rapid7 Summary
Latest vulnerabilities published by rapid7
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Remote Code Execution Vulnerability in Velociraptor Monitoring Tool
CVE-2026-78413Rapid7Velociraptor5.5MEDIUMImproper Permission Check in Velociraptor Server Metadata Management
CVE-2026-78411Rapid7Velociraptor6.5MEDIUMAPI Permissions Flaw in Velociraptor Affects Event Streaming
CVE-2026-78412Rapid7Velociraptor4.9MEDIUMGraphQL Query Injection in Rapid7 Bulk Export MCP
CVE-2026-97228Rapid7Platform2.7LOWUncontrolled Search Path Vulnerability in Rapid7 InsightVM on Windows
CVE-2026-89325Rapid7Insight Agent7.8HIGHDeadlock Condition in Velociraptor Affects User Management Module
CVE-2026-77798Rapid7Velociraptor6.5MEDIUMOut of Bound Vulnerability in Velociraptor's Prefetch Library
CVE-2026-77797Rapid7Velociraptor3.6LOWVQL Statement Manipulation in Velociraptor by Investigation Roles
CVE-2026-19072Rapid7Velociraptor9.9CRITICALRemote Code Execution Risk in Velociraptor Due to Insufficient Access Control
CVE-2026-19584Rapid7Velociraptor7.7HIGHVulnerability in Velociraptor Client Monitoring Leading to Unauthorized Command Execution
CVE-2026-19583Rapid7Velociraptor9.9CRITICALLogic Vulnerability in Metasploit Framework's JSON-RPC Web Service Interface
CVE-2026-16895Rapid7Metasploit-framework5.1MEDIUMArtifact Overwrite Vulnerability in Velociraptor by Velocidex
CVE-2026-19200Rapid7Velociraptor8.9HIGHCross-Site Scripting Vulnerability in Velociraptor Web GUI
CVE-2026-15371Rapid7Velociraptor8.1HIGHMulti-Tenant Data Access Flaw in Velociraptor
CVE-2026-18652Rapid7Velociraptor6.5MEDIUMDivide by Zero Vulnerability in Velociraptor Client Software
CVE-2026-64951Rapid7Velociraptor3.5LOWPermission Misconfiguration in Velociraptor Allowing Unauthorized Deletion of Hunts
CVE-2026-64952Rapid7Velociraptor6.5MEDIUMArbitrary Code Execution Risk in Velociraptor's CSV Export Functionality
CVE-2026-64955Rapid7Velociraptor6.1MEDIUMUnauthorized Role Escalation in Velociraptor by Velocidex
CVE-2026-64954Rapid7Velociraptor8.2HIGHImpersonation Risk in Velociraptor Due to Insecure Email Claim Handling
CVE-2026-18639Rapid7Velociraptor7.3HIGHUnauthorized Server Termination Vulnerability in Velociraptor by Velociraptor Team
CVE-2026-18638Rapid7Velociraptor6.5MEDIUMData Corruption Vulnerability in NewNotebook API by Velociraptor
CVE-2026-18640Rapid7Velociraptor7.1HIGHPermission Misconfiguration in Velociraptor Multi-Tenant Deployments
CVE-2026-18860Rapid7Velociraptor8.7HIGHBuffer Management Issues in Velociraptor's NTFS Parsing Library
CVE-2026-17535Rapid7Velociraptor6.2MEDIUMVFSGetBuffer Vulnerability in Velociraptor API Affects Sensitive File Access
CVE-2026-18636Rapid7Velociraptor6.8MEDIUMImpersonation Flaw in Velociraptor Software
CVE-2026-18635Rapid7Velociraptor7.2HIGH