The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-12832: Improper Neutralization of Special Elements used in an SQL Command6.3 MediumN/A0%Dec 20, 2024
CVE-2024-12831: Incorrect Authorization7.8 HighN/A0%Dec 20, 2024
CVE-2024-12830: Improper Limitation of a Pathname to a Restricted Directory7.3 HighN/A1%Dec 20, 2024
CVE-2024-12829: Improper Neutralization of Special Elements used in an OS Command8.8 HighN/A1%Dec 20, 2024
CVE-2024-56327: Improper Control of Generation of Code9.8 Critical7.7 High0%Dec 19, 2024
CVE-2024-54663: Inclusion of Functionality from Untrusted Control Sphere7.5 HighN/A1%Dec 19, 2024
CVE-2024-54009: Exposure of Sensitive Information to an Unauthorized Actor4.0 MediumN/A0%Dec 19, 2024
CVE-2024-12700: Unrestricted Upload of File with Dangerous Type8.8 High8.7 High1%Dec 19, 2024
CVE-2024-54984: Missing Authentication for Critical Function9.8 CriticalN/A0%Dec 19, 2024
CVE-2024-54983: Missing Authentication for Critical Function9.8 CriticalN/A0%Dec 19, 2024
CVE-2024-54982: Undefined Security WeaknessN/AN/A0%Dec 19, 2024
CVE-2024-2201: Undefined Security Weakness4.7 MediumN/A8%Dec 19, 2024
CVE-2024-12729: Improper Control of Generation of Code8.8 HighN/A1%Dec 19, 2024
CVE-2024-12728: Use of Weak Credentials9.8 CriticalN/A1%Dec 19, 2024
CVE-2024-12727: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Dec 19, 2024
CVE-2024-12672: Out-of-bounds Write7.3 High8.5 High0%Dec 19, 2024
CVE-2024-12175: Use After Free7.8 High8.5 High0%Dec 19, 2024
CVE-2024-11364: Use of Uninitialized Resource7.3 High8.5 High0%Dec 19, 2024
CVE-2024-11157: Out-of-bounds Write7.3 High8.5 High0%Dec 19, 2024
CVE-2024-7139: Out-of-bounds Write6.5 MediumN/A0%Dec 19, 2024
CVE-2024-7138: Reachable Assertion6.5 MediumN/A0%Dec 19, 2024
CVE-2024-7137: Out-of-bounds Write6.5 MediumN/A0%Dec 19, 2024
CVE-2024-53991: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A27%Dec 19, 2024
CVE-2024-52794: Improper Neutralization of Input During Web Page Generation6.8 MediumN/A0%Dec 19, 2024
CVE-2024-52589: Exposure of Sensitive Information to an Unauthorized Actor2.2 LowN/A0%Dec 19, 2024
122551-122575 of 395809