Metasploit Wrap-Up 04/25/2026
2026-04-27T07:23:52Z•1b1a3c5ca9edb9cde2883010dd281144755ed54d49a74922bcae1070f8a1c249
AIAVideoCVECVE-2024-46987CVE-2026-28501CVE-2026-28517CamaleonHyper-VKyberMCP bulk exportProject GlasswingRapid7SMBVMware ESXiexploit-modulesmetasploitopenDCIMransomwaresupply-chainvirtualizationvulnerability
What happened
Collection of Rapid7 posts (Apr 2026) covering Metasploit Framework updates (improved check-method visibility, SMB/legacy SMB fixes) and multiple new modules addressing disclosed vulnerabilities (notably Camaleon CMS directory traversal CVE-2024-46987, AVideo unauthenticated SQLi CVE-2026-28501, and openDCIM SQLi→RCE CVE-2026-28517). Detailed analysis of Kyber ransomware highlights dual-platform capability (Windows and VMware ESXi variants) with datastore encryption, VM termination and management interface defacement, using Tor-based infrastructure — a threat that can cause full operational/VM
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- 1b1a3c5ca9edb9cde2883010dd281144755ed54d49a74922bcae1070f8a1c249
- Enrichment time
- 2026-04-27T07:23:52Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.