The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-47890: URL Redirection to Untrusted Site2.5 LowN/A0%Oct 14, 2025
CVE-2025-58903: Unchecked Return Value2.5 LowN/A1%Oct 14, 2025
CVE-2025-8428: Improper Neutralization of Input During Web Page Generation6.8 MediumN/A0%Oct 14, 2025
CVE-2025-62157: Insufficiently Protected Credentials6.5 Medium8.5 High0%Oct 14, 2025
CVE-2025-62156: Improper Limitation of a Pathname to a Restricted Directory8.1 HighN/A1%Oct 14, 2025
CVE-2025-5946: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A14%Oct 14, 2025
CVE-2025-59428: Cross-Site Request Forgery (CSRF)5.4 MediumN/A0%Oct 14, 2025
CVE-2025-56747: Improper Privilege Management6.5 MediumN/A0%Oct 14, 2025
CVE-2025-54892: Improper Neutralization of Input During Web Page Generation6.8 MediumN/A0%Oct 14, 2025
CVE-2025-54891: Improper Neutralization of Input During Web Page Generation6.8 MediumN/A0%Oct 14, 2025
CVE-2025-54889: Improper Neutralization of Input During Web Page Generation6.8 MediumN/A0%Oct 14, 2025
CVE-2025-27906: Exposure of Information Through Directory Listing5.3 MediumN/A0%Oct 14, 2025
CVE-2025-10986: Improper Limitation of a Pathname to a Restricted Directory4.7 MediumN/A1%Oct 14, 2025
CVE-2025-10985: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A20%Oct 14, 2025
CVE-2025-10243: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A20%Oct 14, 2025
CVE-2025-10242: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A20%Oct 14, 2025
CVE-2025-0033: Improper Access Control6.0 MediumN/A0%Oct 14, 2025
CVE-2024-44088: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Oct 14, 2025
CVE-2025-47856: Improper Neutralization of Special Elements used in an OS Command7.2 HighN/A1%Oct 14, 2025
CVE-2025-33044: Improper Restriction of Operations within the Bounds of a Memory Buffer7.8 High5.9 Medium0%Oct 14, 2025
CVE-2025-22833: Out-of-bounds Write7.3 High4.6 Medium0%Oct 14, 2025
CVE-2025-22832: Out-of-bounds Write7.8 High5.9 Medium0%Oct 14, 2025
CVE-2025-22831: Out-of-bounds Write7.8 High5.9 Medium0%Oct 14, 2025
CVE-2025-9178: Out-of-bounds WriteN/A7.7 High0%Oct 14, 2025
CVE-2025-9177: Allocation of Resources Without Limits or ThrottlingN/A7.7 High0%Oct 14, 2025
84551-84575 of 576436