The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-3222: Improper AuthenticationN/A9.3 Critical0%Nov 7, 2025
CVE-2025-12862: Unrestricted Upload of File with Dangerous Type6.3 Medium2.1 Low0%Nov 7, 2025
CVE-2025-63783: Improper Input Validation7.6 HighN/A0%Nov 7, 2025
CVE-2025-63691: Improper Authorization9.6 CriticalN/A0%Nov 7, 2025
CVE-2025-63690: Use of Externally-Controlled Input to Select Classes or Code9.1 CriticalN/A1%Nov 7, 2025
CVE-2025-63689: Improper Neutralization of Special Elements used in an SQL Command10.0 CriticalN/A0%Nov 7, 2025
CVE-2025-63687: Incorrect Authorization6.5 MediumN/A0%Nov 7, 2025
CVE-2025-63686: Improper Access Control6.5 MediumN/A0%Nov 7, 2025
CVE-2025-58469: Cross-Site Request Forgery (CSRF)8.8 High1.2 Low0%Nov 7, 2025
CVE-2025-58465: Improper Neutralization of Input During Web Page Generation5.4 Medium2.2 Low0%Nov 7, 2025
CVE-2025-58464: Relative Path Traversal7.5 High7.8 High0%Nov 7, 2025
CVE-2025-58463: Relative Path Traversal4.9 Medium2.3 Low0%Nov 7, 2025
CVE-2025-57712: Improper Limitation of a Pathname to a Restricted Directory6.5 Medium4.0 Medium0%Nov 7, 2025
CVE-2025-57706: Improper Neutralization of Input During Web Page Generation5.4 Medium2.2 Low0%Nov 7, 2025
CVE-2025-54168: Improper Neutralization of Input During Web Page Generation4.8 Medium2.2 Low0%Nov 7, 2025
CVE-2025-54167: Improper Neutralization of Input During Web Page GenerationN/A7.2 High0%Nov 7, 2025
CVE-2025-53413: Allocation of Resources Without Limits or Throttling6.5 Medium4.9 Medium0%Nov 7, 2025
CVE-2025-53412: NULL Pointer Dereference6.5 Medium0.6 Low0%Nov 7, 2025
CVE-2025-53411: Allocation of Resources Without Limits or Throttling4.9 Medium1.2 Low0%Nov 7, 2025
CVE-2025-53410: Allocation of Resources Without Limits or Throttling6.5 Medium4.9 Medium0%Nov 7, 2025
CVE-2025-53409: Allocation of Resources Without Limits or Throttling6.5 Medium4.9 Medium0%Nov 7, 2025
CVE-2025-53408: NULL Pointer Dereference6.5 Medium1.3 Low0%Nov 7, 2025
CVE-2025-52865: NULL Pointer Dereference6.5 Medium1.3 Low0%Nov 7, 2025
CVE-2025-52425: Improper Neutralization of Special Elements used in an SQL Command9.8 Critical9.5 Critical0%Nov 7, 2025
CVE-2025-47207: NULL Pointer Dereference6.5 Medium5.3 Medium0%Nov 7, 2025
82901-82925 of 715808