Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1101 8.1 重要
Network
Zabbix Zabbix Zabbixにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-23925 2026-06-8 12:32 2026-03-6 Show GitHub Exploit DB Packet Storm
1102 5.3 警告
Network
OpenStack Openstack Keystone OpenStackのOpenstack Keystoneにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-33551 2026-06-8 12:32 2026-04-10 Show GitHub Exploit DB Packet Storm
1103 6.5 警告
Network
Mattermost, Inc. Mattermost Desktop Mattermost, Inc.のMattermost Desktopにおけるカスタム URL スキームのハンドラの不適切な認可に関する脆弱性 CWE-939
カスタム URL スキームのハンドラの不適切な認可
CVE-2026-3471 2026-06-8 12:32 2026-05-18 Show GitHub Exploit DB Packet Storm
1104 7.3 重要
Local
AIOHTTP AIOHTTP AIOHTTPにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-34993 2026-06-8 12:31 2026-06-2 Show GitHub Exploit DB Packet Storm
1105 3.1
Network
Django Software Foundation Django Django Software FoundationのDjangoにおける重要な情報を含むキャッシュの使用に関する脆弱性 CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-35193 2026-06-8 12:31 2026-06-3 Show GitHub Exploit DB Packet Storm
1106 6.1 警告
Network
citeum opencti citeumのopenctiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-35212 2026-06-8 12:31 2026-06-2 Show GitHub Exploit DB Packet Storm
1107 8.2 重要
Network
Mosaic5G Flexric Mosaic5GのFlexricにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-37234 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
1108 7.8 重要
Local
radare radare2 radareのradare2におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40527 2026-06-8 12:31 2026-04-17 Show GitHub Exploit DB Packet Storm
1109 7.5 重要
Network
quic-go project quic-go quic-go projectのquic-goにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-40898 2026-06-8 12:31 2026-06-4 Show GitHub Exploit DB Packet Storm
1110 6.5 警告
Network
VMware Spring Cloud Function VMwareのSpring Cloud Functionにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-40989 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345051 - squirrelmail squirrelmail PHP remote file inclusion vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to execute arbitrary PHP code by modifying a URL parameter to reference a URL on a remote w… CWE-94
Code Injection
CVE-2005-0103 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
345052 - squirrelmail squirrelmail Cross-site scripting (XSS) vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via certain integer variables. NVD-CWE-Other
CVE-2005-0104 2017-10-11 10:29 2005-01-29 Show GitHub Exploit DB Packet Storm
345053 - linux linux_kernel Linux kernel 2.6 on Itanium (ia64) architectures allows local users to cause a denial of service via a "missing Itanium syscall table entry." NVD-CWE-Other
CVE-2005-0137 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
345054 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new t… NVD-CWE-Other
CVE-2005-0141 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
345055 - mozilla firefox
mozilla
thunderbird
Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or … NVD-CWE-Other
CVE-2005-0142 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
345056 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks. NVD-CWE-Other
CVE-2005-0143 2017-10-11 10:29 2005-03-23 Show GitHub Exploit DB Packet Storm
345057 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phish… NVD-CWE-Other
CVE-2005-0144 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
345058 - mozilla firefox Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user us… NVD-CWE-Other
CVE-2005-0145 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
345059 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click p… NVD-CWE-Other
CVE-2005-0146 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
345060 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentia… NVD-CWE-Other
CVE-2005-0147 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm