The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-6211: Undefined Security WeaknessN/AN/AN/AOct 13, 2025
CVE-2025-62242: Authorization Bypass Through User-Controlled Key4.3 Medium5.3 Medium0%Oct 13, 2025
CVE-2025-62241: Authorization Bypass Through User-Controlled Key4.3 Medium5.3 Medium0%Oct 13, 2025
CVE-2025-58084: Improper Validation of Specified Type of Input3.5 LowN/A0%Oct 13, 2025
CVE-2025-62243: Incorrect Authorization5.4 Medium5.3 Medium0%Oct 13, 2025
CVE-2025-62170: Use After Free7.5 HighN/A0%Oct 13, 2025
CVE-2025-61775: Insufficient Session ExpirationN/A6.9 Medium0%Oct 13, 2025
CVE-2025-7707: Insecure Temporary File7.8 HighN/A0%Oct 13, 2025
CVE-2025-62244: Authorization Bypass Through User-Controlled Key4.3 Medium4.8 Medium0%Oct 13, 2025
CVE-2025-11695: Improper Certificate Validation8.0 HighN/A0%Oct 13, 2025
CVE-2025-43991: UNIX Symbolic Link (Symlink) Following6.3 MediumN/A0%Oct 13, 2025
CVE-2025-39964: Concurrent Execution using Shared Resource with Improper Synchronization5.5 MediumN/A1%Oct 13, 2025
CVE-2025-37729: Improper Neutralization of Special Elements Used in a Template Engine9.1 CriticalN/A1%Oct 13, 2025
CVE-2025-39965: Undefined Security Weakness7.8 HighN/A0%Oct 13, 2025
CVE-2025-9902: Authorization Bypass Through User-Controlled Key7.5 HighN/A0%Oct 13, 2025
CVE-2025-6919: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A0%Oct 13, 2025
CVE-2025-9337: NULL Pointer DereferenceN/A6.8 Medium0%Oct 13, 2025
CVE-2025-9336: Stack-based Buffer OverflowN/A6.8 Medium0%Oct 13, 2025
CVE-2025-11184: Improper Neutralization of Input During Web Page GenerationN/A6.9 Medium0%Oct 13, 2025
CVE-2025-11183: Improper Neutralization of Input During Web Page GenerationN/A6.9 Medium0%Oct 13, 2025
CVE-2025-10720: Undefined Security Weakness6.5 MediumN/A0%Oct 13, 2025
CVE-2025-9968: Improper Link Resolution Before File AccessN/A8.5 High0%Oct 13, 2025
CVE-2025-9976: Improper Neutralization of Special Elements used in an OS Command9.0 CriticalN/A1%Oct 13, 2025
CVE-2025-11675: Unrestricted Upload of File with Dangerous Type7.2 High8.6 High1%Oct 13, 2025
CVE-2025-11674: Server-Side Request Forgery (SSRF)6.8 Medium6.9 Medium0%Oct 13, 2025
84676-84700 of 397021