The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-62831: Undefined Security WeaknessN/AN/AN/AOct 24, 2025
CVE-2025-62830: Undefined Security WeaknessN/AN/AN/AOct 24, 2025
CVE-2025-62829: Undefined Security WeaknessN/AN/AN/AOct 24, 2025
CVE-2025-62828: Undefined Security WeaknessN/AN/AN/AOct 24, 2025
CVE-2025-62827: Undefined Security WeaknessN/AN/AN/AOct 24, 2025
CVE-2025-7730: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Oct 23, 2025
CVE-2025-62254: Improper Limitation of a Pathname to a Restricted Directory7.5 High6.9 Medium0%Oct 23, 2025
CVE-2025-60023: Relative Path Traversal4.0 Medium6.3 Medium0%Oct 23, 2025
CVE-2025-59776: Relative Path Traversal4.0 Medium6.3 Medium0%Oct 23, 2025
CVE-2025-58429: Relative Path Traversal7.5 High8.3 High1%Oct 23, 2025
CVE-2025-62688: Incorrect Permission Assignment for Critical Resource7.1 High6.9 Medium0%Oct 23, 2025
CVE-2025-62498: Relative Path Traversal8.8 High8.6 High0%Oct 23, 2025
CVE-2025-61977: Weak Password Recovery Mechanism for Forgotten Password7.0 High7.3 High0%Oct 23, 2025
CVE-2025-61934: Binding to an Unrestricted IP Address10.0 Critical9.3 Critical0%Oct 23, 2025
CVE-2025-59503: Server-Side Request Forgery (SSRF)10.0 CriticalN/A0%Oct 23, 2025
CVE-2025-59500: Improper Access Control7.7 HighN/A0%Oct 23, 2025
CVE-2025-59273: Improper Access Control7.3 HighN/A0%Oct 23, 2025
CVE-2025-58456: Relative Path Traversal6.8 Medium8.2 High0%Oct 23, 2025
CVE-2025-58078: Relative Path Traversal7.5 High8.3 High0%Oct 23, 2025
CVE-2025-12100: Incorrect Default Permissions7.8 High8.8 High0%Oct 23, 2025
CVE-2025-62517: Improperly Controlled Modification of Object Prototype Attributes5.9 MediumN/A0%Oct 23, 2025
CVE-2025-62236: Observable Response Discrepancy5.3 Medium6.9 Medium0%Oct 23, 2025
CVE-2025-58428: Improper Neutralization of Special Elements used in a Command9.9 Critical9.4 Critical1%Oct 23, 2025
CVE-2025-57848: Incorrect Default Permissions6.4 MediumN/A0%Oct 23, 2025
CVE-2025-55067: Integer Overflow or Wraparound7.1 High7.1 High0%Oct 23, 2025
83651-83675 of 614180