Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1481 7.5 重要
Network
PostgreSQL.org PostgreSQL PostgreSQL.orgのPostgreSQLにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-6479 2026-05-20 13:24 2026-05-14 Show GitHub Exploit DB Packet Storm
1482 4.3 警告
Network
PostgreSQL.org PostgreSQL PostgreSQL.orgのPostgreSQLにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-6575 2026-05-20 13:24 2026-05-14 Show GitHub Exploit DB Packet Storm
1483 8.8 重要
Network
PostgreSQL.org PostgreSQL PostgreSQL.orgのPostgreSQLにおける複数の脆弱性 CWE-121
CWE-89
CVE-2026-6637 2026-05-20 13:24 2026-05-14 Show GitHub Exploit DB Packet Storm
1484 8.8 重要
Network
PostgreSQL.org PostgreSQL PostgreSQL.orgのPostgreSQLにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-6638 2026-05-20 13:24 2026-05-14 Show GitHub Exploit DB Packet Storm
1485 9.8 緊急
Network
simple-git project simple-git simple-git projectのsimple-gitにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-6951 2026-05-20 13:24 2026-04-25 Show GitHub Exploit DB Packet Storm
1486 8.8 重要
Network
MongoDB Inc. MongoDB MongoDB Inc.のMongoDBにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-8053 2026-05-20 13:24 2026-05-13 Show GitHub Exploit DB Packet Storm
1487 5.3 警告
Network
MongoDB Inc. MongoDB MongoDB Inc.のMongoDBにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-8200 2026-05-20 13:24 2026-05-13 Show GitHub Exploit DB Packet Storm
1488 6.5 警告
Network
MongoDB Inc. MongoDB MongoDB Inc.のMongoDBにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-8202 2026-05-20 13:24 2026-05-13 Show GitHub Exploit DB Packet Storm
1489 6.5 警告
Network
MongoDB Inc. MongoDB MongoDB Inc.のMongoDBにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8336 2026-05-20 13:24 2026-05-13 Show GitHub Exploit DB Packet Storm
1490 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-8509 2026-05-20 13:24 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311201 7.5 HIGH
Network
schneider-electric powerlogic_pm5341_firmware
powerlogic_pm5340_firmware
powerlogic_pm5320_firmware
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in… CWE-400
 Uncontrolled Resource Consumption
CVE-2024-9409 2024-11-20 00:59 2024-11-13 Show GitHub Exploit DB Packet Storm
311202 4.8 MEDIUM
Network
vektor-inc vk_all_in_one_expansion_unit Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100.1.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of th… CWE-79
Cross-site Scripting
CVE-2024-52268 2024-11-20 00:57 2024-11-13 Show GitHub Exploit DB Packet Storm
311203 4.8 MEDIUM
Network
pimcore pimcore A stored Cross-site Scripting (XSS) vulnerability exists in the Conditions tab of Pricing Rules in pimcore/pimcore versions 10.5.19. The vulnerability is present in the From and To fields of the Date… CWE-79
Cross-site Scripting
CVE-2023-2332 2024-11-20 00:55 2024-11-15 Show GitHub Exploit DB Packet Storm
311204 5.4 MEDIUM
Network
royal-elementor-addons royal_elementor_addons The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions up to, and including, 1.7.1001 due to insu… CWE-79
Cross-site Scripting
CVE-2024-9668 2024-11-20 00:55 2024-11-13 Show GitHub Exploit DB Packet Storm
311205 5.5 MEDIUM
Local
gpac gpac A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del function in filter_core/filter.c at line 38. This vulnerability can lead to a double-… CWE-416
 Use After Free
CVE-2023-4679 2024-11-20 00:54 2024-11-15 Show GitHub Exploit DB Packet Storm
311206 5.9 MEDIUM
Network
phpipam phpipam phpIPAM version 1.5.1 contains a vulnerability where an attacker can bypass the IP block mechanism to brute force passwords for users by using the 'X-Forwarded-For' header. The issue lies in the 'get… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-0787 2024-11-20 00:53 2024-11-15 Show GitHub Exploit DB Packet Storm
311207 5.4 MEDIUM
Network
royal-elementor-addons royal_elementor_addons The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps widget in all versions up to, and including, 1.7.1001 due to insufficien… CWE-79
Cross-site Scripting
CVE-2024-9059 2024-11-20 00:53 2024-11-13 Show GitHub Exploit DB Packet Storm
311208 6.1 MEDIUM
Network
advancedformintegration advanced_form_integration The AFI – The Easiest Integration Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the UR… CWE-79
Cross-site Scripting
CVE-2024-10877 2024-11-20 00:52 2024-11-13 Show GitHub Exploit DB Packet Storm
311209 7.2 HIGH
Network
mayurik best_employee_management_system A vulnerability, which was classified as critical, was found in SourceCodester Best Employee Management System 1.0. This affects an unknown part of the file /admin/edit_role.php. The manipulation of … CWE-89
SQL Injection
CVE-2024-11213 2024-11-20 00:48 2024-11-15 Show GitHub Exploit DB Packet Storm
311210 8.8 HIGH
Network
mayurik best_employee_management_system A vulnerability, which was classified as critical, has been found in SourceCodester Best Employee Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/fetch_… CWE-89
SQL Injection
CVE-2024-11212 2024-11-20 00:48 2024-11-15 Show GitHub Exploit DB Packet Storm