The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-68863: Stack-based Buffer Overflow7.5 HighN/A0%Aug 26, 2026
CVE-2026-68861: Improper Neutralization of Special Elements used in an OS Command8.8 HighN/A2%Aug 26, 2026
CVE-2026-68000: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A0%Aug 26, 2026
CVE-2026-67275: Reliance on Insufficiently Trustworthy Component6.5 MediumN/A0%Aug 26, 2026
CVE-2026-66003: Incorrect AuthorizationN/A7.1 High0%Aug 26, 2026
CVE-2026-60004: Improper Control of Generation of Code9.8 CriticalN/A24%Aug 26, 2026
CVE-2026-56547: Improper Input Validation3.5 LowN/A0%Aug 26, 2026
CVE-2026-54245: Improper Neutralization of Special Elements used in an SQL CommandN/A7.6 High1%Aug 26, 2026
CVE-2026-49809: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 26, 2026
CVE-2026-47848: Undefined Security Weakness6.1 MediumN/A0%Aug 26, 2026
CVE-2026-47844: Undefined Security Weakness3.7 LowN/A0%Aug 26, 2026
CVE-2026-47843: Undefined Security Weakness3.7 LowN/A0%Aug 26, 2026
CVE-2026-47842: Undefined Security Weakness6.5 MediumN/A0%Aug 26, 2026
CVE-2026-47834: Undefined Security Weakness6.5 MediumN/A0%Aug 26, 2026
CVE-2026-46371: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 26, 2026
CVE-2026-46370: Improper Neutralization of Special Elements used in an SQL Command6.5 MediumN/A0%Aug 26, 2026
CVE-2026-46369: Off-by-one Error7.5 HighN/A1%Aug 26, 2026
CVE-2026-26449: NULL Pointer Dereference7.5 HighN/A0%Aug 26, 2026
CVE-2026-26448: Use After Free9.8 CriticalN/A1%Aug 26, 2026
CVE-2026-26447: Use After Free7.5 HighN/A0%Aug 26, 2026
CVE-2026-26446: Improper Check or Handling of Exceptional Conditions7.5 HighN/A0%Aug 26, 2026
CVE-2026-26445: Allocation of Resources Without Limits or Throttling7.5 HighN/A0%Aug 26, 2026
CVE-2025-70340: Improper Access Control6.5 MediumN/A0%Aug 26, 2026
CVE-2025-70293: Heap-based Buffer Overflow9.8 CriticalN/A1%Aug 26, 2026
CVE-2025-70290: Integer Overflow or Wraparound9.8 CriticalN/A1%Aug 26, 2026
15226-15250 of 677876