The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-80194: Exposure of Sensitive Information to an Unauthorized Actor4.3 Medium8.7 High0%Aug 26, 2026
CVE-2026-80193: Missing Authorization8.8 High8.7 High0%Aug 26, 2026
CVE-2026-80192: Improper Authentication8.1 High8.6 High0%Aug 26, 2026
CVE-2026-80191: Missing Authorization7.5 High8.7 High0%Aug 26, 2026
CVE-2026-80189: Improper Handling of Highly Compressed Data (Data Amplification)6.5 Medium7.1 High0%Aug 26, 2026
CVE-2026-76149: Integer Overflow or Wraparound4.4 Medium4.6 Medium0%Aug 26, 2026
CVE-2026-76148: Improper Control of Generation of Code7.8 High8.4 High0%Aug 26, 2026
CVE-2026-73335: Improper Authorization in Handler for Custom URL Scheme5.3 Medium4.6 Medium0%Aug 26, 2026
CVE-2026-58092: Authentication Bypass Using an Alternate Path or Channel8.1 HighN/A0%Aug 26, 2026
CVE-2026-58091: Use After Free7.8 HighN/A0%Aug 26, 2026
CVE-2026-58090: Use After Free7.8 HighN/A0%Aug 26, 2026
CVE-2026-58089: Improper Check for Dropped Privileges7.8 HighN/A0%Aug 26, 2026
CVE-2026-57171: Improper Limitation of a Pathname to a Restricted Directory7.7 HighN/A0%Aug 26, 2026
CVE-2026-57170: Improper Control of Generation of Code7.8 HighN/A0%Aug 26, 2026
CVE-2026-54467: Unverified Ownership7.0 HighN/A0%Aug 26, 2026
CVE-2026-52776: Incomplete List of Disallowed InputsN/A8.6 High0%Aug 26, 2026
CVE-2026-29988: Cleartext Transmission of Sensitive Information7.6 High8.3 High0%Aug 26, 2026
CVE-2026-19632: Weak Password Recovery Mechanism for Forgotten Password9.8 CriticalN/A1%Aug 26, 2026
CVE-2026-80138: Improper Neutralization of Special Elements used in an OS Command9.8 Critical9.2 Critical1%Aug 25, 2026
CVE-2026-79912: Improper Neutralization of Special Elements used in a Command8.3 High5.5 Medium1%Aug 25, 2026
CVE-2026-79911: Stack-based Buffer Overflow10.0 Critical9.3 Critical1%Aug 25, 2026
CVE-2026-70665: Improper Authorization4.2 MediumN/A0%Aug 25, 2026
CVE-2026-55805: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Aug 25, 2026
CVE-2026-54757: Improper Control of Generation of Code7.8 HighN/A0%Aug 25, 2026
CVE-2026-44476: Improper AuthenticationN/A6.3 Medium0%Aug 25, 2026
15851-15875 of 568479