rapid7 Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by rapid7
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Remote Code Execution Risk in Velociraptor Due to Insufficient Access Control
CVE-2026-19584Rapid7Velociraptor7.7HIGHVulnerability in Velociraptor Client Monitoring Leading to Unauthorized Command Execution
CVE-2026-19583Rapid7Velociraptor9.9CRITICALArtifact Overwrite Vulnerability in Velociraptor by Velocidex
CVE-2026-19200Rapid7Velociraptor8.9HIGHCross-Site Scripting Vulnerability in Velociraptor Web GUI
CVE-2026-15371Rapid7Velociraptor8.1HIGHUnauthorized Role Escalation in Velociraptor by Velocidex
CVE-2026-64954Rapid7Velociraptor8.2HIGHImpersonation Risk in Velociraptor Due to Insecure Email Claim Handling
CVE-2026-18639Rapid7Velociraptor7.3HIGHData Corruption Vulnerability in NewNotebook API by Velociraptor
CVE-2026-18640Rapid7Velociraptor7.1HIGHPermission Misconfiguration in Velociraptor Multi-Tenant Deployments
CVE-2026-18860Rapid7Velociraptor8.7HIGHImpersonation Flaw in Velociraptor Software
CVE-2026-18635Rapid7Velociraptor7.2HIGHIdentity Spoofing Vulnerability in Velociraptor by Velociraptor Labs
CVE-2026-18972Rapid7Velociraptor9.6CRITICALLocal Code Execution Vulnerability in Rapid7 InsightVM and Insight Agent
CVE-2026-14172Rapid7Insightvm7.8HIGHOS Command Injection Vulnerability in Rapid7 InsightConnect Traceroute Plugin for Linux
CVE-2026-8666Rapid7Insightconnect Tracero...7.7HIGHOS Command Injection Vulnerability in Rapid7 InsightConnect AWK Plugin for Linux
CVE-2026-8592Rapid7Insightconnect Awk Plugin7.7HIGHOS Command Injection Vulnerability in Rapid7 InsightConnect Translate Plugin on Linux
CVE-2026-8665Rapid7Insightconnect Tr Plugin7.7HIGHOS Command Injection in Rapid7 InsightConnect Ping Plugin for Linux
CVE-2026-8660Rapid7Insightconnect Ping Pl...7.7HIGHArbitrary File Write Vulnerability in Rapid7 InsightConnect Sed Plugin for Linux
CVE-2026-9154Rapid7Insightconnect Sed Plugin7.1HIGHOS Command Injection in Rapid7 InsightConnect Sed Plugin for Linux
CVE-2026-9155Rapid7Insightconnect Sed Plugin8.8HIGHYAML Injection Vulnerability in Rapid7 Velociraptor
CVE-2026-8795Rapid7Velociraptor7.8HIGHLocal Privilege Escalation Vulnerability in Rapid7 Metasploit Pro
CVE-2026-7373Rapid7Metasploit Pro8.5HIGHLocal Privilege Escalation in Rapid7 Insight Agent for Windows
CVE-2026-6482Rapid7Insight Agent8.5HIGHVulnerability in Velociraptor Plugin Allows Unauthorized Access to Multiple Organizations
CVE-2026-6290Rapid7Velociraptor8HIGHImproper Input Validation in Rapid7 Velociraptor Server
CVE-2026-5329Rapid7Velociraptor8.5HIGHSignature Verification Issue in Rapid7 InsightVM Affects Account Security
CVE-2026-1568Rapid7Vulnerability Management9.6CRITICALRapid7 Velociraptor Reflected XSS
CVE-2023-5950Rapid7Velociraptor8.6HIGHRapid7 InsightCloudSec getattr() method access
CVE-2023-1304Rapid7InsightcloudsecπΎπ‘8.8HIGH