Metasploit Pro Version 5.1.0-2026093001 Release Notes
Software release date: September 30, 2026 | Release notes published: October 1, 2026
New Module Content (41)
- #21234 - Adds an exploit module for Ghost CMS (CVE-2026-29053) that achieves remote code execution by uploading a malicious theme. Ghost’s theme renderer evaluates untrusted JSONPath expressions through the
{{#get}}helper, letting the module inject and trigger arbitrary code once a theme is uploaded and activated. Valid admin or staff credentials are required to authenticate. - #21445 - Adds a MIPS64 exec payload, updates the MIPSEL and MIPSBE exec payloads, and adds prepends for all three.
- #21461 - Adds a multi-platform persistence module for Kate.
- #21551 - Adds a scanner module that enumerates ports on a host to determine whether each one is a Metasploit reverse handler, and if so, what kind of shell it expects to land.
- #21603 - Adds an auxiliary scanner module that fingerprints Inductive Automation Ignition gateways across all major version families by probing unauthenticated info endpoints.
- #21610 - Adds a new auxiliary scanner module for safely detecting CVE-2026-0265, which affects PAN-OS GlobalProtect portals when Clientless Application Services (CAS) authentication is enabled.
- #21612 - Adds
auxiliary/scanner/scada/opcua_enum, a scanner module that detects OPC-UA servers speaking the OPC-UA TCP binary transport (opc.tcp://). - #21616 - Adds a new exploit module for CVE-2026-56274, a remote code execution vulnerability in Flowise versions prior to 3.1.2.
- #21630 - Adds an exploit module targeting CVE-2026-27760, a PHP code injection in OpenCATS.
- #21642 - Adds a Linux x64 sandbox-evasion module that performs lightweight runtime environment checks and aborts execution when a likely sandbox or VM is detected.
- #21655 - Adds a new exploit module for CVE-2026-23744, an unauthenticated command execution vulnerability in MCPJam Inspector. The module targets the
/api/mcp/connectendpoint. Vulnerable versions accept a JSONserverConfigobject containing acommandandargsarray, then use those values to start an MCP server. When MCPJam Inspector is exposed on a routable interface, an unauthenticated remote attacker can abuse this behavior to execute operating system commands as the user running MCPJam Inspector. - #21678 - Adds a new exploit module for CVE-2026-15409, a Server-Side Request Forgery (SSRF) vulnerability in the SonicWall SMA1000 WorkPlace
wsproxyservice. - #21681 - Adds an auxiliary module that leverages a path traversal vulnerability in Ray to list the contents of local directories. No CVE has been assigned to this vulnerability yet, and issuance is pending with MITRE.
- #21686 - Adds an exploit module targeting WP2Shell, a pre-auth remote code execution vulnerability affecting WordPress core versions 6.9.0-6.9.4 and 7.0.0-7.0.1. The module chains a REST API route confusion flaw (CVE-2026-63030) with an SQL injection (CVE-2026-60137) to elevate privileges, deploy a payload via a custom plugin, and execute a remote session.
- #21694 - Adds an auxiliary scanner module for the WP2Shell WordPress core unauthenticated SQL injection, which chains REST batch route confusion (CVE-2026-63030) with
WP_Queryauthor__not_instring interpolation (CVE-2026-60137). Affects WordPress core 6.9.0-6.9.4 and 7.0.0-7.0.1, and is fixed in 6.9.5 and 7.0.2. - #21695 - Adds an auxiliary scanner module for CVE-2026-6826, where Concrete CMS 9.x before 9.5.1 exposes the file usage dialog controller at
/ccm/system/dialogs/file/usage/<fID>without a view permission check. - #21700 - Adds a new
multi/http/langflow_unauth_rce_cve_2026_33017exploit module that targets an unauthenticated RCE vulnerability in the/api/v1/build_public_tmp/{flow_id}/flowendpoint in Langflow versions prior to 1.9.0. - #21709 - Introduces native Kerberos authentication relay capabilities to the framework’s relay stack. Includes a new auxiliary module,
esc8_kerberos, that exploits CVE-2026-20929 by targeting AD CS Web Enrollment (ESC8). The module captures an SMB2 AP-REQ from a coerced client and seamlessly replays the authentication to the target certificate server over HTTP. This chain ultimately allows an attacker to issue a certificate for the coerced victim and obtain a valid Kerberos TGT without requiring their credentials. - #21725 - Adds the
auxiliary/spoof/ipv6/ipv6_ra_dns_takeoverandauxiliary/spoof/dhcp/dhcpv6_dns_takeovermodules to enable native IPv6 DNS-takeover coercion as part of a Kerberos authentication relay attack chain. Operating as a rogue IPv6 router and a rogue DHCPv6 server respectively, these modules trick modern Windows and RFC 8106 clients into adopting the attacker as their recursive DNS server. - #21731 - Adds a module covering CVE-2026-16232, an authentication bypass in the SmartConsole login process affecting Check Point Security Management Server and Multi-Domain Security Management Server (MDS).
