Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1241 6.5 警告
Network
Tom Molesworth (TEAM) Net::Async::Statsd::Client Tom Molesworth (TEAM)のNet::Async::Statsd::ClientにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-46719
CVE-2026-46720
CVE-2026-8722
2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1242 7.5 重要
Network
OALDERS (Olaf Alders) HTML::Entities OALDERS (Olaf Alders)のHTML::Entitiesにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8829 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1243 5 警告
Network
レッドハット Red Hat OpenShift Container Platform レッドハットのRed Hat OpenShift Container Platformにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-10533 2026-06-9 14:10 2026-06-1 Show GitHub Exploit DB Packet Storm
1244 4.3 警告
Network
MISP MISP MISPにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-10855 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1245 6.1 警告
Network
MISP MISP MISPにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-10856 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1246 6.5 警告
Network
MISP MISP MISPにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-10860 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1247 6.1 警告
Network
MISP MISP MISPにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-10861 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1248 8.1 重要
Network
MISP MISP MISPにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-10863 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1249 4.3 警告
Network
MISP MISP MISPにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-10864 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1250 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-10940 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319931 4.7 MEDIUM
Network
qnap qts
quts_hero
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute commands … CWE-78
OS Command 
CVE-2024-21906 2024-09-21 01:49 2024-09-7 Show GitHub Exploit DB Packet Storm
319932 9.8 CRITICAL
Network
playsms playsms A vulnerability classified as critical has been found in playSMS 1.4.4/1.4.5/1.4.6/1.4.7. Affected is an unknown function of the file /playsms/index.php?app=main&inc=core_auth&route=forgot&op=forgot … CWE-94
Code Injection
CVE-2024-8880 2024-09-21 01:41 2024-09-16 Show GitHub Exploit DB Packet Storm
319933 7.8 HIGH
Local
qnap qts
quts_hero
A missing authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local authenticated users to access data or perfo… CWE-862
 Missing Authorization
CVE-2023-39298 2024-09-21 01:39 2024-09-7 Show GitHub Exploit DB Packet Storm
319934 6.1 MEDIUM
Network
intumit smartrobot_firmware SmartRobot from INTUMIT does not properly validate a specific page parameter, allowing unautheticated remote attackers to inject JavaScript code to the parameter for Reflected Cross-site Scripting at… CWE-79
Cross-site Scripting
CVE-2024-8776 2024-09-21 01:38 2024-09-16 Show GitHub Exploit DB Packet Storm
319935 2.4 LOW
Adjacent
qnap qts
quts_hero
An improper restriction of excessive authentication attempts vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local networ… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-32771 2024-09-21 01:38 2024-09-7 Show GitHub Exploit DB Packet Storm
319936 7.5 HIGH
Network
openjsf body-parser body-parser is Node.js body parsing middleware. body-parser <1.20.3 is vulnerable to denial of service when url encoding is enabled. A malicious actor using a specially crafted payload could flood th… NVD-CWE-noinfo
CVE-2024-45590 2024-09-21 01:26 2024-09-11 Show GitHub Exploit DB Packet Storm
319937 2.7 LOW
Network
fortinet fortiedrmanager An improper access control vulnerability [CWE-284] in FortiEDR Manager API 6.2.0 through 6.2.2, 6.0 all versions may allow in a shared environment context an authenticated admin with REST API permiss… NVD-CWE-Other
CVE-2024-45323 2024-09-21 01:23 2024-09-11 Show GitHub Exploit DB Packet Storm
319938 5.3 MEDIUM
Network
lizardbyte sunshine Sunshine is a self-hosted game stream host for Moonlight. Clients that experience a MITM attack during the pairing process may inadvertantly allow access to an unintended client rather than failing a… NVD-CWE-noinfo
CVE-2024-45407 2024-09-21 01:18 2024-09-11 Show GitHub Exploit DB Packet Storm
319939 4.7 MEDIUM
Network
openjsf express Express.js minimalist web framework for node. In express < 4.20.0, passing untrusted user input - even after sanitizing it - to response.redirect() may execute untrusted code. This issue is patched i… CWE-79
Cross-site Scripting
CVE-2024-43796 2024-09-21 01:07 2024-09-11 Show GitHub Exploit DB Packet Storm
319940 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfsd4_deleg_getattr_conflict in presence of third party lease It is not safe to dereference fl->c.flc_owner without fir… NVD-CWE-noinfo
CVE-2024-46690 2024-09-21 00:55 2024-09-13 Show GitHub Exploit DB Packet Storm