The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-53139: Cleartext Transmission of Sensitive Information7.7 HighN/A0%Oct 14, 2025
CVE-2025-50175: Use After Free7.8 HighN/A0%Oct 14, 2025
CVE-2025-50174: Use After Free7.0 HighN/A0%Oct 14, 2025
CVE-2025-50152: Out-of-bounds Read7.8 HighN/A0%Oct 14, 2025
CVE-2025-49708: Use After Free9.9 CriticalN/A1%Oct 14, 2025
CVE-2025-48813: Use of a Key Past its Expiration Date6.3 MediumN/A0%Oct 14, 2025
CVE-2025-48004: Use After Free7.4 HighN/A2%Oct 14, 2025
CVE-2025-47989: Improper Access Control7.0 HighN/A1%Oct 14, 2025
CVE-2025-47979: Insertion of Sensitive Information into Log File5.5 MediumN/A1%Oct 14, 2025
CVE-2025-37148: Uncontrolled Resource Consumption6.5 MediumN/A0%Oct 14, 2025
CVE-2025-37147: Authentication Bypass by Spoofing7.1 HighN/A0%Oct 14, 2025
CVE-2025-37146: Improper Neutralization of Special Elements used in a Command7.2 HighN/A1%Oct 14, 2025
CVE-2025-37145: Improper Limitation of a Pathname to a Restricted Directory4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37144: Improper Limitation of a Pathname to a Restricted Directory4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37143: Improper Access Control4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37142: Improper Access Control4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37141: Improper Access Control4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37140: Improper Access Control4.9 MediumN/A0%Oct 14, 2025
CVE-2025-37139: Uncontrolled Resource Consumption6.0 MediumN/A0%Oct 14, 2025
CVE-2025-37138: Improper Neutralization of Special Elements used in a Command6.2 MediumN/A1%Oct 14, 2025
CVE-2025-37137: Improper Access Control6.5 MediumN/A0%Oct 14, 2025
CVE-2025-37136: Improper Access Control6.5 MediumN/A0%Oct 14, 2025
CVE-2025-37135: Improper Access Control6.5 MediumN/A0%Oct 14, 2025
CVE-2025-37134: Improper Neutralization of Special Elements used in a Command7.2 HighN/A1%Oct 14, 2025
CVE-2025-37133: Improper Neutralization of Special Elements used in a Command7.2 HighN/A1%Oct 14, 2025
84501-84525 of 576436