The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-69102: Use of Hard-coded Credentials9.8 Critical9.3 Critical1%Aug 11, 2026
CVE-2026-48790: Incorrect Default Permissions5.5 MediumN/A0%Aug 11, 2026
CVE-2026-48771: Exposure of Sensitive Information to an Unauthorized Actor8.2 HighN/A0%Aug 11, 2026
CVE-2026-48767: Exposure of Sensitive Information to an Unauthorized Actor7.6 HighN/A0%Aug 11, 2026
CVE-2026-48494: Authorization Bypass Through User-Controlled KeyN/A7.1 High0%Aug 11, 2026
CVE-2026-48447: Incorrect Authorization7.7 HighN/A0%Aug 11, 2026
CVE-2026-48441: Improper Limitation of a Pathname to a Restricted Directory8.6 HighN/A0%Aug 11, 2026
CVE-2026-48416: Incorrect Authorization7.5 HighN/A1%Aug 11, 2026
CVE-2026-48415: Incorrect Authorization8.3 HighN/A0%Aug 11, 2026
CVE-2026-48414: Improper Neutralization of Input During Web Page Generation8.7 HighN/A0%Aug 11, 2026
CVE-2026-48413: Improper Neutralization of Input During Web Page Generation8.7 HighN/A1%Aug 11, 2026
CVE-2026-48412: Incorrect Authorization7.2 HighN/A1%Aug 11, 2026
CVE-2026-48411: Incorrect Authorization4.9 MediumN/A1%Aug 11, 2026
CVE-2026-48410: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48409: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48408: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48407: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48406: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48405: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48404: Out-of-bounds Write7.8 HighN/A0%Aug 11, 2026
CVE-2026-48397: Deserialization of Untrusted Data8.6 HighN/A1%Aug 11, 2026
CVE-2026-48381: Improper Neutralization of Special Elements used in an SQL Command9.0 CriticalN/A1%Aug 11, 2026
CVE-2026-47940: Integer Overflow or Wraparound7.8 HighN/A0%Aug 11, 2026
CVE-2026-47705: Improper Neutralization of Formula Elements in a CSV File9.6 CriticalN/A1%Aug 11, 2026
CVE-2026-27302: Incorrect Authorization10.0 CriticalN/A1%Aug 11, 2026
22651-22675 of 764060