The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-4619: Improper Check for Unusual or Exceptional ConditionsN/A6.6 Medium1%Nov 13, 2025
CVE-2025-47222: Improper Access Control6.5 MediumN/A0%Nov 13, 2025
CVE-2025-47221: Improper Access Control5.3 MediumN/A0%Nov 13, 2025
CVE-2025-47220: Improper Access Control5.3 MediumN/A0%Nov 13, 2025
CVE-2025-64726: External Control of System or Configuration SettingN/A7.3 High0%Nov 13, 2025
CVE-2025-64709: Server-Side Request Forgery (SSRF)9.6 CriticalN/A0%Nov 13, 2025
CVE-2025-60702: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A3%Nov 13, 2025
CVE-2025-60699: Stack-based Buffer Overflow6.5 MediumN/A1%Nov 13, 2025
CVE-2025-60679: Stack-based Buffer Overflow8.8 HighN/A1%Nov 13, 2025
CVE-2025-59840: Improper Neutralization of Input During Web Page Generation8.1 HighN/A0%Nov 13, 2025
CVE-2025-55810: Unrestricted Upload of File with Dangerous Type6.8 MediumN/A0%Nov 13, 2025
CVE-2025-46370: Process Control3.3 LowN/A0%Nov 13, 2025
CVE-2025-46369: Insecure Temporary File7.8 HighN/A0%Nov 13, 2025
CVE-2025-46368: Insecure Temporary File6.6 MediumN/A0%Nov 13, 2025
CVE-2025-46367: Detection of Error Condition Without Action7.8 HighN/A0%Nov 13, 2025
CVE-2025-46362: Improper Access Control6.6 MediumN/A0%Nov 13, 2025
CVE-2022-4984: Improper Neutralization of Special Elements used in an SQL CommandN/A8.7 High0%Nov 13, 2025
CVE-2025-63406: Improper Neutralization of Special Elements used in a Command8.8 HighN/A1%Nov 13, 2025
CVE-2025-60676: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A3%Nov 13, 2025
CVE-2025-60675: Improper Neutralization of Special Elements used in a Command5.4 MediumN/A1%Nov 13, 2025
CVE-2025-60674: Stack-based Buffer Overflow6.8 MediumN/A1%Nov 13, 2025
CVE-2025-60673: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A4%Nov 13, 2025
CVE-2025-60672: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A4%Nov 13, 2025
CVE-2025-43515: Improper Access Control8.8 HighN/A0%Nov 13, 2025
CVE-2025-13123: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Nov 13, 2025
82376-82400 of 446216