The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-9124: Uncaught ExceptionN/A8.7 High0%Oct 14, 2025
CVE-2025-9068: Improper Privilege Management7.8 High8.5 High0%Oct 14, 2025
CVE-2025-9067: Improper Privilege Management7.8 High8.5 High0%Oct 14, 2025
CVE-2025-9066: Improper Input ValidationN/A8.7 High0%Oct 14, 2025
CVE-2025-9064: Improper Authentication9.1 Critical8.7 High1%Oct 14, 2025
CVE-2025-9063: Improper Authentication9.8 Critical7.0 High0%Oct 14, 2025
CVE-2025-7330: Cross-Site Request Forgery (CSRF)6.5 Medium7.0 High0%Oct 14, 2025
CVE-2025-7329: Improper Neutralization of Input During Web Page Generation4.8 Medium8.5 High0%Oct 14, 2025
CVE-2025-7328: Missing Authentication for Critical Function9.8 Critical9.9 Critical1%Oct 14, 2025
CVE-2025-11721: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A0%Oct 14, 2025
CVE-2025-11720: User Interface (UI) Misrepresentation of Critical Information8.1 HighN/A0%Oct 14, 2025
CVE-2025-11719: Use After Free9.8 CriticalN/A0%Oct 14, 2025
CVE-2025-11718: User Interface (UI) Misrepresentation of Critical Information6.5 MediumN/A0%Oct 14, 2025
CVE-2025-11717: Exposure of Sensitive Information to an Unauthorized Actor9.1 CriticalN/A0%Oct 14, 2025
CVE-2025-11716: Improper Access Control6.5 MediumN/A0%Oct 14, 2025
CVE-2025-11715: Improper Restriction of Operations within the Bounds of a Memory Buffer8.8 HighN/A0%Oct 14, 2025
CVE-2025-11714: Improper Restriction of Operations within the Bounds of a Memory Buffer8.8 HighN/A0%Oct 14, 2025
CVE-2025-11713: Improper Encoding or Escaping of Output8.1 HighN/A0%Oct 14, 2025
CVE-2025-11712: Improper Encoding or Escaping of Output6.1 MediumN/A0%Oct 14, 2025
CVE-2025-11711: Sensitive Data Storage in Improperly Locked Memory6.5 MediumN/A0%Oct 14, 2025
CVE-2025-11710: Exposure of Sensitive Information to an Unauthorized Actor9.8 CriticalN/A0%Oct 14, 2025
CVE-2025-11709: Out-of-bounds Write9.8 CriticalN/A0%Oct 14, 2025
CVE-2025-11708: Use After Free9.8 CriticalN/A1%Oct 14, 2025
CVE-2025-11498: Improper Neutralization of Formula Elements in a CSV File6.1 Medium5.3 Medium0%Oct 14, 2025
CVE-2025-10610: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A0%Oct 14, 2025
84576-84600 of 407856