The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-94127:Critical Unauthenticated RCE in F5 BIG-IP APM
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
TitleEitWModules
CVE-2008-1159: Undefined Security Weakness7.5 HighN/A3%May 22, 2008
CVE-2008-0534: Improper Input Validation7.5 HighN/A4%May 22, 2008
CVE-2008-2285: Undefined Security Weakness5.3 MediumN/A2%May 18, 2008
CVE-2008-1657: Undefined Security Weakness8.1 HighN/A2%Apr 2, 2008
CVE-2008-0704: Undefined Security WeaknessN/AN/A4%Mar 28, 2008
CVE-2008-1537: Improper Limitation of a Pathname to a Restricted Directory7.3 HighN/A3%Mar 28, 2008
CVE-2008-1483: Undefined Security Weakness6.2 MediumN/A0%Mar 24, 2008
CVE-2008-1369: Undefined Security Weakness9.8 CriticalN/A3%Mar 18, 2008
CVE-2008-0852: Undefined Security WeaknessN/AN/A6%Feb 21, 2008
CVE-2008-0590: Improper Restriction of Operations within the Bounds of a Memory Buffer8.8 HighN/A22%Feb 5, 2008
CVE-2007-6415: Improper Control of Generation of Code8.1 HighN/A4%Jan 24, 2008
CVE-2007-5616: Undefined Security Weakness7.8 HighN/A1%Jan 9, 2008
CVE-2008-0132: Uncontrolled Resource ConsumptionN/AN/A9%Jan 8, 2008
CVE-2008-0096: Improper Restriction of Operations within the Bounds of a Memory BufferN/AN/A9%Jan 8, 2008
CVE-2008-0097: Improper Input ValidationN/AN/A2%Jan 8, 2008
CVE-2007-6505: Undefined Security Weakness5.3 MediumN/A1%Dec 20, 2007
CVE-2007-6360: Undefined Security Weakness7.5 HighN/A2%Dec 15, 2007
CVE-2007-6233: Improper Limitation of a Pathname to a Restricted DirectoryN/AN/A2%Dec 4, 2007
CVE-2007-6129: Improper Input ValidationN/AN/A3%Nov 26, 2007
CVE-2002-2379: Undefined Security Weakness7.5 HighN/A6%Oct 31, 2007
CVE-2007-5715: Undefined Security Weakness5.3 MediumN/A1%Oct 30, 2007
CVE-2007-5686: Undefined Security Weakness5.5 MediumN/A1%Oct 28, 2007
CVE-2007-5337: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A2%Oct 21, 2007
CVE-2007-5600: Improper Control of Generation of CodeN/AN/A2%Oct 19, 2007
CVE-2007-3102: Undefined Security Weakness7.5 HighN/A2%Oct 18, 2007
1776-1800 of 1974