The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2026-90189: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: register configfs subsystem after…N/AN/AN/ASep 17, 2026
CVE-2026-90188: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: free global tag_set on init error path If…N/AN/AN/ASep 17, 2026
CVE-2026-90187: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: free zones array on device power-off…N/AN/AN/ASep 17, 2026
CVE-2026-90186: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: reject per-device queue resize for shared…N/AN/AN/ASep 17, 2026
CVE-2026-90185: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute stores with…N/AN/AN/ASep 17, 2026
CVE-2026-90184: Linux: In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute updates with…N/AN/AN/ASep 17, 2026
CVE-2026-90183: Linux: In the Linux kernel, the following vulnerability has been resolved: blk-iolatency: clear delay state when freeing…N/AN/AN/ASep 17, 2026
CVE-2026-90182: Linux: In the Linux kernel, the following vulnerability has been resolved: blk-iocost: clear delay state when freeing policy…N/AN/AN/ASep 17, 2026
CVE-2026-90181: Linux: In the Linux kernel, the following vulnerability has been resolved: ublk: avoid teardown retry loop on xarray…N/AN/AN/ASep 17, 2026
CVE-2026-90180: Linux: In the Linux kernel, the following vulnerability has been resolved: block: mtip32xx: synchronize ioctls with device…N/AN/AN/ASep 17, 2026
CVE-2026-90179: Linux: In the Linux kernel, the following vulnerability has been resolved: apparmor: fix deadlock in complain-mode change_hat…N/AN/AN/ASep 17, 2026
CVE-2026-90178: Linux: In the Linux kernel, the following vulnerability has been resolved: hwmon: (coretemp) Fix core_data leak on CPUs…N/AN/AN/ASep 17, 2026
CVE-2026-90177: Linux: In the Linux kernel, the following vulnerability has been resolved: bpf: Check pointer type for all atomic RMW paths…7.8 HighN/AN/ASep 17, 2026
CVE-2026-90176: Linux: In the Linux kernel, the following vulnerability has been resolved: ksmbd: Do not skip lock checks for single-byte…8.1 HighN/AN/ASep 17, 2026
CVE-2026-90175: Linux: In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of…N/AN/AN/ASep 17, 2026
CVE-2026-90174: Linux: In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds read in…7.1 HighN/AN/ASep 17, 2026
CVE-2026-90173: Linux: In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: free completion queues with…9.8 CriticalN/AN/ASep 17, 2026
CVE-2026-90172: Linux: In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: destroy QP before mem pools on…7.5 HighN/AN/ASep 17, 2026
CVE-2026-90171: Linux: In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: release pending child sockets…N/AN/AN/ASep 17, 2026
CVE-2026-90170: Linux: In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ipc response length before…N/AN/AN/ASep 17, 2026
CVE-2026-90169: Linux: In the Linux kernel, the following vulnerability has been resolved: ksmbd: free preauth sessions on connection teardown…N/AN/AN/ASep 17, 2026
CVE-2026-90168: Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.N/AN/AN/ASep 17, 2026
CVE-2026-90167: Linux: In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize oplock close with pending break…N/AN/AN/ASep 17, 2026
CVE-2026-90166: Linux: In the Linux kernel, the following vulnerability has been resolved: smb/server: fix null-ptr-deref in…N/AN/AN/ASep 17, 2026
CVE-2026-90165: Linux: In the Linux kernel, the following vulnerability has been resolved: smb/server: fix invalid pointer dereference in…N/AN/AN/ASep 17, 2026
1151-1175 of 396001