Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1241 9.1 緊急
Network
vm2 project vm2 vm2 projectのvm2におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-44007 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
1242 9.8 緊急
Network
vm2 project vm2 vm2 projectのvm2における誤った領域へのリソースの漏えいに関する脆弱性 CWE-668
誤った領域へのリソースの漏えい
CVE-2026-44008 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
1243 9.8 緊急
Network
vm2 project vm2 vm2 projectのvm2における誤った領域へのリソースの漏えいに関する脆弱性 CWE-668
誤った領域へのリソースの漏えい
CVE-2026-44009 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
1244 9.9 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44015 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1245 7.1 重要
Network
M2-Team NanaZip M2-TeamのNanaZipにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-44215 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1246 7.5 重要
Network
vLLM vLLM vLLMにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-44222 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1247 6.5 警告
Network
vLLM vLLM vLLMにおける複数の脆弱性 CWE-131
CWE-704
CVE-2026-44223 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1248 8.8 重要
Network
requarks Wiki.js requarksのWiki.jsにおける権限管理に関する脆弱性 CWE-269
CWE-noinfo
CVE-2026-44224 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1249 6.5 警告
Network
warpgate project warpgate Warpgate projectのWarpgateにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-44347 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1250 7.2 重要
Network
WING FTP software Wing FTP Server WING FTP softwareのWing FTP Serverにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44403 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311331 5.4 MEDIUM
Network
salesagility suitecrm SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. The "Publish Key" field in SuiteCRM's Edit Profile page is vulnerable to Reflected Cross-Site… CWE-79
Cross-site Scripting
CVE-2024-50335 2024-11-9 00:09 2024-11-6 Show GitHub Exploit DB Packet Storm
311332 9.1 CRITICAL
Network
qualcomm wsa8845h_firmware
wsa8845_firmware
wsa8840_firmware
wsa8835_firmware
wsa8832_firmware
wsa8830_firmware
wsa8815_firmware
wsa8810_firmware
wcn7881_firmware
wcn7880_firmware
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. NVD-CWE-noinfo
CVE-2024-38408 2024-11-9 00:07 2024-11-4 Show GitHub Exploit DB Packet Storm
311333 6.1 MEDIUM
Network
flycart discount_rules_for_woocommerce The Discount Rules for WooCommerce – Create Smart WooCommerce Coupons & Discounts, Bulk Discount, BOGO Coupons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of a… CWE-79
Cross-site Scripting
CVE-2024-8541 2024-11-9 00:07 2024-10-16 Show GitHub Exploit DB Packet Storm
311334 8.8 HIGH
Network
ibm watson_studio_local IBM Watson Studio Local 1.2.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. CWE-352
 Origin Validation Error
CVE-2024-49340 2024-11-9 00:06 2024-10-16 Show GitHub Exploit DB Packet Storm
311335 4.6 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.10.x <= 9.10.2, 9.11.x <= 9.11.1, 9.5.x <= 9.5.9 fail to sanitize user inputs in the frontend that are used for redirection which allows for a one-click client-side path travers… CWE-352
 Origin Validation Error
CVE-2024-46872 2024-11-9 00:00 2024-10-29 Show GitHub Exploit DB Packet Storm
311336 4.7 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix race condition between reset and nvme_dev_disable() nvme_dev_disable() modifies the dev->online_queues field, there… CWE-362
Race Condition
CVE-2024-50135 2024-11-8 23:34 2024-11-6 Show GitHub Exploit DB Packet Storm
311337 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Unregister notifier on eswitch init failure It otherwise remains registered and a subsequent attempt at eswitch enablin… NVD-CWE-noinfo
CVE-2024-50136 2024-11-8 23:31 2024-11-6 Show GitHub Exploit DB Packet Storm
311338 6.5 MEDIUM
Network
zte zxr10_1800-2s_firmware
zxr10_2800-4_firmware
zxr10_3800-8_firmware
zxr10_160_firmware
There is a privilege escalation vulnerability in ZTE ZXR10 ZSR V2 intelligent multi service router . An authenticated attacker could use the vulnerability to obtain sensitive information about the de… CWE-294
Authentication Bypass by Capture-replay 
CVE-2024-22066 2024-11-8 23:31 2024-10-29 Show GitHub Exploit DB Packet Storm
311339 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: reset: starfive: jh71x0: Fix accessing the empty member on JH7110 SoC data->asserted will be NULL on JH7110 SoC since commit 8232… NVD-CWE-noinfo
CVE-2024-50137 2024-11-8 23:29 2024-11-6 Show GitHub Exploit DB Packet Storm
311340 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bpf: Use raw_spinlock_t in ringbuf The function __bpf_ringbuf_reserve is invoked from a tracepoint, which disables preemption. Us… NVD-CWE-noinfo
CVE-2024-50138 2024-11-8 23:27 2024-11-6 Show GitHub Exploit DB Packet Storm