The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-94127:Critical Unauthenticated RCE in F5 BIG-IP APM
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
TitleEitWModules
CVE-2025-43343: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A1%Sep 15, 2025
CVE-2025-43342: Improper Input Validation9.8 CriticalN/A1%Sep 15, 2025
CVE-2025-43341: Missing Authorization7.8 HighN/A0%Sep 15, 2025
CVE-2025-43340: Improper Access Control7.8 HighN/A0%Sep 15, 2025
CVE-2025-43337: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43333: Improper Privilege Management7.8 HighN/A0%Sep 15, 2025
CVE-2025-43332: Improper Access Control5.2 MediumN/A0%Sep 15, 2025
CVE-2025-43331: Missing Authorization4.0 MediumN/A0%Sep 15, 2025
CVE-2025-43330: Protection Mechanism Failure8.2 HighN/A0%Sep 15, 2025
CVE-2025-43329: Missing Authorization8.8 HighN/A0%Sep 15, 2025
CVE-2025-43328: Improper Access Control3.3 LowN/A0%Sep 15, 2025
CVE-2025-43327: User Interface (UI) Misrepresentation of Critical Information6.5 MediumN/A0%Sep 15, 2025
CVE-2025-43326: Out-of-bounds Read5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43325: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43321: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43319: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43318: Missing Authorization6.2 MediumN/A0%Sep 15, 2025
CVE-2025-43317: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43316: Missing Authorization7.8 HighN/A0%Sep 15, 2025
CVE-2025-43315: Improper Access Control5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43314: Improper Limitation of a Pathname to a Restricted Directory5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43312: Buffer Copy without Checking Size of Input5.5 MediumN/A0%Sep 15, 2025
CVE-2025-43311: Missing Authorization5.1 MediumN/A0%Sep 15, 2025
CVE-2025-43310: Exposure of Private Personal Information to an Unauthorized Actor4.4 MediumN/A0%Sep 15, 2025
CVE-2025-43308: Improper Access Control5.3 MediumN/A0%Sep 15, 2025
86701-86725 of 775503