The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-61803: Integer Overflow or Wraparound7.8 HighN/A0%Oct 14, 2025
CVE-2025-61802: Use After Free7.8 HighN/A0%Oct 14, 2025
CVE-2025-61801: Use After Free7.8 HighN/A0%Oct 14, 2025
CVE-2025-61800: Integer Overflow or Wraparound7.8 HighN/A0%Oct 14, 2025
CVE-2025-61799: Out-of-bounds Read7.8 HighN/A0%Oct 14, 2025
CVE-2025-61798: Out-of-bounds Read7.8 HighN/A0%Oct 14, 2025
CVE-2025-61678: Unrestricted Upload of File with Dangerous TypeN/A8.6 High44%Oct 14, 2025
CVE-2025-61675: Improper Neutralization of Special Elements used in an SQL CommandN/A8.6 High38%Oct 14, 2025
CVE-2025-60540: Server-Side Request Forgery (SSRF)6.5 MediumN/A0%Oct 14, 2025
CVE-2025-60374: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Oct 14, 2025
CVE-2025-59429: Improper Neutralization of Input During Web Page Generation5.4 Medium8.5 High0%Oct 14, 2025
CVE-2025-59051: Improper Neutralization of Special Elements used in an OS CommandN/A8.6 High1%Oct 14, 2025
CVE-2025-54284: Out-of-bounds Write7.8 HighN/A0%Oct 14, 2025
CVE-2025-54283: Out-of-bounds Write7.8 HighN/A0%Oct 14, 2025
CVE-2025-54282: Heap-based Buffer Overflow7.8 HighN/A0%Oct 14, 2025
CVE-2025-54281: Use After Free7.8 HighN/A0%Oct 14, 2025
CVE-2025-54276: Out-of-bounds Read7.8 HighN/A0%Oct 14, 2025
CVE-2025-34267: Improper Neutralization of Special Elements used in a Command9.9 Critical8.4 High7%Oct 14, 2025
CVE-2025-33177: Uncontrolled Resource Consumption5.5 MediumN/A0%Oct 14, 2025
CVE-2025-54280: Out-of-bounds Write7.8 HighN/A0%Oct 14, 2025
CVE-2025-54275: Out-of-bounds Write5.5 MediumN/A0%Oct 14, 2025
CVE-2025-54274: Stack-based Buffer Overflow7.8 HighN/A0%Oct 14, 2025
CVE-2025-54273: Out-of-bounds Write7.8 HighN/A0%Oct 14, 2025
CVE-2025-33182: Missing Authorization7.6 HighN/A0%Oct 14, 2025
CVE-2025-8459: Improper Neutralization of Input During Web Page Generation7.7 HighN/A0%Oct 14, 2025
84351-84375 of 677876