Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MSF:EXPLOIT-WINDOWS-

Windows Registry Only Persistence_MSF:EXPLOIT-WINDOWS-PERSISTENCE-REGISTRY-

This module will install a payload that is executed during boot. It will be executed either at user logon or system...

N/A N/A METASPLOIT
NONE MSF:AUXILIARY-SCANNER-

ReDoc API Docs UI Exposed_MSF:AUXILIARY-SCANNER-HTTP-REDOC_EXPOSED-

Detects publicly exposed ReDoc API documentation pages. The module performs safe, read-only GET requests and reports likely ...

N/A N/A METASPLOIT
NONE MSF:POST-MULTI-

Persistence Exploit Suggester_MSF:POST-MULTI-RECON-PERSISTENCE_SUGGESTER-

This module suggests persistence modules that can be used. The modules are suggested based on the architecture and platform tha...

N/A N/A METASPLOIT
HIGH 7.2 MSF:EXPLOIT-MULTI-

Remote Code Execution Vulnerability in Vvveb_MSF:EXPLOIT-MULTI-HTTP-VVVEB_AUTH_RCE_CVE_2025_8518-

Vvveb CMS is vulnerable to code injection via the Code Editor functionality. ...

N/A N/A METASPLOIT
NONE MSF:EXPLOIT-LINUX-

Service System V Persistence_MSF:EXPLOIT-LINUX-PERSISTENCE-INIT_SYSVINIT-

This module will create a service via System V on the box, and mark it for auto-restart. We need enough...

N/A N/A METASPLOIT
NONE MSF:EXPLOIT-MULTI-

Periodic Script Persistence_MSF:EXPLOIT-MULTI-PERSISTENCE-PERIODIC_SCRIPT-

This module will achieve persistence by writing a script to the /etc/periodic directory. According to The Art of Mac Malware no such...

N/A N/A METASPLOIT
HIGH 7.2 MSF:EXPLOIT-LINUX-

Remote Code Execution Vulnerability in MotionEye Frontend (CVE-2025-60787)_MSF:EXPLOIT-LINUX-HTTP-MOTIONEYE_AUTH_RCE_CVE_2025_60787-

This module exploits a template injection vulnerability in the MotionEye Frontend. MotionEye...

N/A N/A METASPLOIT
CRITICAL 9 MSF:AUXILIARY-GATHER-

Listmonk Insecure Sprig Template Functions Environment Disclosure_MSF:AUXILIARY-GATHER-LISTMONK_ENV_DISCLOSURE-

This module exploits insecure Sprig template functions in Listmonk versions prior to v5.0.2. The env and expandenv functions are enabled ...

N/A N/A METASPLOIT
NONE MSF:EXPLOIT-WINDOWS-

Malicious Windows Script Host Script File (.wsf)_MSF:EXPLOIT-WINDOWS-FILEFORMAT-WINDOWS_SCRIPT_HOST_WSF-

This module creates a Windows Script Host (WSH) Windows Script File (.wsf). Module Options msf > use exploit/windows/fileformat/windows_script_h...

N/A N/A METASPLOIT
NONE MSF:EXPLOIT-OSX-

Mac OS X Persistent Payload Installer_MSF:EXPLOIT-OSX-PERSISTENCE-LAUNCH_PLIST-

This module provides a persistent boot payload by creating a launch item, which can be a LaunchAgent or a LaunchDaemon. LaunchAgents run...

N/A N/A METASPLOIT