- #21733 - Adds an exploit module for CVE-2026-66066, a remote code execution vulnerability in Ruby on Rails Active Storage. The module chains a
libvipsarbitrary file read (via crafted HDF5/MATLAB images) withsecret_key_baserecovery to achieve RCE through the ImageProcessing gem, supporting Unix command, Linux fetch, and native Ruby payload targets. - #21739 - Adds an auxiliary scanner module for CVE-2025-54988 and CVE-2025-66516. The module validates an XML External Entity (XXE) vulnerability in Apache Tika’s XFA parser exposed through the Elasticsearch attachment ingest processor.
- #21744 - Adds Windows AArch64 staged shell payloads.
- #21753 - Adds an exploit module for CVE-2026-9198, an unauthenticated RCE vulnerability in Langflow versions 1.10.0 and below.
- #21765 - Adds a new
drupal_pgsql_entityquery_sqlimodule for CVE-2026-9082, an unauthenticated SQL injection in Drupal core’s PostgreSQL EntityQuery condition handler. The module confirms the injection using the framework’s PostgreSQL time-based blind SQLi implementation. - #21769 - Adds a module for CVE-2026-3576, a local file inclusion vulnerability via server-side request forgery in the WordPress Planyo Online Reservation System plugin before version 3.1. The plugin’s AJAX proxy
ulap.phpdoes not validate the scheme of URLs supplied to it, allowing unauthenticated attackers to supplyfile://URLs and retrieve arbitrary local file contents from the target. - #21775 - Introduces a new unauthenticated remote code execution (RCE) exploit module for JetBrains TeamCity, targeting CVE-2026-63077. The module exploits an unsafe XStream deserialization flaw within the agent polling protocol to deliver and execute a one-shot JSP payload on the server. It supports both Windows and Linux targets, and features built-in cleanup logic to automatically unregister and remove the fake build agent created during exploitation.
- #21778 - Adds a module targeting CVE-2026-59774, an arbitrary file read in Forgejo 7.0 through 15.0.5 and 16.0.0 through 16.0.1.
- #21790 - Adds a module that exploits a PHP function-call injection in SPIP’s template engine before version 4.4.21 to achieve unauthenticated RCE. The
analyse_resultat_skel()function extracts<?php header("X-Spip-Filtre: ..."); ?>patterns from the rendered page body and calls the listed functions as template filters. - #21791 - Adds
auxiliary/scanner/http/spip_annee_sqli, which exploits a blind SQL injection in SPIP’s date column escaping logic. - #21796 - Adds an exploit module for CVE-2026-20079, an unauthenticated authentication bypass in Cisco Secure Firewall Management Center (FMC).
- #21802 - Adds a module for CVE-2026-19681, an authenticated remote code execution vulnerability against Tenable Security Center.
- #21820 - Adds a module for CVE-2026-21820, an authenticated remote code execution vulnerability in Tenable Security Center.
- #21825 - Adds an exploit module for CVE-2026-48558, an OIDC authentication bypass affecting SimpleHelp 5.5.0 through 5.5.15.
- #21834 - Adds a module targeting CVE-2026-75604, a remote code execution (RCE) vulnerability in Next.js applications hosted on Windows servers. Specifically crafted requests can execute arbitrary code on the target server running Next.js versions from 13.4.0 up to 15.5.24, and 16.0.0 up to 16.3.3.
- #21837 - Adds a new module targeting CVE-2026-19295, an authenticated remote code execution vulnerability impacting Langflow versions 1.10.0 and below.
- #21842 - Adds an exploit module for the PaperCut MF and PaperCut NG exploit chain (CVE-2026-81578 and CVE-2026-82078), which was reported as a zero-day being actively exploited in the wild.
- #21848 - Adds a new exploit module that detects and exploits CVE-2026-18729, an authenticated remote code execution vulnerability impacting Langflow versions 1.11.1 and below.
- #21859 - Adds a module targeting an unauthenticated remote code execution vulnerability in SPIP 4.4.21 and earlier via the forum autosave session handler. The
action=sessionendpoint lets any visitor store arbitrary PHP code in a session variable, which is then executed by the template engine when the article page is rendered. No CVE has been issued yet. - #21883 - Adds an exploit module for the SonicWall SMA1000 zero-day exploit chain that was disclosed as being exploited in the wild. CVE-2026-83548 is an SSRF used to bypass authentication, SMA1000-9427 is an RCE with low privileges via CouchDB read/write primitives, and CVE-2026-83549 is a command injection in
cmsSnmpTrap.shfor RCE with root privileges. Version 12.5.0-02952 has been verified to successfully remediate this exploit chain. - #21910 - Adds a module that exploits CVE-2026-85706, an unauthenticated local file read in the GitLab repository commits and files APIs. The issue affects GitLab CE and EE versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2.
