Rapid7 details critical F5 BIG-IP APM vulnerability CVE-2026-94127
The unauthenticated RCE has a CVSS score of 9.8, adding it to CISA KEV, with guidance for mitigation and patches.
See the latest news and media coverage for Rapid7. We track all announcements, press releases, and industry mentions in real time, all in one place.
Cybersecurity software and managed security services provider
rapid7.comLast updated
In short: Rapid7 reported Q2 2026 revenue of $211M amid a 12% restructuring, detailed critical exploited vulnerabilities, and expanded via acquisitions.
The unauthenticated RCE has a CVSS score of 9.8, adding it to CISA KEV, with guidance for mitigation and patches.
It explains how CVE-2026-63520 enables arbitrary code execution through SharePoint’s Business Data Connectivity subsystem and demonstrates an exploit chain.
The advisory details mitigation steps and fixed versions. Rapid7 provides vulnerability checks for customers as exploitation evidence emerges.
Revenue decreased 1.5% to $211 million while non-GAAP operating income reached $28.9 million amid a workforce reduction affecting approximately 12% of staff.
On August 7, 2026, Rapid7 ’s board approved a 2026 restructuring plan that simplifies operations and reallocates investment toward its core Command Platform, detection and...
Wael Mohamed (CEO & Director) framed the strategy as a tighter focus on "the heart of the enterprise market," arguing "We do not need to...
Rapid7 (NASDAQ:RPD) held its second-quarter earnings conference call on Monday. Below is the complete transcript from the call. This content is powered by Benzinga APIs...
New CEO Wael Mohamed is overhauling the struggling company amid a focus on adding AI-powered features.
Track Rapid7 and your other target companies to get real-time alerts and weekly summaries delivered straight to your inbox.
Browse news for competitors to Rapid7 and other trending companies.