The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-39823: Improper Validation of Array Index7.8 HighN/A0%Sep 16, 2025
CVE-2025-39819: Undefined Security Weakness5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39813: Concurrent Execution using Shared Resource with Improper Synchronization4.7 MediumN/A0%Sep 16, 2025
CVE-2025-39812: Use of Uninitialized Resource5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39808: Undefined Security Weakness5.5 MediumN/A0%Sep 16, 2025
CVE-2025-10546: Improper Neutralization of Input During Web Page GenerationN/A5.1 Medium0%Sep 16, 2025
CVE-2025-10537: Improper Restriction of Operations within the Bounds of a Memory Buffer8.8 HighN/A0%Sep 16, 2025
CVE-2025-10536: Exposure of Sensitive Information to an Unauthorized Actor6.2 MediumN/A0%Sep 16, 2025
CVE-2025-10533: Integer Overflow or Wraparound8.8 HighN/A1%Sep 16, 2025
CVE-2025-10532: Improper Check for Unusual or Exceptional Conditions6.5 MediumN/A0%Sep 16, 2025
CVE-2025-10531: Authentication Bypass Using an Alternate Path or Channel5.4 MediumN/A0%Sep 16, 2025
CVE-2025-10530: Authentication Bypass by Spoofing6.5 MediumN/A0%Sep 16, 2025
CVE-2025-10529: Permissive Cross-domain Policy with Untrusted Domains6.5 MediumN/A0%Sep 16, 2025
CVE-2025-10528: Protection Mechanism Failure7.3 HighN/A0%Sep 16, 2025
CVE-2025-10527: Use After Free7.1 HighN/A0%Sep 16, 2025
CVE-2025-10290: User Interface (UI) Misrepresentation of Critical Information6.5 MediumN/A0%Sep 16, 2025
CVE-2025-39836: Out-of-bounds Write7.8 HighN/A0%Sep 16, 2025
CVE-2025-39834: Missing Release of Memory after Effective Lifetime5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39832: Improper Locking5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39831: Undefined Security Weakness5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39830: Missing Release of Memory after Effective Lifetime5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39829: Undefined Security Weakness5.5 MediumN/A0%Sep 16, 2025
CVE-2025-39827: Undefined Security Weakness8.8 HighN/A0%Sep 16, 2025
CVE-2025-39826: Use After Free8.8 HighN/A0%Sep 16, 2025
CVE-2025-39825: Concurrent Execution using Shared Resource with Improper Synchronization7.8 HighN/A0%Sep 16, 2025
86626-86650 of 775503