The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-58187: Undefined Security Weakness7.5 HighN/A0%Oct 29, 2025
CVE-2025-58186: Undefined Security Weakness5.3 MediumN/A0%Oct 29, 2025
CVE-2025-58185: Undefined Security Weakness5.3 MediumN/A0%Oct 29, 2025
CVE-2025-58183: Undefined Security Weakness4.3 MediumN/A0%Oct 29, 2025
CVE-2025-54549: Improper Verification of Cryptographic Signature5.9 MediumN/A0%Oct 29, 2025
CVE-2025-54548: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Oct 29, 2025
CVE-2025-54547: Insufficient Session Expiration5.3 MediumN/A0%Oct 29, 2025
CVE-2025-54546: Incorrect Permission Assignment for Critical Resource7.5 HighN/A0%Oct 29, 2025
CVE-2025-54545: Incorrect Permission Assignment for Critical Resource7.8 HighN/A0%Oct 29, 2025
CVE-2025-47912: Undefined Security Weakness5.3 MediumN/A0%Oct 29, 2025
CVE-2025-11428: Undefined Security WeaknessN/AN/AN/AOct 29, 2025
CVE-2025-61959: Generation of Error Message Containing Sensitive Information5.3 Medium6.9 Medium0%Oct 29, 2025
CVE-2025-54459: Exposure of Sensitive System Information to an Unauthorized Control Sphere7.5 High8.7 High0%Oct 29, 2025
CVE-2025-9871: Improper Link Resolution Before File Access7.8 HighN/A0%Oct 29, 2025
CVE-2025-9870: Improper Link Resolution Before File Access7.8 HighN/A0%Oct 29, 2025
CVE-2025-9869: Improper Link Resolution Before File Access7.8 HighN/A0%Oct 29, 2025
CVE-2025-60320: Unquoted Search Path or Element6.7 MediumN/A0%Oct 29, 2025
CVE-2025-11466: Improper Limitation of a Pathname to a Restricted Directory4.9 MediumN/A30%Oct 29, 2025
CVE-2025-11465: Use After Free7.8 HighN/A0%Oct 29, 2025
CVE-2025-11464: Heap-based Buffer Overflow7.8 HighN/A0%Oct 29, 2025
CVE-2025-11463: Integer Overflow or Wraparound7.8 HighN/A0%Oct 29, 2025
CVE-2025-11203: Exposure of Sensitive Information to an Unauthorized Actor3.5 LowN/A0%Oct 29, 2025
CVE-2025-11202: Improper Neutralization of Special Elements used in an OS Command9.8 CriticalN/A2%Oct 29, 2025
CVE-2025-11201: Improper Limitation of a Pathname to a Restricted Directory9.8 CriticalN/A19%Oct 29, 2025
CVE-2025-11200: Weak Password Requirements9.8 CriticalN/A0%Oct 29, 2025
83326-83350 of 715156