Enhanced Modules (2)
Modules which have either been enhanced, or renamed:
- #21770 - Updates the ZoomEye search module to prevent infinite loops and list truncation when encountering empty result pages. Introduces a three-attempt retry limit that skips to the next page if exceeded, caps results per page at 10 to minimize data loss, and refactors the module to support the ZoomEye v2 API.
- #21795 - Updates the Ghost CMS authenticated RCE module to construct an
Originheader that matches Ghost’s canonical site URL by omitting standard ports (80/443) while keeping non-standard ports, preventing Ghost’s strict RFC 6454 origin validation from rejecting requests.
Enhancements and Features (11)
- Pro: Resolves an issue with resource leaks during large Metasploit Pro module runs.
- #21402 - Adds a
SessionTypeoption toauxiliary/scanner/winrm/winrm_loginso successful WinRM logins can create either the existing cmd-backed shell, a PSRP-backed PowerShell session, or automatically fall back to PowerShell when cmd shell creation is denied. - #21496 - Updates persistence modules to use
create_processinstead ofcmd_exec. - #21573 - Adds support to the post mixin for Windows sessions to run the
.writable?method. - #21644 - Improves start-up performance of
msfconsole. - #21691 - Adds
KerberosTicketTracesupport to theauxiliary/admin/kerberos/forge_ticketmodule. - #21717 - Introduces
Rex::Proto::Gss::KerberosTokenas a shared low-level implementation for handling Kerberos tokens carried by GSS-API and SPNEGO. - #21748 - Adds a new nyan cat
msfconsolebanner, which can be selected by runningMSFLOGO=nyan-cat.txt ./msfconsole. - #21768 - Updates the default authentication logic in the JSON RPC support to now require authentication by default, either via the database with user credentials or an auth token.
- #21779 - Extends
windows/smb/psexecto work with AArch64 targets. - #21789 - Adds a new command line flag to print the count of modules.
Bugs Fixed (26)
- #21184 - Fixes inconsistencies between
report_serviceandcreate_credential. - #21569 - Fixes leaking file descriptors.
- #21574 - Fixes the implementation of the FTP mixin to allow for reading multiple responses on the same TCP segment.
- #21687 - Updates and centralizes the warning message that’s displayed when a user sets a datastore option that is not valid in the current context. Also fixes a bug where tab completion for datastore options was based on what the module registered rather than what’s currently in the datastore.
- #21719 - Fixes a race condition in the module metadata cache.
- #21742 - Replaces
::Timeout.timeoutandQueue#deq(false)withQueue#deq(timeout:)inTcpServerChannel#acceptto increase reliability in Ruby 3.x. - #21759 - Fixes a crash on multiple SMB modules when attempting to register an SMB service.
- #21783 - Bumps
rex-bin_toolsto bring in the changes from rex-bin_tools#16 , which fixes a bug in the calculation of section sizes. - #21784 - Fixes two uncaught exceptions in the default DNS forward/cache path that would silently kill the listener thread when finalizing an empty response. The crashes were caused by incorrect method calls to the Dnsruby library, which have been updated to use the proper
rcode=setter and#encodeserializer. As a result, the DNS server now correctly handles and forwards out-of-scope queries without terminating. - #21793 - Fixes a bug in the rsync banner grab that broke when rsync changed its banner in protocol 32.
- #21797 - Corrects an incorrect
checkmethod that failed to include Windows Server 2019, even though it is vulnerable. - #21799 - Adds automatic payload selection when changing targets.
- #21804 - Fixes a bug where shellcode prepends were added to the beginning of fetch command payloads rather than the beginning of the binary payloads delivered by fetch command payloads.
- #21816 - Fixes the SSH version scanner to work on very old versions of SSH.
- #21832 - Fixes an issue with the
ldap_esc_vulnerable_cert_findermodule where it wasn’t properly rescuing anHTTPTimeoutexception when the domain controller’s WinRM service wouldn’t respond to the module’s version check. The module now catches the exception and handles it properly, allowing the module to continue instead of crashing. - #21838 - Fixes payload choosing behaviour when swapping targets to auto-select the most fitting payload, which can now also include Java payloads.
- #21853 - Adds three fixes to the core
Rex::Proto::DNSforward/cache path that surface once the DNS server is used as a selective poisoner in front of a real upstream resolver. - #21861 - Fixes a regression in the
vsftpd_234_backdoormodule where adding support forARCH_CMDpayloads inadvertently dropped support forcmd/unix/interactpayloads. Both payloads are now supported. - #21880 - Updates the iOS image gather module to use
store_lootfor consistency with other modules. - #21881 - Ensures authentication is available on the credentials endpoints.
- #21885 - Adds additional validation to the marshal validator.
- #21905 - Fixes broken encoders, where previously both
x86/xor_polyandx86/avoid_underscore_tolowerwere returning errors when attempting encoding. - #21916 - Updates the
db_importvalidation logic to be consistent across the different import data types. - #21917 - Adds additional validation to the credential model updates.
- #21918 - Adds additional validation to the RDP protocol support to handle unexpected packet sizes and responses.
- #21930 - Replaces a recursive call to DN expand.