Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133131 6.7 警告
Local
Huawei SMC2.0 ファームウェア SMC2.0 における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2020-9209 2021-09-17 16:58 2020-12-30 Show GitHub Exploit DB Packet Storm
133132 6.5 警告
Adjacent
Huawei S2700 ファームウェア
S12700 ファームウェア
S5700 ファームウェア
S7700 ファームウェア
USG9500 ファームウェア
NIP6800 ファームウェア
S6700 ファームウェア
Secospace USG6600 ファームウェア
S…
複数の Huawei 製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2020-1866 2021-09-17 16:58 2020-01-22 Show GitHub Exploit DB Packet Storm
133133 6.5 警告
Adjacent
Huawei CloudEngine 6800 ファームウェア
CloudEngine 12800 ファームウェア
CloudEngine 7800 ファームウェア
CloudEngine 5800 ファームウェア
複数の Huawei 製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2020-1865 2021-09-17 16:58 2020-12-30 Show GitHub Exploit DB Packet Storm
133134 7.2 重要
Network
Xiaomi Mi RM1800 ファームウェア
Mi AX1800 ファームウェア
Xiaomi router AX1800rom および Xiaomi route RM1800 root におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2020-14102 2021-09-17 16:58 2020-06-15 Show GitHub Exploit DB Packet Storm
133135 7.5 重要
Network
Xiaomi Mi RM1800 ファームウェア
Mi AX1800 ファームウェア
Xiaomi router AX1800rom および Xiaomi route RM1800 root における脆弱性 CWE-noinfo
情報不足
CVE-2020-14101 2021-09-17 16:58 2020-06-15 Show GitHub Exploit DB Packet Storm
133136 7.5 重要
Network
Xiaomi Mi RM1800 ファームウェア
Mi AX1800 ファームウェア
Xiaomi router AX1800rom および Xiaomi route RM1800 root における不適切な同期に関する脆弱性 CWE-662
不適切な同期
CVE-2020-14098 2021-09-17 16:58 2020-06-15 Show GitHub Exploit DB Packet Storm
133137 7.5 重要
Network
Xiaomi Redmi AX6 ファームウェア Xiaomi router AX6 ROM における脆弱性 CWE-noinfo
情報不足
CVE-2020-14097 2021-09-17 16:58 2020-06-15 Show GitHub Exploit DB Packet Storm
133138 5 警告
Local
ジュニパーネットワークス Contrail Networking Juniper Networks Contrail Networking における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-0212 2021-09-17 16:55 2021-01-13 Show GitHub Exploit DB Packet Storm
133139 10 緊急
Network
ジュニパーネットワークス Junos OS Juniper Networks Junos OS および Junos OS Evolved Routing Protocol Daemon サービスにおける例外的な状態のチェックに関する脆弱性 CWE-754
例外的な状態における不適切なチェック
CVE-2021-0211 2021-09-17 16:55 2021-01-13 Show GitHub Exploit DB Packet Storm
133140 6.8 警告
Network
ジュニパーネットワークス Junos OS Juniper Networks Junos OS における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-0210 2021-09-17 16:55 2021-01-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
121 - - - backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages that help users build custom administration panels. Versions prior to 5.0.13, 4.1.… New CWE-79
Cross-site Scripting
CVE-2022-31114 2026-06-5 01:18 2026-06-4 Show GitHub Exploit DB Packet Storm
122 - - - A DLL hijacking vulnerability in Wassimulator (GitHub) CactusViewer v2.3.0 allows attackers to escalate privileges and execute arbitrary code via a crafted DLL. New - CVE-2026-36574 2026-06-5 01:18 2026-06-4 Show GitHub Exploit DB Packet Storm
123 - - - Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UP… New - CVE-2026-37460 2026-06-5 01:17 2026-06-3 Show GitHub Exploit DB Packet Storm
124 7.1 HIGH
Adjacent
- - Version 3.0.7 of the Securly Chrome Extension downloads JSON files containing crisis alert keywords and filtering rules over unencrypted HTTP via the Fetch API. Other endpoints in the same extension … New CWE-319
Cleartext Transmission of Sensitive Information
CVE-2026-8874 2026-06-5 01:16 2026-06-4 Show GitHub Exploit DB Packet Storm
125 5.3 MEDIUM
Network
- - Strawberry GraphQL is a library for creating GraphQL APIs. In versions 0.172.0 through0.315.6, the MaxAliasesLimiter extension in Strawberry fails to account for the multiplicative/amplification effe… New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-47707 2026-06-5 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
126 - - - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 are vulnerable to remote code execution via the newsletter custom template directory feature. O… New CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-41065 2026-06-5 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
127 - - - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to version 2.17.1, a path traversal vulnerability in the cache deletion endpoint allows authenticated API access t… New CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-40605 2026-06-5 01:16 2026-06-4 Show GitHub Exploit DB Packet Storm
128 4.6 MEDIUM
Physics
- - The factory reset functionality in GNCC GP5 v7.1.76 fails to clear sensitive cryptographic material in the JFFS2 configuration partition, possibly allowing attackers to recover and obtain sensitive u… New CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2026-36178 2026-06-5 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
129 6.5 MEDIUM
Network
- - (*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the sa… New - CVE-2026-27145 2026-06-5 01:15 2026-06-3 Show GitHub Exploit DB Packet Storm
130 7.5 HIGH
Network
- - Decoding a maliciously-crafted MIME header containing many invalid encoded-words can consume excessive CPU. New CWE-407
 Inefficient Algorithmic Complexity
CVE-2026-42504 2026-06-5 01:15 2026-06-3 Show GitHub Exploit DB Packet Storm