The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-60245: Deserialization of Untrusted Data9.8 CriticalN/A0%Nov 6, 2025
CVE-2025-60244: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)7.1 HighN/A0%Nov 6, 2025
CVE-2025-60243: Incorrect Privilege Assignment9.8 CriticalN/A0%Nov 6, 2025
CVE-2025-60242: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A0%Nov 6, 2025
CVE-2025-60241: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60240: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60239: Improper Neutralization of Special Elements used in an SQL Command8.5 HighN/A0%Nov 6, 2025
CVE-2025-60235: Unrestricted Upload of File with Dangerous Type10.0 CriticalN/A0%Nov 6, 2025
CVE-2025-60207: Unrestricted Upload of File with Dangerous Type10.0 CriticalN/A0%Nov 6, 2025
CVE-2025-60204: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60203: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60202: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60201: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60200: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60199: Improper Control of Filename for Include/Require Statement in PHP Program8.1 HighN/A0%Nov 6, 2025
CVE-2025-60198: Improper Control of Filename for Include/Require Statement in PHP Program8.1 HighN/A0%Nov 6, 2025
CVE-2025-60197: Improper Control of Filename for Include/Require Statement in PHP Program8.1 HighN/A0%Nov 6, 2025
CVE-2025-60196: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60195: Incorrect Privilege Assignment9.8 CriticalN/A0%Nov 6, 2025
CVE-2025-60194: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60193: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60192: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60191: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
CVE-2025-60190: Improper Control of Filename for Include/Require Statement in PHP Program8.1 HighN/A0%Nov 6, 2025
CVE-2025-60189: Improper Control of Filename for Include/Require Statement in PHP Program7.5 HighN/A0%Nov 6, 2025
83001-83025 of 580365