Weekly Metasploit Update: Modules for SMB-to-Meterpreter, Peyara Remote Mouse RCE exploit, and more
2026-07-04T19:23:42Z•da58a925736649f5eaf59299bfebd887d2ea182634b34bd1613693cccf1d9f4e
CVE-2025-25205ai-driven discoveryaudiobookshelfauth-bypassdalfoxdeserialization rcelinux-loongarch64litellmmetasploitmeterpretermiddleware auth bypassmulti-agent ainext.jspayloadpeyarapsexecred-teamremote mousesiemsmb-to-meterpretersocsql-injectionunauthenticated rcevulnerability standards
What happened
Rapid7 published multiple security updates and analysis: Metasploit weekly updates add an unauthenticated RCE exploit module for Peyara Remote Mouse v1.0.1, a post module to upgrade authenticated SMB sessions to Meterpreter via PsExec, and new payload support for linux/loongarch64. A separate Metasploit update added an Audiobookshelf unauthenticated API authentication bypass detection module for CVE-2025-25205 and scanners for LiteLLM (pre-auth SQLi), Next.js middleware auth bypass, and a Dalfox deserialization RCE. Rapid7 also released several AI-focused posts: a production multi-agent AI red
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- da58a925736649f5eaf59299bfebd887d2ea182634b34bd1613693cccf1d9f4e
- Enrichment time
- 2026-07-04T19:23:42Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.