The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2021-33926: Server-Side Request Forgery (SSRF)8.8 HighN/A0%Feb 17, 2023
CVE-2021-32843: NULL Pointer Dereference6.2 MediumN/A0%Feb 17, 2023
CVE-2021-26277: Improper Control of Generation of Code5.6 MediumN/A0%Feb 17, 2023
CVE-2021-32844: NULL Pointer Dereference6.2 MediumN/A0%Feb 17, 2023
CVE-2021-35261: Unrestricted Upload of File with Dangerous Type9.8 CriticalN/A0%Feb 17, 2023
CVE-2021-33948: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A0%Feb 17, 2023
CVE-2021-32845: Use of Uninitialized Resource7.7 HighN/A0%Feb 17, 2023
CVE-2021-32441: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A0%Feb 17, 2023
CVE-2021-33950: Improper Restriction of XML External Entity Reference7.5 HighN/A0%Feb 17, 2023
CVE-2021-32142: Out-of-bounds Write7.8 HighN/A0%Feb 17, 2023
CVE-2021-33226: Buffer Copy without Checking Size of Input9.8 CriticalN/A3%Feb 17, 2023
CVE-2021-33391: Use After Free9.8 CriticalN/A0%Feb 17, 2023
CVE-2021-33949: Improper Control of Generation of Code9.8 CriticalN/A1%Feb 17, 2023
CVE-2021-33104: Undefined Security Weakness6.5 MediumN/A0%Feb 16, 2023
CVE-2021-42756: Stack-based Buffer Overflow9.8 CriticalN/A83%Feb 16, 2023
CVE-2021-42761: Session Fixation9.0 CriticalN/A2%Feb 16, 2023
CVE-2021-43074: Improper Verification of Cryptographic Signature4.3 MediumN/A0%Feb 16, 2023
CVE-2021-0187: Undefined Security Weakness3.2 LowN/A0%Feb 16, 2023
CVE-2021-40555: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Feb 16, 2023
CVE-2021-43529: Out-of-bounds Write9.8 CriticalN/A0%Feb 16, 2023
CVE-2021-23980: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Feb 16, 2023
CVE-2021-33925: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Feb 15, 2023
CVE-2021-34117: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A1%Feb 15, 2023
CVE-2021-33396: Cross-Site Request Forgery (CSRF)6.5 MediumN/A0%Feb 15, 2023
CVE-2021-38239: Improper Neutralization of Special Elements used in an SQL Command7.5 HighN/A0%Feb 15, 2023
2076-2100 of 23470