The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2025-11679: Out-of-bounds ReadN/A5.9 Medium0%Oct 20, 2025
CVE-2025-9584: Improper Neutralization of Special Elements used in a Command8.8 High2.1 Low8%Aug 28, 2025
CVE-2025-57810: Improper Input Validation7.5 High8.7 High1%Aug 26, 2025
CVE-2025-55303: Improper Neutralization of Input During Web Page Generation6.1 Medium6.9 Medium1%Aug 19, 2025
CVE-2025-55154: Integer Overflow or Wraparound8.8 HighN/A1%Aug 13, 2025
CVE-2025-55135: Unrestricted Upload of File with Dangerous Type6.4 MediumN/A0%Aug 7, 2025
CVE-2020-36847: Unrestricted Upload of File with Dangerous Type9.8 CriticalN/A45%Jul 12, 2025
CVE-2025-7066: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Jul 4, 2025
CVE-2025-40916: Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)9.1 CriticalN/A0%Jun 16, 2025
CVE-2025-47939: Insufficient Type Distinction5.4 MediumN/A0%May 20, 2025
CVE-2024-51991: Unrestricted Upload of File with Dangerous Type4.9 Medium1.1 Low0%May 5, 2025
CVE-2025-32807: Path Traversal: '../filedir'5.3 MediumN/A1%Apr 11, 2025
CVE-2025-32025: Allocation of Resources Without Limits or ThrottlingN/A6.9 Medium0%Apr 8, 2025
CVE-2025-32024: Allocation of Resources Without Limits or ThrottlingN/A6.9 Medium0%Apr 8, 2025
CVE-2025-27316: Cross-Site Request Forgery (CSRF)4.3 MediumN/A0%Feb 24, 2025
CVE-2022-41573: Unrestricted Upload of File with Dangerous Type9.8 CriticalN/A1%Jan 7, 2025
CVE-2024-47946: Unrestricted Upload of File with Dangerous Type7.2 HighN/A1%Dec 10, 2024
CVE-2024-53863: Unrestricted Upload of File with Dangerous Type9.1 Critical8.2 High1%Dec 3, 2024
CVE-2024-9760: Out-of-bounds Read3.3 LowN/A0%Nov 22, 2024
CVE-2024-9750: Out-of-bounds Read7.8 HighN/A0%Nov 22, 2024
CVE-2024-53426: Buffer Copy without Checking Size of Input6.2 MediumN/A0%Nov 21, 2024
CVE-2024-9626: Missing Authorization4.3 MediumN/A0%Oct 26, 2024
CVE-2021-4449: Unrestricted Upload of File with Dangerous Type9.8 CriticalN/A5%Oct 16, 2024
CVE-2024-47823: Improper Input Validation9.8 Critical7.7 High1%Oct 8, 2024
CVE-2024-47635: Cross-Site Request Forgery (CSRF)5.4 MediumN/A0%Oct 5, 2024
101-125 of 592