Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
151 7.8 重要
Local
レッドハット
X.Org Foundation
X.Org X Server
Red Hat Enterprise Linux
xwayland
レッドハット等の複数ベンダの製品における境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-50264 2026-06-17 15:39 2026-06-5 Show GitHub Exploit DB Packet Storm
152 7.5 重要
Network
Express.js Multer Express.jsのMulterにおける不完全なクリーンアップに関する脆弱性 New CWE-459
不完全なクリーンアップ
CVE-2026-5038 2026-06-17 15:39 2026-06-15 Show GitHub Exploit DB Packet Storm
153 7.5 重要
Network
Express.js Multer Express.jsのMulterにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-5079 2026-06-17 15:39 2026-06-15 Show GitHub Exploit DB Packet Storm
154 8.1 重要
Network
Zoom Video Communications, Inc. Zoom Meeting SDK
Zoom Workplace
Zoom Video Communications, Inc.のZoom Meeting SDK等の複数製品におけるカスタム URL スキームのハンドラの不適切な認可に関する脆弱性 New CWE-939
カスタム URL スキームのハンドラの不適切な認可
CVE-2026-53408 2026-06-17 15:39 2026-06-12 Show GitHub Exploit DB Packet Storm
155 6.6 警告
Local
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-53820 2026-06-17 15:39 2026-06-12 Show GitHub Exploit DB Packet Storm
156 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-53821 2026-06-17 15:39 2026-06-12 Show GitHub Exploit DB Packet Storm
157 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける複数の脆弱性 New CWE-367
CWE-77
CVE-2026-53822 2026-06-17 15:39 2026-06-12 Show GitHub Exploit DB Packet Storm
158 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおけるスプーフィングによる認証回避に関する脆弱性 New CWE-290
スプーフィングによる認証回避
CVE-2026-53823 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
159 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるセッション期限に関する脆弱性 New CWE-613
不適切なセッション期限
CVE-2026-53824 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
160 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-53825 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
309771 - silverstripe silverstripe The deleteinstallfiles function in control/ContentController.php in SilverStripe 2.3.x before 2.3.7 does not require ADMIN permissions, which allows remote attackers to delete index.php and "disrupt … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-5094 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309772 - silverstripe silverstripe Member_ProfileForm in security/Member.php in SilverStripe 2.3.x before 2.3.7 allows remote attackers to hijack user accounts by saving data using the email address (ID) of another user. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-5093 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309773 - silverstripe silverstripe The Add Member dialog in the Security admin page in SilverStripe 2.4.0 saves user passwords in plaintext, which allows local users to obtain sensitive information by reading a database. CWE-255
Credentials Management
CVE-2010-5092 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309774 - silverstripe silverstripe The setName function in filesystem/File.php in SilverStripe 2.3.x before 2.3.8 and 2.4.x before 2.4.1 allows remote authenticated users with CMS author privileges to execute arbitrary PHP code by cha… CWE-94
Code Injection
CVE-2010-5091 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309775 - silverstripe silverstripe SilverStripe before 2.4.2 allows remote authenticated users to change administrator passwords via vectors related to admin/security. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-5090 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309776 - silverstripe silverstripe SilverStripe before 2.4.2 does not properly restrict access to pages in draft mode, which allows remote attackers to obtain sensitive information. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-5089 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309777 - silverstripe silverstripe Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destruct… CWE-352
 Origin Validation Error
CVE-2010-5088 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309778 - silverstripe silverstripe SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism and hijack the authentication of administrators vi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-5087 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309779 - silverstripe silverstripe The Security/changepassword URL action in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4 passes a token as a GET parameter while changing a password through email, which allows remote attack… CWE-255
CWE-352
Credentials Management
 Origin Validation Error
CVE-2010-5080 2024-11-21 10:22 2012-08-27 Show GitHub Exploit DB Packet Storm
309780 - comodo comodo_internet_security The Antivirus component in Comodo Internet Security before 4.1.150349.920 allows remote attackers to cause a denial of service (application crash) via a crafted file. NVD-CWE-noinfo
CVE-2010-5186 2024-11-21 10:22 2012-08-26 Show GitHub Exploit DB Packet Storm