The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
CVE-2026-63520:Microsoft SharePoint Remote Code Execution (FIXED)
CVE-2026-55040:Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)
CVE-2026-63077:Rapid7 Analysis: Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
CVE-2026-18577:N-able N-central Authentication Bypass Exploited in the Wild
TitleEitWModules
CVE-2026-81827: flowintel: Affected versions of Flowintel incorrectly attempted to validate login email addresses by calling Email(email)N/A6.9 MediumN/AAug 27, 2026
CVE-2026-81826: flowintel: Affected versions of Flowintel do not revoke existing authenticated sessions when a user’s password is changedN/A9.1 CriticalN/AAug 27, 2026
CVE-2026-81820: flowintel: Affected versions of Flowintel construct timeline HTML using attacker-controllable MISP object fields such as: * object…N/A5.1 MediumN/AAug 27, 2026
CVE-2026-81819: flowintel: Affected versions of Flowintel expose the /my_assignment/user API endpoint to any authenticated API userN/A5.3 MediumN/AAug 27, 2026
CVE-2026-81818: flowintel: Affected versions of Flowintel contain an authorization flaw in the administrative user-edit APIN/A8.6 HighN/AAug 27, 2026
CVE-2026-81817: flowintel: Affected versions of Flowintel contain an insecure direct object reference / broken object-level authorization issue…N/A7.2 HighN/AAug 27, 2026
CVE-2026-81735: bytedance UI-TARS-desktop: startServer.ts in the mcp-http-server package of UI-TARS-desktop defaulted its listen address to '::' when no host was…10.0 Critical10.0 CriticalN/AAug 27, 2026
CVE-2026-81727: nltk: NLTK versions before 3.10.3 contain a filesystem containment bypass vulnerability in the Downloader.download and…7.1 High6.9 MediumN/AAug 27, 2026
CVE-2026-81726: nltk: NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact APIs that bypass pathsec enforcement by…7.0 High8.3 HighN/AAug 27, 2026
CVE-2026-81725: nltk: NLTK before 3.10.3 contains a regular expression denial of service vulnerability in Pl196xCorpusReader that allows…3.7 Low6.3 MediumN/AAug 27, 2026
CVE-2026-81724: nltk: NLTK before 3.10.3 contains an uncontrolled recursion vulnerability in nltk.featstruct.FeatStructReader that allows…5.3 Medium6.9 MediumN/AAug 27, 2026
CVE-2026-81723: nltk: NLTK versions before 3.10.3 contain a quadratic CPU exhaustion vulnerability in XMLCorpusView._read_xml_fragment() that…3.7 Low6.3 MediumN/AAug 27, 2026
CVE-2026-81722: nltk: nltk PorterStemmer in versions <= 3.10.2 (fixed in 3.10.3) contains an inefficient-algorithmic-complexity denial of…7.5 High8.7 HighN/AAug 27, 2026
CVE-2026-81721: jahlives openssl_encrypt: openssl_encrypt before 1.4.9 fails to validate KDF cost parameters in encrypted file metadata and keystore headers,…7.5 High8.7 HighN/AAug 27, 2026
CVE-2026-81720: jahlives openssl_encrypt: openssl_encrypt before 1.4.9 fails to validate the memory_cost parameter from identity file protection blocks, allowing…6.2 Medium6.9 MediumN/AAug 27, 2026
CVE-2026-81719: jahlives openssl_encrypt: openssl_encrypt before 1.4.9 executes untrusted third-party plugins with insufficient controls: the plugin signature…7.8 High9.3 CriticalN/AAug 27, 2026
CVE-2026-81718: jahlives openssl_encrypt: openssl_encrypt versions before 1.4.9 use under-parameterized PBKDF2-HMAC-SHA256 with only 100,000 iterations to…7.5 High8.7 HighN/AAug 27, 2026
CVE-2026-81717: jahlives openssl_encrypt: openssl_encrypt (pip package openssl-encrypt) before 1.4.9 contains two weaknesses in the portable USB drive feature,…3.5 Low9.3 CriticalN/AAug 27, 2026
CVE-2026-81716: jahlives openssl_encrypt: openssl_encrypt (pip: openssl-encrypt) versions before 1.4.9 contain a path traversal flaw in…5.2 Medium8.7 HighN/AAug 27, 2026
CVE-2026-81715: jahlives openssl_encrypt: openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8 do not redact the keyserver bearer token passed as the…3.3 Low8.7 HighN/AAug 27, 2026
CVE-2026-81714: jahlives openssl_encrypt: openssl_encrypt (pip: openssl-encrypt) versions <= 1.4.8 use suffix-tolerant fingerprint matching in enroll_trust_key…7.0 High9.3 CriticalN/AAug 27, 2026
CVE-2026-81707: jahlives openssl_encrypt: openssl_encrypt before 1.4.9 fails to sanitize the email field of imported identity documents, allowing attackers to…9.8 Critical9.3 CriticalN/AAug 27, 2026
CVE-2026-81706: jahlives openssl_encrypt: openssl_encrypt before 1.4.9 fails to prevent namespace collisions between own identities and contacts in…6.8 Medium9.3 CriticalN/AAug 27, 2026
CVE-2026-81705: jahlives openssl_encrypt: openssl-encrypt before 1.4.9 fails to redact the file password in its --debug argv dump when the password is supplied…7.5 High8.7 HighN/AAug 27, 2026
CVE-2026-81704: jahlives openssl_encrypt: openssl_encrypt versions before 1.4.9 contain a weak key derivation vulnerability in the D-Bus…7.5 High8.7 HighN/AAug 27, 2026
1-25 of 566969