Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1191 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40901 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1192 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40902 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1193 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40903 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1194 5.4 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40904 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1195 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-0541 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1196 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける指定されたタイプの入力に対する不適切な検証に関する脆弱性 CWE-1287
指定されたタイプの入力に対する不適切な検証
CVE-2026-0802 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1197 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2026-0804 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1198 8.8 重要
Network
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-1185 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1199 6.5 警告
Local
Xen プロジェクト Xen Xen プロジェクトのXenにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-23557 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1200 7.8 重要
Local
Xen プロジェクト Xen Xen プロジェクトのXenにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-23558 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319291 6.1 MEDIUM
Network
mozilla firefox
firefox_esr
Firefox adds web-compatibility shims in place of some tracking scripts blocked by Enhanced Tracking Protection. On a site protected by Content Security Policy in "strict-dynamic" mode, an attacker a… CWE-79
Cross-site Scripting
CVE-2024-7524 2024-08-30 02:35 2024-08-6 Show GitHub Exploit DB Packet Storm
319292 6.1 MEDIUM
Network
insurance_management_system_project insurance_management_system A vulnerability has been found in nafisulbari/itsourcecode Insurance Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file editCl… CWE-79
Cross-site Scripting
CVE-2024-8208 2024-08-30 02:27 2024-08-28 Show GitHub Exploit DB Packet Storm
319293 6.1 MEDIUM
Network
insurance_management_system_project insurance_management_system A vulnerability was found in nafisulbari/itsourcecode Insurance Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file addClient.php. Th… CWE-79
Cross-site Scripting
CVE-2024-8209 2024-08-30 02:23 2024-08-28 Show GitHub Exploit DB Packet Storm
319294 4.3 MEDIUM
Network
ibm infosphere_information_server IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be use… CWE-209
Information Exposure Through an Error Message
CVE-2024-39751 2024-08-30 01:56 2024-08-7 Show GitHub Exploit DB Packet Storm
319295 6.1 MEDIUM
Network
mozilla firefox Long pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects Firefox for iOS < 129. CWE-79
Cross-site Scripting
CVE-2024-43111 2024-08-30 01:53 2024-08-7 Show GitHub Exploit DB Packet Storm
319296 6.1 MEDIUM
Network
mozilla firefox The contextual menu for links could provide an opportunity for cross-site scripting attacks This vulnerability affects Firefox for iOS < 129. CWE-79
Cross-site Scripting
CVE-2024-43113 2024-08-30 01:51 2024-08-7 Show GitHub Exploit DB Packet Storm
319297 6.1 MEDIUM
Network
mozilla firefox Long pressing on a download link could potentially provide a means for cross-site scripting This vulnerability affects Firefox for iOS < 129. CWE-79
Cross-site Scripting
CVE-2024-43112 2024-08-30 01:51 2024-08-7 Show GitHub Exploit DB Packet Storm
319298 5.5 MEDIUM
Local
samsung email Use of implicit intent for sensitive communication in Samsung Email prior to version 6.1.94.2 allows local attackers to get sensitive information. NVD-CWE-Other
CVE-2024-34636 2024-08-30 01:47 2024-08-7 Show GitHub Exploit DB Packet Storm
319299 10.0 CRITICAL
Network
openhab openhab_web_interface openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Prior to version 4.2.1, the proxy endpoint of openHAB's CometVisu add-on can be … NVD-CWE-noinfo
CVE-2024-42467 2024-08-30 01:26 2024-08-12 Show GitHub Exploit DB Packet Storm
319300 9.8 CRITICAL
Network
dlink dns-315l_firmware
dns-320lw_firmware
dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dn…
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, … CWE-78
OS Command 
CVE-2024-8210 2024-08-30 01:04 2024-08-28 Show GitHub Exploit DB Packet Storm