The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-59827: Missing Authorization9.8 CriticalN/A0%Sep 24, 2025
CVE-2025-57324: Improperly Controlled Modification of Object Prototype Attributes6.5 MediumN/A0%Sep 24, 2025
CVE-2025-57320: Improperly Controlled Modification of Object Prototype Attributes6.5 MediumN/A0%Sep 24, 2025
CVE-2025-57319: Undefined Security Weakness7.5 HighN/A0%Sep 24, 2025
CVE-2025-57318: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-59828: Inclusion of Functionality from Untrusted Control Sphere9.8 Critical7.7 High0%Sep 24, 2025
CVE-2025-59824: Incorrect Authorization5.4 Medium0.5 Low0%Sep 24, 2025
CVE-2025-57329: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57328: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57327: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57326: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57325: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57323: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57321: Improperly Controlled Modification of Object Prototype Attributes9.8 CriticalN/A0%Sep 24, 2025
CVE-2025-59525: Improper Neutralization of Input During Web Page Generation6.1 Medium7.7 High0%Sep 24, 2025
CVE-2025-59251: Stack-based Buffer Overflow7.6 HighN/A0%Sep 24, 2025
CVE-2025-57351: Improperly Controlled Modification of Object Prototype Attributes6.5 MediumN/A0%Sep 24, 2025
CVE-2025-57349: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-57348: Improperly Controlled Modification of Object Prototype Attributes6.5 MediumN/A0%Sep 24, 2025
CVE-2025-57347: Improperly Controlled Modification of Object Prototype Attributes9.8 CriticalN/A1%Sep 24, 2025
CVE-2025-57330: Improperly Controlled Modification of Object Prototype Attributes7.5 HighN/A0%Sep 24, 2025
CVE-2025-55322: Binding to an Unrestricted IP Address7.3 HighN/A0%Sep 24, 2025
CVE-2025-55178: Undefined Security Weakness5.3 MediumN/A1%Sep 24, 2025
CVE-2025-59524: Improper Neutralization of Input During Web Page Generation6.1 Medium7.7 High0%Sep 24, 2025
CVE-2025-59343: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.7 High1%Sep 24, 2025
85851-85875 of 682148