The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-11097: Improper Neutralization of Special Elements used in a Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11096: Improper Neutralization of Special Elements used in a Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11095: Improper Neutralization of Special Elements used in a Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11094: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 28, 2025
CVE-2025-11092: Improper Neutralization of Special Elements used in a Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11091: Buffer Copy without Checking Size of Input8.8 High7.4 High0%Sep 28, 2025
CVE-2025-11090: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11089: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 28, 2025
CVE-2025-11088: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Sep 28, 2025
CVE-2025-11083: Heap-based Buffer Overflow5.3 Medium1.9 Low0%Sep 27, 2025
CVE-2025-11082: Heap-based Buffer Overflow5.3 Medium1.9 Low0%Sep 27, 2025
CVE-2025-11081: Out-of-bounds Read3.3 Low1.9 Low0%Sep 27, 2025
CVE-2025-11080: Improper Authorization4.3 Medium2.1 Low0%Sep 27, 2025
CVE-2025-11079: Insertion of Sensitive Information into Externally-Accessible File or Directory5.3 Medium5.5 Medium0%Sep 27, 2025
CVE-2025-11078: Unrestricted Upload of File with Dangerous Type6.3 Medium2.1 Low0%Sep 27, 2025
CVE-2025-11077: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 27, 2025
CVE-2025-11076: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 27, 2025
CVE-2025-11075: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 27, 2025
CVE-2025-11074: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 27, 2025
CVE-2025-11073: Improper Neutralization of Special Elements used in a Command4.7 Medium2.0 Low0%Sep 27, 2025
CVE-2025-11071: Improper Neutralization of Special Elements used in an SQL Command4.7 Medium2.0 Low0%Sep 27, 2025
CVE-2025-8014: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Sep 27, 2025
CVE-2025-7647: Creation of Temporary File With Insecure Permissions7.3 HighN/A0%Sep 27, 2025
CVE-2025-11070: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 27, 2025
CVE-2025-11069: Improper Neutralization of Input During Web Page Generation2.4 Low1.9 Low0%Sep 27, 2025
85576-85600 of 391694