Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1361 4.3 警告
Network
getkirby kirby getkirbyのkirbyにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42174 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
1362 7.5 重要
Network
OpenBao OpenBao OpenBaoにおける保存または転送前の重要な情報の削除に関する脆弱性 CWE-212
保存または転送前の重要な情報の不適切な削除
CVE-2026-42186 2026-05-20 13:30 2026-05-14 Show GitHub Exploit DB Packet Storm
1363 7.5 重要
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2026-42245 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
1364 7.4 重要
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-392
CWE-393
CWE-636
CWE-754
CWE-841
CVE-2026-42246 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
1365 9.8 緊急
Network
ollama ollama Ollamaにおけるダウンロードしたコードの完全性検証不備に関する脆弱性 CWE-494
ダウンロードしたコードの完全性検証不備
CVE-2026-42248 2026-05-20 13:30 2026-04-29 Show GitHub Exploit DB Packet Storm
1366 9.8 緊急
Network
ollama ollama Ollamaにおける複数の脆弱性 CWE-22
CWE-494
CVE-2026-42249 2026-05-20 13:30 2026-04-29 Show GitHub Exploit DB Packet Storm
1367 9.8 緊急
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-77
CWE-93
CVE-2026-42257 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
1368 9.8 緊急
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-77
CWE-93
CVE-2026-42258 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
1369 7.1 重要
Network
Quantum Nous New API Quantum NousのNew APIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-42339 2026-05-20 13:30 2026-05-8 Show GitHub Exploit DB Packet Storm
1370 9.8 緊急
Network
sentry sentry sentryにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-42354 2026-05-20 13:30 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311171 5.4 MEDIUM
Network
oretnom23 online_eyewear_shop A vulnerability has been found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /oews/classes/Master.php… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-11247 2024-11-20 06:55 2024-11-16 Show GitHub Exploit DB Packet Storm
311172 8.2 HIGH
Network
ibm engineering_lifecycle_optimization_-_engineering_insights IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit … CWE-611
XXE
CVE-2024-39726 2024-11-20 06:51 2024-11-16 Show GitHub Exploit DB Packet Storm
311173 8.8 HIGH
Network
tenda ac10_firmware A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of … CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2024-11248 2024-11-20 06:51 2024-11-16 Show GitHub Exploit DB Packet Storm
311174 9.8 CRITICAL
Network
1000projects portfolio_management_system_mca A vulnerability was found in 1000 Projects Portfolio Management System MCA 1.0 and classified as critical. This issue affects some unknown processing of the file /login.php. The manipulation of the a… CWE-89
SQL Injection
CVE-2024-11256 2024-11-20 06:49 2024-11-16 Show GitHub Exploit DB Packet Storm
311175 6.1 MEDIUM
Network
code-projects farmacia A vulnerability, which was classified as problematic, has been found in code-projects Farmacia 1.0. This issue affects some unknown processing of the file /fornecedores.php. The manipulation leads to… CWE-79
Cross-site Scripting
CVE-2024-11259 2024-11-20 06:47 2024-11-16 Show GitHub Exploit DB Packet Storm
311176 9.8 CRITICAL
Network
weechat weechat WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more than two billion items in a list. This affects string_free_split_shared , string_f… CWE-190
 Integer Overflow or Wraparound
CVE-2024-46613 2024-11-20 06:35 2024-11-11 Show GitHub Exploit DB Packet Storm
311177 - - - wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) 06df58f is vulnerable to NULL Pointer Dereference in function `block_type_get_result_types. - CVE-2024-27532 2024-11-20 06:35 2024-11-9 Show GitHub Exploit DB Packet Storm
311178 6.1 MEDIUM
Network
thimpress learnpress_export_import The LearnPress Export Import – WordPress extension for LearnPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'learnpress_import_form_server' parameter in all version… CWE-79
Cross-site Scripting
CVE-2024-9609 2024-11-20 06:28 2024-11-15 Show GitHub Exploit DB Packet Storm
311179 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability classified as critical was found in 1000 Projects Beauty Parlour Management System 1.0. This vulnerability affects unknown code of the file /admin/index.php. The manipulation of the a… CWE-89
SQL Injection
CVE-2024-11258 2024-11-20 06:24 2024-11-16 Show GitHub Exploit DB Packet Storm
311180 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability classified as critical has been found in 1000 Projects Beauty Parlour Management System 1.0. This affects an unknown part of the file /admin/forgot-password.php. The manipulation of t… CWE-89
SQL Injection
CVE-2024-11257 2024-11-20 06:24 2024-11-16 Show GitHub Exploit DB Packet Storm