-
Notifications
You must be signed in to change notification settings - Fork 14.9k
Pull requests: rapid7/metasploit-framework
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
ENH: auxiliary module for Flowise Authentication Bypass CVE-2025-58434
#21757
opened Aug 6, 2026 by
rmhowe425
Contributor
Loading…
5 tasks done
Enhance contributing documentation with module structure templates and guidelines
#21755
opened Aug 6, 2026 by
dwelch-r7
Contributor
Loading…
2 of 8 tasks
ENH: CISA KEV - Exploit module for CVE-2026-9198
#21753
opened Aug 4, 2026 by
rmhowe425
Contributor
Loading…
5 tasks done
YOU HAVE DONE THE NYAN FOR 31337 SECONDS!
easy
rn-enhancement
release notes enhancement
#21748
opened Aug 3, 2026 by
zeroSteiner
Contributor
Loading…
Add Portainer authenticated Docker API root RCE
#21745
opened Aug 3, 2026 by
Gill-Singh-A
Loading…
4 of 12 tasks
Add release notes for enhanced payloads
windows/aarch64/shell/reverse_tcp staged payload
rn-payload-enhancement
#21744
opened Aug 2, 2026 by
vinicius-batistella
Contributor
Loading…
11 tasks done
Refactor TcpServerChannel accept methods to improve timeout handling and non-blocking behaviour
library
rn-fix
release notes fix
#21742
opened Jul 31, 2026 by
dwelch-r7
Contributor
Loading…
4 of 5 tasks
Update yard docs
additional-testing-required
#21738
opened Jul 31, 2026 by
adfoster-r7
Contributor
Loading…
Fix msftidy lint failures introduced after revert
#21735
opened Jul 30, 2026 by
l1ve709
Contributor
Loading…
Add Ruby on Rails Active Storage Vips RCE module for CVE-2026-66066
rn-modules
release notes for new or majorly enhanced modules
#21733
opened Jul 30, 2026 by
jburgess-r7
Contributor
Loading…
Add unauth RCE exploit for Check Point Management Servers (CVE-2026-16232)
group-reviewed
Reviewed by the council of elders
rn-modules
release notes for new or majorly enhanced modules
#21731
opened Jul 30, 2026 by
sfewer-r7
Contributor
Loading…
2 tasks done
Add rogue IPv6 RA + RDNSS DNS-takeover coercion (CVE-2026-20929)
#21725
opened Jul 29, 2026 by
Pushpenderrathore
Contributor
•
Draft
4 of 10 tasks
Add native DHCPv6 DNS-takeover coercion (CVE-2026-20929)
#21724
opened Jul 29, 2026 by
Pushpenderrathore
Contributor
•
Draft
4 of 9 tasks
Fix a metadata cache race that raises can't add a new key into hash during iteration
#21719
opened Jul 27, 2026 by
Pushpenderrathore
Contributor
Loading…
4 of 8 tasks
Add shared Kerberos GSS and SPNEGO token handling
additional-testing-required
rn-enhancement
release notes enhancement
#21717
opened Jul 27, 2026 by
eve0805
Contributor
Loading…
Add WordPress Bug Library < 2.1.1 unauthenticated file upload RCE module (CVE-2024-5450)
needs-linting
The module needs additional work to pass our automated linting rules
rn-modules
release notes for new or majorly enhanced modules
#21716
opened Jul 26, 2026 by
TrinityBerserker
Loading…
Add native Kerberos relay stack and ESC8 (AD CS Web Enrollment) target (CVE-2026-20929)
additional-testing-required
#21709
opened Jul 24, 2026 by
Pushpenderrathore
Contributor
•
Draft
ENH: CISA KEV - Exploit module for CVE-2026-33017
#21700
opened Jul 22, 2026 by
rmhowe425
Contributor
Loading…
5 tasks done
Add Adobe AEM Forms JEE devMode OGNL injection RCE module
#21696
opened Jul 21, 2026 by
zoomdbz
Loading…
Add Concrete CMS unauthenticated file usage disclosure module
#21695
opened Jul 21, 2026 by
zoomdbz
Loading…
Previous Next
ProTip!
Filter pull requests by the default branch with base:master.