The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-59813: Undefined Security WeaknessN/AN/AN/ASep 23, 2025
CVE-2025-59812: Undefined Security WeaknessN/AN/AN/ASep 23, 2025
CVE-2025-59811: Undefined Security WeaknessN/AN/AN/ASep 23, 2025
CVE-2025-10834: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-10833: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-9495: Client-Side Enforcement of Server-Side SecurityN/A8.7 High0%Sep 23, 2025
CVE-2025-9494: Improper Neutralization of Special Elements used in an OS CommandN/A8.5 High1%Sep 23, 2025
CVE-2025-58915: Improper Neutralization of Input During Web Page Generation6.5 MediumN/A0%Sep 23, 2025
CVE-2025-42907: Server-Side Request Forgery (SSRF)4.3 MediumN/A0%Sep 23, 2025
CVE-2025-10832: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-10831: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-10830: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-10829: Improper Neutralization of Special Elements used in an SQL Command7.3 High5.5 Medium0%Sep 23, 2025
CVE-2025-10828: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Sep 23, 2025
CVE-2025-10827: Improper Neutralization of Input During Web Page Generation4.3 Medium2.1 Low0%Sep 23, 2025
CVE-2025-10826: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Sep 23, 2025
CVE-2025-10825: Improper Neutralization of Special Elements used in an SQL Command6.3 Medium2.1 Low0%Sep 23, 2025
CVE-2025-10824: Use After Free5.3 Medium1.9 Low0%Sep 23, 2025
CVE-2025-10823: NULL Pointer Dereference3.3 Low1.9 Low0%Sep 23, 2025
CVE-2025-10822: Improper Authorization4.3 Medium2.1 Low0%Sep 23, 2025
CVE-2025-43814: Insertion of Sensitive Information Into Sent Data6.5 Medium6.9 Medium0%Sep 22, 2025
CVE-2025-43810: Authorization Bypass Through User-Controlled Key4.3 Medium5.3 Medium0%Sep 22, 2025
CVE-2025-10821: Improper Authorization4.3 Medium2.1 Low0%Sep 22, 2025
CVE-2025-10820: Improper Authorization4.3 Medium2.1 Low0%Sep 22, 2025
CVE-2025-10819: Improper Authorization4.3 Medium2.1 Low0%Sep 22, 2025
85901-85925 of 552652