Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
134211 9.8 緊急
Network
Netis Systems Co., Ltd. WF2411 ファームウェア
WF2780 ファームウェア
Netis WF2780 および WF2411 における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-26747 2021-11-12 14:02 2021-02-18 Show GitHub Exploit DB Packet Storm
134212 7.5 重要
Network
Digium Asterisk
Certified Asterisk
Sangoma Asterisk および Certified Asterisk における脆弱性 CWE-Other
その他
CVE-2021-26712 2021-11-12 14:02 2021-02-18 Show GitHub Exploit DB Packet Storm
134213 5.9 警告
Network
Digium Asterisk
Certified Asterisk
Digium Asterisk および Certified Asterisk におけるリソースの不適切なシャットダウンおよびリリースに関する脆弱性 CWE-404
リソースの不適切なシャットダウンおよびリリース
CVE-2021-26906 2021-11-12 14:02 2021-02-18 Show GitHub Exploit DB Packet Storm
134214 7.5 重要
Network
Digium Asterisk
Certified Asterisk
Sangoma Asterisk および Certified Asterisk における脆弱性 CWE-noinfo
情報不足
CVE-2021-26717 2021-11-12 14:02 2021-02-18 Show GitHub Exploit DB Packet Storm
134215 6.5 警告
Network
Digium Asterisk Sangoma Asterisk における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2020-35776 2021-11-12 14:02 2020-12-28 Show GitHub Exploit DB Packet Storm
134216 5.4 警告
Network
Pi-hole Pi-hole Pi-hole におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-35592 2021-11-12 14:02 2020-02-16 Show GitHub Exploit DB Packet Storm
134217 4.8 警告
Network
Pressbooks Pressbooks PressBooks におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-3271 2021-11-12 14:02 2021-01-13 Show GitHub Exploit DB Packet Storm
134218 7.8 重要
Local
Xen プロジェクト Xen Xen における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-27379 2021-11-12 14:02 2021-02-18 Show GitHub Exploit DB Packet Storm
134219 9.8 緊急
Network
Lucee Lucee Server Lucee Server における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2021-21307 2021-11-12 13:59 2021-02-9 Show GitHub Exploit DB Packet Storm
134220 6.5 警告
Network
Teradici Cloud Access Connector Teradici Cloud Access Connector におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2020-13186 2021-11-12 13:59 2020-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
951 7.5 HIGH
Network
wolfssl wolfssl AES-GCM encryption/decryption with extremely large cumulative single message sizes (>64 GiB) were not properly rejected by the streaming APIs, allowing counter wrap, keystream reuse, and consequent p… New CWE-323
 Reusing a Nonce, Key Pair in Encryption
CVE-2026-55967 2026-06-27 01:50 2026-06-26 Show GitHub Exploit DB Packet Storm
952 7.5 HIGH
Network
wolfssl wolfssl wolfSSL_PKCS7_verify() returning success for a degenerate (certs-only) PKCS#7 object that contains no signer. Such an object has empty signerInfos, so the underlying signed-data verification succeeds… New CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-55961 2026-06-27 01:50 2026-06-26 Show GitHub Exploit DB Packet Storm
953 7.5 HIGH
Network
wolfssl wolfssl X.509 trust-chain bypass (path-depth exhaustion) in the OpenSSL compatibility certificate verifier (wolfSSL_X509_verify_cert()). This affects only builds with --enable-opensslextra whose application … New CWE-295
Improper Certificate Validation 
CVE-2026-11999 2026-06-27 01:50 2026-06-26 Show GitHub Exploit DB Packet Storm
954 9.8 CRITICAL
Network
dest-unreach socat socat versions 1.8.0.0 through 1.8.1.1 contain a heap-based buffer overflow vulnerability that allows a malicious SOCKS5 proxy server to overwrite adjacent heap memory by exploiting a sign-extension … New CWE-122
Heap-based Buffer Overflow
CVE-2026-56123 2026-06-27 01:50 2026-06-26 Show GitHub Exploit DB Packet Storm
955 3.3 LOW
Local
tenable nessus A SQL injection vulnerability in Nessus allows an attacker to craft a malicious scan result file that, when imported by a privileged user, injects malicious SQL into the scan results database, potent… New CWE-89
SQL Injection
CVE-2026-57588 2026-06-27 01:48 2026-06-26 Show GitHub Exploit DB Packet Storm
956 5.3 MEDIUM
Network
tenable nessus A SQL injection vulnerability in Nessus allows a remote, unauthenticated attacker who controls reverse DNS records for a scanned host to inject malicious SQL into the scan results database, potential… New CWE-89
SQL Injection
CVE-2026-57587 2026-06-27 01:47 2026-06-26 Show GitHub Exploit DB Packet Storm
957 5.3 MEDIUM
Network
nokogiri nokogiri Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::XPathContext did not keep its source document alive for garbage collection. If an XP… New CWE-416
 Use After Free
CVE-2026-57437 2026-06-27 01:47 2026-06-26 Show GitHub Exploit DB Packet Storm
958 5.3 MEDIUM
Network
nokogiri nokogiri Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::Document#root= validated only that the new root was a Nokogiri::XML::Node, allowing … New CWE-416
 Use After Free
CVE-2026-57436 2026-06-27 01:47 2026-06-26 Show GitHub Exploit DB Packet Storm
959 3.8 LOW
Network
mattermost mattermost_server Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to validate bot targets when demoting users to guests which allows a lower-privileged administrator to degrade arbitrary bot accounts vi… New CWE-863
 Incorrect Authorization
CVE-2026-8823 2026-06-27 01:39 2026-06-23 Show GitHub Exploit DB Packet Storm
960 10.0 CRITICAL
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to 3.7.3, there is a critical vulnerability in Traefik's HTTP/3 (QUIC) TLS configuration selection that allows unauthenticated clients to byp… New CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-53622 2026-06-27 01:39 2026-06-24 Show GitHub Exploit DB Packet Storm