Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1191 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40901 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1192 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40902 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1193 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40903 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1194 5.4 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40904 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1195 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-0541 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1196 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける指定されたタイプの入力に対する不適切な検証に関する脆弱性 CWE-1287
指定されたタイプの入力に対する不適切な検証
CVE-2026-0802 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1197 7.3 重要
Local
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2026-0804 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1198 8.8 重要
Network
アクシスコミュニケーションズ AXIS OS アクシスコミュニケーションズのAXIS OSにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-1185 2026-05-21 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1199 6.5 警告
Local
Xen プロジェクト Xen Xen プロジェクトのXenにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-23557 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1200 7.8 重要
Local
Xen プロジェクト Xen Xen プロジェクトのXenにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-23558 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319311 6.5 MEDIUM
Network
gitlab gitlab Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0 prior to 17.0.6, starting from 17.1 prior to 17.1.4, and starting from 17.2 pr… NVD-CWE-noinfo
CVE-2024-5423 2024-08-30 00:41 2024-08-8 Show GitHub Exploit DB Packet Storm
319312 9.8 CRITICAL
Network
donbermoy e-commerce_website A vulnerability has been found in SourceCodester E-Commerce Website 1.0 and classified as critical. This vulnerability affects unknown code of the file /Admin/registration.php. The manipulation of th… CWE-89
SQL Injection
CVE-2024-8217 2024-08-30 00:39 2024-08-28 Show GitHub Exploit DB Packet Storm
319313 9.8 CRITICAL
Network
fabianros online_quiz_site A vulnerability was found in code-projects Online Quiz Site 1.0 and classified as critical. This issue affects some unknown processing of the file index.php. The manipulation of the argument loginid … CWE-89
SQL Injection
CVE-2024-8218 2024-08-30 00:38 2024-08-28 Show GitHub Exploit DB Packet Storm
319314 9.8 CRITICAL
Network
fabianros responsive_hotel_site A vulnerability was found in code-projects Responsive Hotel Site 1.0. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the argument name/… CWE-89
SQL Injection
CVE-2024-8219 2024-08-30 00:35 2024-08-28 Show GitHub Exploit DB Packet Storm
319315 9.8 CRITICAL
Network
oretnom23 music_gallery_site A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/categories/manage_category.p… CWE-89
SQL Injection
CVE-2024-8221 2024-08-30 00:32 2024-08-28 Show GitHub Exploit DB Packet Storm
319316 7.2 HIGH
Network
fiware keyrock The function "generate_app_certificates" in controllers/saml2/saml2.js of FIWARE Keyrock <= 8.4 does not neutralize special elements used in an OS Command properly. This allows an authenticated user … CWE-78
OS Command 
CVE-2024-42167 2024-08-30 00:24 2024-08-12 Show GitHub Exploit DB Packet Storm
319317 5.4 MEDIUM
Network
oretnom23 yoga_class_registration_system A vulnerability was found in SourceCodester Yoga Class Registration System 1.0 and classified as problematic. This issue affects some unknown processing of the file /admin/inquiries/view_inquiry.php.… CWE-79
Cross-site Scripting
CVE-2024-7852 2024-08-30 00:23 2024-08-16 Show GitHub Exploit DB Packet Storm
319318 7.2 HIGH
Network
fiware keyrock The function "generate_app_certificates" in lib/app_certificates.js of FIWARE Keyrock <= 8.4 does not neutralize special elements used in an OS Command properly. This allows an authenticated user wit… CWE-78
OS Command 
CVE-2024-42166 2024-08-30 00:23 2024-08-12 Show GitHub Exploit DB Packet Storm
319319 8.8 HIGH
Network
oretnom23 yoga_class_registration_system A vulnerability was found in SourceCodester Yoga Class Registration System up to 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/?page=categories/view_cate… CWE-89
SQL Injection
CVE-2024-7853 2024-08-30 00:22 2024-08-16 Show GitHub Exploit DB Packet Storm
319320 9.8 CRITICAL
Network
oretnom23 yoga_class_registration_system A vulnerability has been found in SourceCodester Yoga Class Registration System 1.0 and classified as critical. This vulnerability affects unknown code of the file /classes/Users.php?f=save of the co… NVD-CWE-noinfo
CVE-2024-7851 2024-08-30 00:22 2024-08-16 Show GitHub Exploit DB Packet Storm