|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 27, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 111 | 7.6 |
重要
Network |
openwebui | open webui | openwebuiのopen webuiにおける複数の脆弱性 New |
CWE-116 CWE-693 CWE-79 |
CVE-2026-54013 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 112 | 4.3 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおけるパストラバーサルの脆弱性 New |
CWE-22
パス・トラバーサル |
CVE-2026-54014 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 113 | 6.4 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおける複数の脆弱性 New |
CWE-284 CWE-639 |
CVE-2026-54015 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 114 | 4.3 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 New |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-54016 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 115 | 7.7 |
重要
Network |
openwebui | open webui | openwebuiのopen webuiにおける複数の脆弱性 New |
CWE-22 CWE-918 |
CVE-2026-54017 | 2026-06-26 11:55 | 2026-06-18 | Show | GitHub Exploit DB Packet Storm |
| 116 | 7.7 |
重要
Network |
openwebui | open webui | openwebuiのopen webuiにおけるサーバサイドのリクエストフォージェリの脆弱性 New |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-54018 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 117 | 6.5 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおける複数の脆弱性 New |
CWE-862 CWE-943 |
CVE-2026-54019 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 118 | 6.3 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおける不正な認証に関する脆弱性 New |
CWE-863
不正な認証 |
CVE-2026-54021 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 119 | 5.3 |
警告
Network |
openwebui | open webui | openwebuiのopen webuiにおける複数の脆弱性 New |
CWE-706 CWE-863 |
CVE-2026-54022 | 2026-06-26 11:55 | 2026-06-23 | Show | GitHub Exploit DB Packet Storm |
| 120 | 7.5 |
重要
Network |
マイクロソフト | Microsoft 365 Copilot | M365 Copilot の情報漏えいの脆弱性 New |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-54130 | 2026-06-26 11:55 | 2026-06-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 27, 2026, 4:35 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 190681 | 9.8 |
CRITICAL
Network |
digi | portserver_ts_16_firmware | Properly formatted POST requests to multiple resources on the HTTP and HTTPS web servers of the Digi PortServer TS 16 Rack device do not require authentication or authentication tokens. This vulnerab… |
CWE-306
Missing Authentication for Critical Function |
CVE-2021-38412 | 2024-11-21 15:17 | 2021-09-18 | Show | GitHub Exploit DB Packet Storm |
| 190682 | 7.8 |
HIGH
Local |
deltaww | dopsoft | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could result in multiple out-of-bounds write instances. … | - | CVE-2021-38406 | 2024-11-21 15:17 | 2021-09-18 | Show | GitHub Exploit DB Packet Storm |
| 190683 | 7.8 |
HIGH
Local |
deltaww | dopsoft | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could result in a heap-based buffer overflow. An attacke… | - | CVE-2021-38404 | 2024-11-21 15:17 | 2021-09-18 | Show | GitHub Exploit DB Packet Storm |
| 190684 | 7.8 |
HIGH
Local |
deltaww | dopsoft | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could lead to a stack-based buffer overflow while trying… | - | CVE-2021-38402 | 2024-11-21 15:17 | 2021-09-18 | Show | GitHub Exploit DB Packet Storm |
| 190685 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_10 windows_server_2016 windows_rt_8.1 windows_server_2012 windows_server_2019 windows_server_2022 windows_7 windows_8.1 |
Windows Print Spooler Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-38671 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |
| 190686 | 6.4 |
MEDIUM
Network |
microsoft |
edge_chromium edge |
Microsoft Edge (Chromium-based) Tampering Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-38669 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |
| 190687 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_10 windows_server_2016 windows_rt_8.1 windows_server_2012 windows_server_2019 windows_server_2022 windows_7 windows_8.1 |
Windows Print Spooler Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-38667 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |
| 190688 | 7.8 |
HIGH
Local |
microsoft | hevc_video_extensions | HEVC Video Extensions Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-38661 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |
| 190689 | 7.8 |
HIGH
Local |
microsoft | excel | Microsoft Office Graphics Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-38660 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |
| 190690 | 7.8 |
HIGH
Local |
microsoft | 365_apps | Microsoft Office Graphics Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-38659 | 2024-11-21 15:17 | 2021-09-15 | Show | GitHub Exploit DB Packet Storm |