction of Operations within the Bounds of a Memory Buffer7.4 HighN/A0%Dec 16, 2025
CVE-2025-14466: Allocation of Resources Without Limits or Throttling5.3 Medium6.9 Medium0%Dec 16, 2025
CVE-2025-0852: Undefined Security WeaknessN/AN/AN/ADec 16, 2025
CVE-2025-8872: Uncontrolled Resource Consumption6.5 Medium7.1 High0%Dec 16, 2025
CVE-2025-65834: Buffer Copy without Checking Size of Input9.8 CriticalN/A0%Dec 16, 2025
CVE-2025-13532: Use of Password Hash With Insufficient Computational Effort6.2 MediumN/A0%Dec 16, 2025
CVE-2025-68270: Missing Authorization9.9 CriticalN/A0%Dec 16, 2025
CVE-2025-68156: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Dec 16, 2025
CVE-2025-68155: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A0%Dec 16, 2025
CVE-2025-68154: Improper Neutralization of Special Elements used in an OS Command8.1 HighN/A0%Dec 16, 2025
CVE-2025-68150: Server-Side Request Forgery (SSRF)6.5 Medium8.3 High0%Dec 16, 2025
80101-80125 of 598912