Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1281 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-53825 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1282 4.3 警告
Network
OpenClaw OpenClaw OpenClawにおける誤った領域へのリソースの漏えいに関する脆弱性 CWE-668
誤った領域へのリソースの漏えい
CVE-2026-53826 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1283 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-53827 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1284 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-53828 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1285 8 重要
Network
OpenClaw OpenClaw OpenClawにおけるユーザインターフェースにおける重要情報の誤った表示に関する脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2026-53829 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1286 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-53830 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1287 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
CWE-noinfo
CVE-2026-53831 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1288 9.8 緊急
Network
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-53838 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1289 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける要素の欠如による不完全な比較に関する脆弱性 CWE-1023
要素の欠如による不完全な比較
CVE-2026-53839 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1290 5 警告
Local
Kovidgoyal Kitty KovidgoyalのKittyにおける複数の脆弱性 CWE-367
CWE-426
CWE-59
CVE-2026-54055 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256281 5.4 MEDIUM
Network
synacor zimbra_collaboration_suite Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS. CWE-79
Cross-site Scripting
CVE-2017-8783 2024-11-21 12:34 2018-02-4 Show GitHub Exploit DB Packet Storm
256282 7.8 HIGH
Local
cisecurity cis-cat_pro_dashboard In Center for Internet Security CIS-CAT Pro Dashboard before 1.0.4, an authenticated user is able to change an administrative user's e-mail address and send a forgot password email to themselves, the… CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2017-8916 2024-11-21 12:34 2018-02-1 Show GitHub Exploit DB Packet Storm
256283 5.4 MEDIUM
Network
synocor zimbra_collaboration_suite Cross-site scripting (XSS) vulnerability in Zimbra Collaboration Suite (aka ZCS) before 8.8.0 Beta2 might allow remote attackers to inject arbitrary web script or HTML via vectors related to the "Sho… CWE-79
Cross-site Scripting
CVE-2017-8802 2024-11-21 12:34 2018-01-17 Show GitHub Exploit DB Packet Storm
256284 5.9 MEDIUM
Network
cognitoys stemosaur_firmware Elemental Path's CogniToys Dino smart toys through firmware version 0.0.794 use AES-128 with ECB mode to encrypt voice traffic between the device and remote server, allowing a malicious user to map e… NVD-CWE-noinfo
CVE-2017-8867 2024-11-21 12:34 2017-12-12 Show GitHub Exploit DB Packet Storm
256285 5.9 MEDIUM
Network
cognitoys stemosaur_firmware Elemental Path's CogniToys Dino smart toys through firmware version 0.0.794 share a fixed small pool of hardcoded keys, allowing a remote attacker to use a different Dino device to decrypt VoIP traff… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2017-8866 2024-11-21 12:34 2017-12-12 Show GitHub Exploit DB Packet Storm
256286 5.9 MEDIUM
Network
cognitoys stemosaur_firmware Elemental Path's CogniToys Dino smart toys through firmware version 0.0.794 do not provide sufficient protections against capture-replay attacks, allowing an attacker on the network to replay VoIP tr… CWE-200
Information Exposure
CVE-2017-8865 2024-11-21 12:34 2017-12-12 Show GitHub Exploit DB Packet Storm
256287 7.8 HIGH
Local
linux linux_kernel The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privileges or cause a denial of service (use-after-free) via an AF_UNSPEC connect system… CWE-416
 Use After Free
CVE-2017-8824 2024-11-21 12:34 2017-12-5 Show GitHub Exploit DB Packet Storm
256288 8.1 HIGH
Network
tor_project
debian
tor
debian_linux
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, there is a use-after-free in onion service v2 during intro-point e… CWE-416
 Use After Free
CVE-2017-8823 2024-11-21 12:34 2017-12-3 Show GitHub Exploit DB Packet Storm
256289 3.7 LOW
Network
tor_project
debian
tor
debian_linux
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, relays (that have incompletely downloaded descriptors) can pick th… CWE-417
 Channel and Path Errors
CVE-2017-8822 2024-11-21 12:34 2017-12-3 Show GitHub Exploit DB Packet Storm
256290 7.5 HIGH
Network
tor_project
debian
tor
debian_linux
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a denial of service (application hang) via c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8821 2024-11-21 12:34 2017-12-3 Show GitHub Exploit DB Packet Storm