The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-11812: Cross-Site Request Forgery (CSRF)6.1 MediumN/A0%Dec 20, 2024
CVE-2024-11806: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Dec 20, 2024
CVE-2024-11784: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2024-11783: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2024-11775: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2024-11774: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2024-11411: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2024-11331: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Dec 20, 2024
CVE-2024-11297: Exposure of Sensitive Information to an Unauthorized Actor5.3 MediumN/A1%Dec 20, 2024
CVE-2024-8968: Improper Neutralization of Input During Web Page Generation4.7 MediumN/A0%Dec 20, 2024
CVE-2024-5955: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Dec 20, 2024
CVE-2024-11108: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Dec 20, 2024
CVE-2024-10706: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A0%Dec 20, 2024
CVE-2024-10555: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A0%Dec 20, 2024
CVE-2024-21549: Improper Input Validation8.6 High6.6 Medium1%Dec 20, 2024
CVE-2024-44298: Insecure Storage of Sensitive Information3.3 LowN/A0%Dec 20, 2024
CVE-2024-44293: Cross-Site Request Forgery (CSRF)5.5 MediumN/A0%Dec 20, 2024
CVE-2024-44292: Insecure Storage of Sensitive Information5.5 MediumN/A0%Dec 20, 2024
CVE-2024-44231: Undefined Security Weakness4.6 MediumN/A0%Dec 20, 2024
CVE-2024-44223: Improper Preservation of Permissions4.6 MediumN/A0%Dec 20, 2024
CVE-2024-44211: Improper Link Resolution Before File Access5.5 MediumN/A0%Dec 20, 2024
CVE-2024-44195: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A1%Dec 20, 2024
CVE-2023-42867: Improper Preservation of Permissions7.8 HighN/A0%Dec 20, 2024
CVE-2024-11776: Improper Neutralization of Input During Web Page Generation6.4 MediumN/A0%Dec 20, 2024
CVE-2022-34159: Improper Input Validation7.5 HighN/A1%Dec 20, 2024
122526-122550 of 559420