The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2021-26642: Unrestricted Upload of File with Dangerous Type8.8 HighN/A3%Jan 20, 2023
CVE-2021-29368: Session Fixation8.8 HighN/A1%Jan 20, 2023
CVE-2021-33642: Loop with Unreachable Exit Condition5.5 MediumN/A0%Jan 20, 2023
CVE-2021-26644: Improper Neutralization of Special Elements used in an SQL Command8.8 HighN/A2%Jan 20, 2023
CVE-2021-27782: Improper Restriction of Excessive Authentication Attempts5.4 MediumN/A0%Jan 19, 2023
CVE-2021-37774: Improper Control of Generation of Code8.0 HighN/A0%Jan 19, 2023
CVE-2021-4314: Improper Privilege Management5.3 MediumN/A0%Jan 18, 2023
CVE-2021-36630: Allocation of Resources Without Limits or Throttling7.5 HighN/A2%Jan 18, 2023
CVE-2021-33959: Origin Validation Error7.5 HighN/A4%Jan 18, 2023
CVE-2021-36647: Use of a Broken or Risky Cryptographic Algorithm4.7 MediumN/A0%Jan 17, 2023
CVE-2021-26358: Undefined Security Weakness9.8 CriticalN/AN/AJan 17, 2023
CVE-2021-26385: Undefined Security Weakness9.8 CriticalN/AN/AJan 17, 2023
CVE-2021-26405: Undefined Security Weakness9.8 CriticalN/AN/AJan 17, 2023
CVE-2021-26319: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-26357: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-26374: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-46796: Undefined Security Weakness9.8 CriticalN/AN/AJan 17, 2023
CVE-2021-46799: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-26399: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-46761: Undefined Security WeaknessN/AN/AN/AJan 17, 2023
CVE-2021-46793: Undefined Security Weakness9.8 CriticalN/AN/AJan 17, 2023
CVE-2021-32837: Inefficient Regular Expression Complexity7.5 HighN/A3%Jan 17, 2023
CVE-2021-4313: Improper Neutralization of Special Elements used in an SQL Command5.5 MediumN/A0%Jan 16, 2023
CVE-2021-4312: Improper Neutralization of Input During Web Page Generation3.5 LowN/A0%Jan 13, 2023
CVE-2021-36204: Insufficiently Protected Credentials7.8 HighN/A0%Jan 13, 2023
2201-2225 of 23470