The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-34188: Insertion of Sensitive Information into Log File7.8 High8.4 High0%Sep 19, 2025
CVE-2025-34194: Improper Link Resolution Before File Access7.8 High8.5 High0%Sep 19, 2025
CVE-2025-34198: Use of Hard-coded Credentials9.8 Critical9.3 Critical1%Sep 19, 2025
CVE-2025-34197: Use of Hard-coded Credentials7.8 High8.6 High0%Sep 19, 2025
CVE-2025-34192: Use of Unmaintained Third Party Components9.8 Critical9.3 Critical1%Sep 19, 2025
CVE-2025-34195: Unrestricted Upload of File with Dangerous Type9.8 Critical8.6 High1%Sep 19, 2025
CVE-2025-34203: Dependency on Vulnerable Third-Party Component9.8 Critical9.3 Critical1%Sep 19, 2025
CVE-2025-48703: Improper Neutralization of Special Elements used in an OS Command9.0 CriticalN/A100%Sep 19, 2025
CVE-2025-10722: Improper Export of Android Application Components5.3 Medium1.9 Low0%Sep 19, 2025
CVE-2025-10721: Improper Export of Android Application Components5.3 Medium1.9 Low0%Sep 19, 2025
CVE-2025-36248: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Sep 19, 2025
CVE-2025-59427: Exposure of Sensitive Information to an Unauthorized ActorN/A2.9 Low0%Sep 19, 2025
CVE-2025-59344: Server-Side Request Forgery (SSRF)7.7 HighN/A0%Sep 19, 2025
CVE-2025-57644: Improper Input Validation9.1 CriticalN/A1%Sep 19, 2025
CVE-2025-57296: Improper Neutralization of Special Elements used in a Command6.5 MediumN/A3%Sep 19, 2025
CVE-2025-56869: Improper Limitation of a Pathname to a Restricted Directory5.3 MediumN/A1%Sep 19, 2025
CVE-2025-55910: Incomplete Cleanup6.3 MediumN/A0%Sep 19, 2025
CVE-2025-39862: Out-of-bounds Write7.8 HighN/A0%Sep 19, 2025
CVE-2025-39853: Out-of-bounds Read7.1 HighN/A0%Sep 19, 2025
CVE-2025-39847: Missing Release of Memory after Effective Lifetime5.5 MediumN/A0%Sep 19, 2025
CVE-2025-39846: NULL Pointer Dereference5.5 MediumN/A0%Sep 19, 2025
CVE-2025-39844: Undefined Security Weakness5.5 MediumN/A0%Sep 19, 2025
CVE-2025-39843: Improper Locking5.5 MediumN/A0%Sep 19, 2025
CVE-2025-39842: Undefined Security Weakness5.5 MediumN/A0%Sep 19, 2025
CVE-2025-39838: NULL Pointer Dereference5.5 MediumN/A0%Sep 19, 2025
86201-86225 of 559420