Rapid7 / InsightVM
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-14172 | Rapid7 InsightVM, Nexpose, and Insight Agent Local Privilege Escalation via Unvalidated Executable Invocation | HIGH | 7.8 | Jul 24, 2026 |
| CVE-2024-6504 | Rapid7 InsightVM Protection Mechanism Failure | MEDIUM | 5.3 | Jul 18, 2024 |
| CVE-2024-3185 | Rapid7 Insight Agent Sensitive Key Exposed To Local Users | MEDIUM | 6.8 | Apr 23, 2024 |
| CVE-2024-2745 | Rapid7 InsightVM Sensitive Information Exposure via URL | LOW | 3.3 | Apr 2, 2024 |
| CVE-2021-3844 | Rapid7 InsightVM Insufficient Session Expiration | MEDIUM | 5.7 | Mar 24, 2023 |
| CVE-2023-0681 | Rapid7 Nexpose Uncontrolled URL Redirect | MEDIUM | 6.1 | Mar 20, 2023 |
| CVE-2022-3913 | Rapid7 Nexpose Certificate Validation Issue | MEDIUM | 5.3 | Feb 1, 2023 |
| CVE-2017-5242 | Rapid7 Nexpose Virtual Appliance Duplicate SSH Host Key | HIGH | 7.7 | Jan 12, 2023 |
| CVE-2022-4261 | Rapid7 Nexpose Update Validation Issue | MEDIUM | 6.5 | Dec 7, 2022 |
| CVE-2019-5641 | Rapid7 InsightVM Information Disclosure after Logout | MEDIUM | 5.3 | Sep 21, 2022 |
| CVE-2019-5615 | Rapid7 InsightVM Stored Credential Exposure | MEDIUM | 6.5 | Apr 9, 2019 |
Showing 1 to 9 of 9 CVEs