Threats / Contributors / Rapid7
Research org
contributor
Rapid7
cited as evidence in 47 · CNA assigner on 1 · credited finder on 1 of 48 known-exploited records. Every aggregate on this page is recomputed from the records listed below — each one already cited to its public source.
rapid7.com ↗ · home of the cited advisories
48
records cited in
deterministic count1
finder / reporter credits
CVE.org credits1
CVE records catalogued (CNA)
assigner60%
avg modeled exploit prob.
FIRST EPSS, 48/4840%
ransomware-associated
19 of 48 · CISA flag01
Known for
— recomputed from this contributor’s own recordsSurfacesApplication / other (25), Edge / remote-access infra (11), Hypervisor / virtualization (5), Server / web platform (4), Operating system / kernel (3)
WeaknessInjection (12), Authentication (8), Path traversal / file (6), Authorization / access control (5), Memory safety (5)
PortfolioMicrosoft (4), VMware (3), Adobe (3), Oracle (2), D-Link (2), Zoho (2)
PeopleNamed individuals credited under this contributor:
Ron Bowes of Rapid7Caitlin Condon of Rapid7
02
Narrative reach
— how far this contributor’s records carry an attacker, front door → lights out1Front door
47reach this stage2Keys to the kingdom
47reach this stage3Lateral reach
45reach this stage4Data at risk
6reach this stage5Lights out
0reach this stageFurthest any of these records carries an attacker: 4 · Data at risk. 6 of 47 narrative-framed records reach data-at-risk or lights-out. (furthest-position idiom, reused from the landing map; the stage mapping is a model output over cited evidence.)
03
Recent highlights
— this contributor’s newest known-exploited records04
Every record they’re cited in
— all 48, each linked to its cited sourceThis is the evidence behind every number above. Sorted ransomware-first, then by modeled exploit probability.
CVE-2023-0669Fortra100%RWKEVCVE-2022-29464WSO2100%RWKEVCVE-2023-22527Atlassian100%RWKEVCVE-2024-1709ConnectWise100%RWKEVCVE-2022-47966Zoho100%RWKEVCVE-2024-50623Cleo99%RWKEVCVE-2024-55591Fortinet98%RWKEVCVE-2023-38203Adobe97%RWKEVCVE-2019-5544VMware97%RWKEVCVE-2022-36537ZK Framework95%RWKEVCVE-2024-55956Cleo94%RWKEVCVE-2023-40044Progress90%RWKEVCVE-2023-24955Microsoft85%RWKEVCVE-2020-3992VMware83%RWKEVCVE-2024-38094Microsoft55%RWKEVCVE-2026-50751Check Point41%RWKEVCVE-2023-20269Cisco22%RWKEVCVE-2021-41379Microsoft20%RWKEVCVE-2018-19320GIGABYTE4%RWKEVCVE-2023-21839Oracle100%KEVCVE-2023-29298Adobe100%KEVCVE-2024-4040CrushFTP100%KEVCVE-2023-34048VMware99%KEVCVE-2019-5418Rails99%KEVCVE-2023-26360Adobe97%KEVCVE-2025-54309CrushFTP92%KEVCVE-2021-21311Adminer90%KEVCVE-2024-12356BeyondTrust88%KEVCVE-2025-4428Ivanti88%KEVCVE-2022-26923Microsoft83%KEVCVE-2022-28810Zoho70%KEVCVE-2020-25079D-Link53%KEVCVE-2025-32463Sudo48%KEVCVE-2025-32756Fortinet31%KEVCVE-2022-40799D-Link31%KEVCVE-2023-2533PaperCut29%KEVCVE-2024-4978Justice AV Solutions27%KEVCVE-2014-3931Looking Glass27%KEVCVE-2020-24363TP-Link21%KEVCVE-2026-0257Palo Alto Networks19%KEVCVE-2025-41244Broadcom8%KEVCVE-2008-3431Oracle7%KEVCVE-2023-41179Trend Micro5%KEVCVE-2025-59689Libraesva2%KEVCVE-2025-38352Linux1%KEVCVE-2025-15556Notepad++1%KEVCVE-2025-48543Android1%KEVCVE-2025-48928TeleMessage0%KEV
05