Weekly Metasploit Update: Modules for SMB-to-Meterpreter, Peyara Remote Mouse RCE exploit, and more

2026-07-04T19:23:42Zda58a925736649f5eaf59299bfebd887d2ea182634b34bd1613693cccf1d9f4e
CVE-2025-25205ai-driven discoveryaudiobookshelfauth-bypassdalfoxdeserialization rcelinux-loongarch64litellmmetasploitmeterpretermiddleware auth bypassmulti-agent ainext.jspayloadpeyarapsexecred-teamremote mousesiemsmb-to-meterpretersocsql-injectionunauthenticated rcevulnerability standards

What happened

Rapid7 published multiple security updates and analysis: Metasploit weekly updates add an unauthenticated RCE exploit module for Peyara Remote Mouse v1.0.1, a post module to upgrade authenticated SMB sessions to Meterpreter via PsExec, and new payload support for linux/loongarch64. A separate Metasploit update added an Audiobookshelf unauthenticated API authentication bypass detection module for CVE-2025-25205 and scanners for LiteLLM (pre-auth SQLi), Next.js middleware auth bypass, and a Dalfox deserialization RCE. Rapid7 also released several AI-focused posts: a production multi-agent AI red

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
da58a925736649f5eaf59299bfebd887d2ea182634b34bd1613693cccf1d9f4e
Enrichment time
2026-07-04T19:23:42Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.