The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-82252: Improper Link Resolution Before File Access7.5 High8.7 High0%Aug 28, 2026
CVE-2026-82251: Improper Limitation of a Pathname to a Restricted Directory7.5 High8.7 High0%Aug 28, 2026
CVE-2026-82250: Integer Underflow (Wrap or Wraparound)6.5 Medium7.1 High0%Aug 28, 2026
CVE-2026-82249: Improper Encoding or Escaping of Output3.1 Low2.3 Low0%Aug 28, 2026
CVE-2026-82248: Improper Link Resolution Before File Access5.3 Medium6.0 Medium0%Aug 28, 2026
CVE-2026-82247: Insufficiently Protected Credentials7.5 High8.7 High0%Aug 28, 2026
CVE-2026-82246: Server-Side Request Forgery (SSRF)7.1 High7.1 High0%Aug 28, 2026
CVE-2026-82245: Missing Authorization8.1 High7.2 High0%Aug 28, 2026
CVE-2026-82244: Improper Control of Generation of Code9.1 Critical9.4 Critical1%Aug 28, 2026
CVE-2026-82243: Server-Side Request Forgery (SSRF)7.6 High8.3 High0%Aug 28, 2026
CVE-2026-82242: Missing Authorization7.7 High8.3 High0%Aug 28, 2026
CVE-2026-82241: Server-Side Request Forgery (SSRF)7.1 High7.1 High0%Aug 28, 2026
CVE-2026-82240: Missing Authorization8.1 High8.6 High0%Aug 28, 2026
CVE-2026-82239: Missing Authorization8.1 High8.6 High0%Aug 28, 2026
CVE-2026-82238: Time-of-check Time-of-use (TOCTOU) Race Condition3.1 Low2.3 Low0%Aug 28, 2026
CVE-2026-82237: Incomplete Cleanup3.1 Low2.3 Low0%Aug 28, 2026
CVE-2026-82236: Incomplete Cleanup3.1 Low2.3 Low0%Aug 28, 2026
CVE-2026-82235: Uncontrolled Resource Consumption5.9 Medium8.2 High0%Aug 28, 2026
CVE-2026-82234: Server-Side Request Forgery (SSRF)8.2 High8.4 High0%Aug 28, 2026
CVE-2026-82233: Improper Limitation of a Pathname to a Restricted Directory5.7 Medium6.9 Medium0%Aug 28, 2026
CVE-2026-82222: Deserialization of Untrusted Data10.0 CriticalN/A2%Aug 28, 2026
CVE-2026-82111: Improper Limitation of a Pathname to a Restricted Directory4.3 Medium2.1 Low1%Aug 28, 2026
CVE-2026-81777: Authentication Bypass by Spoofing5.3 MediumN/A0%Aug 28, 2026
CVE-2026-81733: Cross-Site Request Forgery (CSRF)N/A5.1 Medium0%Aug 28, 2026
CVE-2026-81732: Exposure of Sensitive Information to an Unauthorized ActorN/A6.9 Medium0%Aug 28, 2026
12626-12650 of 395809