The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2026-14837: Improper Verification of Cryptographic Signature7.8 High8.5 High0%Jul 27, 2026
CVE-2026-66035: Heap-based Buffer Overflow7.5 High7.7 High0%Jul 24, 2026
CVE-2026-66034: Out-of-bounds Read7.5 High7.7 High0%Jul 24, 2026
CVE-2026-66033: Integer Underflow (Wrap or Wraparound)7.5 High8.7 High1%Jul 24, 2026
CVE-2026-66032: Double Free8.8 High8.7 High0%Jul 24, 2026
CVE-2026-65698: Improper Limitation of a Pathname to a Restricted Directory5.3 Medium6.0 Medium0%Jul 23, 2026
CVE-2026-65607: Improper Limitation of a Pathname to a Restricted Directory6.5 Medium7.1 High1%Jul 23, 2026
CVE-2026-63226: Improper Restriction of Communication Channel to Intended Endpoints5.8 Medium6.9 Medium0%Jul 23, 2026
CVE-2026-57599: Improper Privilege Management6.6 MediumN/A0%Jul 22, 2026
CVE-2026-47394: Improper Limitation of a Pathname to a Restricted DirectoryN/A8.7 High0%Jul 21, 2026
CVE-2026-59851: Incorrect Authorization8.8 HighN/A0%Jul 21, 2026
CVE-2026-59850: Use After Free7.5 HighN/A0%Jul 21, 2026
CVE-2026-59849: Loop with Unreachable Exit Condition7.5 HighN/A0%Jul 21, 2026
CVE-2026-59848: Allocation of Resources Without Limits or Throttling5.3 MediumN/A0%Jul 21, 2026
CVE-2026-59847: Incorrect Check of Function Return Value7.5 HighN/A0%Jul 21, 2026
CVE-2026-59846: Improper Neutralization of Special Elements used in an OS Command3.9 LowN/A0%Jul 21, 2026
CVE-2026-59845: Detection of Error Condition Without Action5.9 MediumN/A0%Jul 21, 2026
CVE-2026-59844: Memory Allocation with Excessive Size Value6.5 MediumN/A1%Jul 21, 2026
CVE-2026-59843: Loop with Unreachable Exit Condition6.5 MediumN/A1%Jul 21, 2026
CVE-2026-59842: Out-of-bounds Read5.3 MediumN/A0%Jul 21, 2026
CVE-2026-15370: Stack-based Buffer Overflow7.3 HighN/A0%Jul 21, 2026
CVE-2026-58624: Improper Input Validation5.4 MediumN/A1%Jul 20, 2026
CVE-2026-56624: Improper Certificate Validation7.3 HighN/A0%Jul 20, 2026
CVE-2026-56623: Improper Limitation of a Pathname to a Restricted Directory7.1 HighN/A1%Jul 20, 2026
CVE-2026-56452: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A1%Jul 20, 2026
151-175 of 1969