Metasploit Wrap-Up 04/25/2026

2026-04-27T07:23:52Z1b1a3c5ca9edb9cde2883010dd281144755ed54d49a74922bcae1070f8a1c249
AIAVideoCVECVE-2024-46987CVE-2026-28501CVE-2026-28517CamaleonHyper-VKyberMCP bulk exportProject GlasswingRapid7SMBVMware ESXiexploit-modulesmetasploitopenDCIMransomwaresupply-chainvirtualizationvulnerability

What happened

Collection of Rapid7 posts (Apr 2026) covering Metasploit Framework updates (improved check-method visibility, SMB/legacy SMB fixes) and multiple new modules addressing disclosed vulnerabilities (notably Camaleon CMS directory traversal CVE-2024-46987, AVideo unauthenticated SQLi CVE-2026-28501, and openDCIM SQLi→RCE CVE-2026-28517). Detailed analysis of Kyber ransomware highlights dual-platform capability (Windows and VMware ESXi variants) with datastore encryption, VM termination and management interface defacement, using Tor-based infrastructure — a threat that can cause full operational/VM

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
1b1a3c5ca9edb9cde2883010dd281144755ed54d49a74922bcae1070f8a1c249
Enrichment time
2026-04-27T07:23:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Metasploit Wrap-Up 04/25/2026 · Baitaphish