The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-63457: Out-of-bounds Write7.5 HighN/A0%Nov 10, 2025
CVE-2025-63456: Out-of-bounds Write7.5 HighN/A0%Nov 10, 2025
CVE-2025-63455: Stack-based Buffer Overflow7.5 HighN/A0%Nov 10, 2025
CVE-2025-63147: Out-of-bounds Write7.5 HighN/A0%Nov 10, 2025
CVE-2025-63154: Stack-based Buffer Overflow7.5 HighN/A0%Nov 10, 2025
CVE-2025-63153: Stack-based Buffer Overflow7.5 HighN/A0%Nov 10, 2025
CVE-2025-63152: Stack-based Buffer Overflow7.5 HighN/A0%Nov 10, 2025
CVE-2025-46430: Execution with Unnecessary Privileges7.3 HighN/A0%Nov 10, 2025
CVE-2025-8768: Undefined Security WeaknessN/AN/AN/ANov 10, 2025
CVE-2025-63712: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Nov 10, 2025
CVE-2025-63711: Cross-Site Request Forgery (CSRF)7.1 HighN/A0%Nov 10, 2025
CVE-2025-63710: Cross-Site Request Forgery (CSRF)6.5 MediumN/A0%Nov 10, 2025
CVE-2025-63709: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Nov 10, 2025
CVE-2025-12480: Improper Access Control9.1 CriticalN/A75%Nov 10, 2025
CVE-2025-64690: Undefined Security WeaknessN/AN/A0%Nov 10, 2025
CVE-2025-64689: Undefined Security WeaknessN/AN/A0%Nov 10, 2025
CVE-2025-64688: Undefined Security WeaknessN/AN/A0%Nov 10, 2025
CVE-2025-64687: Undefined Security WeaknessN/AN/A0%Nov 10, 2025
CVE-2025-64686: Undefined Security WeaknessN/AN/A0%Nov 10, 2025
CVE-2025-64685: Improper Certificate Validation8.1 HighN/A0%Nov 10, 2025
CVE-2025-64684: Missing Authorization4.3 MediumN/A0%Nov 10, 2025
CVE-2025-64683: Concurrent Execution using Shared Resource with Improper Synchronization5.3 MediumN/A0%Nov 10, 2025
CVE-2025-64682: Concurrent Execution using Shared Resource with Improper Synchronization2.7 LowN/A0%Nov 10, 2025
CVE-2025-64681: Missing Authorization2.7 LowN/A0%Nov 10, 2025
CVE-2025-64457: Time-of-check Time-of-use (TOCTOU) Race Condition7.0 HighN/A0%Nov 10, 2025
82826-82850 of 715808