The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-76680: Server-Side Request Forgery (SSRF)8.5 HighN/A0%Sep 15, 2026
CVE-2026-76679: Uncontrolled Resource Consumption8.6 HighN/A0%Sep 15, 2026
CVE-2026-76678: Improper Privilege Management8.8 HighN/A1%Sep 15, 2026
CVE-2026-76677: Improper Privilege Management8.8 HighN/A0%Sep 15, 2026
CVE-2026-76676: Stack-based Buffer Overflow8.8 HighN/A0%Sep 15, 2026
CVE-2026-76675: Improper Neutralization of Special Elements used in a Command9.1 CriticalN/A1%Sep 15, 2026
CVE-2026-76674: Buffer Copy without Checking Size of Input9.8 CriticalN/A1%Sep 15, 2026
CVE-2026-76673: Improper Authentication9.8 CriticalN/A0%Sep 15, 2026
CVE-2026-76672: Exposure of Sensitive Information to an Unauthorized Actor9.9 CriticalN/A0%Sep 15, 2026
CVE-2026-76670: Improper Privilege Management9.9 CriticalN/A0%Sep 15, 2026
CVE-2026-76669: Improper Privilege Management9.9 CriticalN/A0%Sep 15, 2026
CVE-2026-73966: Improper Access Control7.2 HighN/A0%Sep 15, 2026
CVE-2026-73965: Improper Access Control6.8 MediumN/A0%Sep 15, 2026
CVE-2026-73963: Improper Authentication9.8 CriticalN/A0%Sep 15, 2026
CVE-2026-73962: Improper Access Control9.6 CriticalN/A0%Sep 15, 2026
CVE-2026-73961: Improper Authentication9.8 CriticalN/A0%Sep 15, 2026
CVE-2026-73960: Uncontrolled Resource Consumption7.5 HighN/A0%Sep 15, 2026
CVE-2026-73959: Improper Access Control8.8 HighN/A0%Sep 15, 2026
CVE-2026-73958: Improper Access Control8.1 HighN/A0%Sep 15, 2026
CVE-2026-73957: Improper Access Control9.3 CriticalN/A0%Sep 15, 2026
CVE-2026-73956: Improper Authentication9.8 CriticalN/A0%Sep 15, 2026
CVE-2026-73955: Improper Access Control7.3 HighN/A0%Sep 15, 2026
CVE-2026-73954: Improper Access Control8.1 HighN/A0%Sep 15, 2026
CVE-2026-73953: Improper Authentication9.8 CriticalN/A0%Sep 15, 2026
CVE-2026-73952: Improper Authentication9.1 CriticalN/A0%Sep 15, 2026
9001-9025 of 400424