The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-36854: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Oct 18, 2025
CVE-2020-36853: Improper Neutralization of Input During Web Page Generation7.2 HighN/A0%Oct 18, 2025
CVE-2017-20208: Deserialization of Untrusted Data9.8 CriticalN/A1%Oct 18, 2025
CVE-2017-20207: Deserialization of Untrusted Data9.8 CriticalN/A1%Oct 18, 2025
CVE-2017-20206: Deserialization of Untrusted Data9.8 CriticalN/A1%Oct 18, 2025
CVE-2025-62640: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62639: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62638: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62637: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62636: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62635: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62634: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62633: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62632: Undefined Security WeaknessN/AN/AN/AOct 18, 2025
CVE-2025-62655: Improper Neutralization of Special Elements used in an SQL CommandN/A2.1 Low0%Oct 17, 2025
CVE-2025-62654: Improper Neutralization of Input During Web Page GenerationN/A2.0 Low0%Oct 17, 2025
CVE-2025-62653: Improper Neutralization of Input During Web Page GenerationN/A2.0 Low0%Oct 17, 2025
CVE-2025-62652: Improper Neutralization of Input During Web Page GenerationN/A5.9 Medium0%Oct 17, 2025
CVE-2025-62651: Incorrect Authorization6.5 MediumN/A0%Oct 17, 2025
CVE-2025-62650: Use of Client-Side Authentication8.3 HighN/A1%Oct 17, 2025
CVE-2025-62649: Use of Client-Side Authentication5.8 MediumN/A1%Oct 17, 2025
CVE-2025-62648: Incorrect Authorization6.4 MediumN/A0%Oct 17, 2025
CVE-2025-62647: Incorrect Authorization5.0 MediumN/A0%Oct 17, 2025
CVE-2025-62646: Incorrect Resource Transfer Between Spheres5.0 MediumN/A1%Oct 17, 2025
CVE-2025-62645: Incorrect Privilege Assignment9.9 CriticalN/A1%Oct 17, 2025
84001-84025 of 764060