The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-66021: Improper Neutralization of Input During Web Page Generation6.1 Medium8.6 High0%Nov 26, 2025
CVE-2025-66020: Inefficient Regular Expression Complexity7.5 HighN/A0%Nov 26, 2025
CVE-2025-12848: Improper Neutralization of Input During Web Page Generation6.1 Medium7.0 High0%Nov 26, 2025
CVE-2025-66265: Improper Privilege ManagementN/A6.9 Medium0%Nov 26, 2025
CVE-2025-66264: Unquoted Search Path or ElementN/A7.2 High0%Nov 26, 2025
CVE-2025-66263: Improper Neutralization of Null Byte or NUL Character7.5 High8.9 High0%Nov 26, 2025
CVE-2025-66262: Improper Limitation of a Pathname to a Restricted Directory9.8 Critical9.3 Critical0%Nov 26, 2025
CVE-2025-66261: Improper Neutralization of Special Elements used in an OS Command9.8 Critical9.9 Critical1%Nov 26, 2025
CVE-2025-66260: Improper Neutralization of Special Elements used in an SQL Command6.5 Medium7.2 High0%Nov 26, 2025
CVE-2025-66259: Improper Input Validation9.8 Critical9.3 Critical0%Nov 26, 2025
CVE-2025-66258: Improper Neutralization of Input During Web Page Generation5.4 Medium7.1 High0%Nov 26, 2025
CVE-2025-66257: External Control of File Name or Path9.1 Critical9.2 Critical0%Nov 26, 2025
CVE-2025-66256: Unrestricted Upload of File with Dangerous Type9.8 Critical9.9 Critical0%Nov 26, 2025
CVE-2025-66255: Insufficient Verification of Data Authenticity9.8 Critical9.9 Critical0%Nov 26, 2025
CVE-2025-66254: External Control of File Name or Path9.1 Critical7.8 High0%Nov 26, 2025
CVE-2025-66253: Improper Neutralization of Special Elements used in an OS Command9.8 Critical9.9 Critical1%Nov 26, 2025
CVE-2025-66252: Loop with Unreachable Exit Condition7.5 High8.4 High0%Nov 26, 2025
CVE-2025-66251: Improper Limitation of a Pathname to a Restricted Directory9.1 Critical7.7 High1%Nov 26, 2025
CVE-2025-66250: Unrestricted Upload of File with Dangerous Type9.8 Critical9.2 Critical0%Nov 26, 2025
CVE-2025-64657: Out-of-bounds Write9.8 CriticalN/A0%Nov 26, 2025
CVE-2025-64656: Out-of-bounds Read9.4 CriticalN/A0%Nov 26, 2025
CVE-2025-66019: Uncontrolled Resource ConsumptionN/A6.6 Medium0%Nov 26, 2025
CVE-2025-65963: Improper Access Control5.4 MediumN/A0%Nov 26, 2025
CVE-2025-65957: Exposure of Sensitive Information to an Unauthorized ActorN/A8.8 High0%Nov 26, 2025
CVE-2025-65956: Improper Neutralization of Input During Web Page Generation6.5 MediumN/A0%Nov 26, 2025
81701-81725 of 599228