The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-58310: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.7 High1%Dec 11, 2025
CVE-2024-58309: Improper Neutralization of Special Elements used in an SQL Command9.8 Critical8.7 High0%Dec 11, 2025
CVE-2024-58308: Improper Neutralization of Special Elements used in an SQL Command9.8 Critical9.3 Critical0%Dec 11, 2025
CVE-2024-58307: Improper Neutralization of Special Elements used in an SQL Command8.8 High9.3 Critical0%Dec 11, 2025
CVE-2024-58306: Uncontrolled Resource ConsumptionN/A8.7 High0%Dec 11, 2025
CVE-2024-58303: Improper Neutralization of Special Elements Used in a Template EngineN/A8.6 High0%Dec 11, 2025
CVE-2024-58302: Improper Control of Filename for Include/Require Statement in PHP ProgramN/A6.9 Medium0%Dec 11, 2025
CVE-2024-58301: Improper Neutralization of Special Elements used in an SQL CommandN/A9.3 Critical0%Dec 11, 2025
CVE-2024-58300: Missing Authentication for Critical FunctionN/A8.7 High0%Dec 11, 2025
CVE-2024-58298: Unrestricted Upload of File with Dangerous TypeN/A9.2 Critical1%Dec 11, 2025
CVE-2024-58297: Improper Neutralization of Input During Web Page Generation5.4 Medium5.3 Medium0%Dec 11, 2025
CVE-2024-58296: Improper Neutralization of Input During Web Page GenerationN/A5.3 Medium0%Dec 11, 2025
CVE-2024-58295: Unrestricted Upload of File with Dangerous TypeN/A8.6 High1%Dec 11, 2025
CVE-2024-58294: Improper Neutralization of Special Elements used in an OS Command8.8 High8.7 High1%Dec 11, 2025
CVE-2024-58293: Improper Neutralization of Special Elements Used in a Template EngineN/A8.6 High0%Dec 11, 2025
CVE-2024-58292: Improper Neutralization of Input During Web Page GenerationN/A5.3 Medium0%Dec 11, 2025
CVE-2024-58291: Improper Neutralization of Input During Web Page GenerationN/A5.3 Medium0%Dec 11, 2025
CVE-2024-58290: Improper Neutralization of Special Elements used in an SQL CommandN/A9.3 Critical0%Dec 11, 2025
CVE-2024-58289: Improper Neutralization of Input During Web Page Generation5.4 Medium5.3 Medium0%Dec 11, 2025
CVE-2024-58288: Unquoted Search Path or ElementN/A8.7 High0%Dec 11, 2025
CVE-2024-58287: Improper Neutralization of Special Elements used in an OS Command8.8 High8.7 High1%Dec 11, 2025
CVE-2024-58286: Improper Neutralization of Special Elements used in an OS CommandN/A9.3 Critical1%Dec 11, 2025
CVE-2024-58304: Improper Neutralization of Input During Web Page Generation6.1 Medium5.3 Medium0%Dec 11, 2025
CVE-2025-66590: Out-of-bounds Write7.8 High8.4 High0%Dec 11, 2025
CVE-2025-66589: Out-of-bounds Read9.1 Critical8.4 High0%Dec 11, 2025
80676-80700 of 744285