Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1631 5.4 警告
Network
strapi strapi strapiにおける複数の脆弱性 CWE-434
CWE-693
CVE-2026-22707 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1632 7.5 重要
Network
アルバネットワークス株式会社 SD-WAN
ArubaOS
アルバネットワークス株式会社のArubaOS等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-23824 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
1633 7.5 重要
Network
アルバネットワークス株式会社 SD-WAN
ArubaOS
アルバネットワークス株式会社のArubaOS等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-23825 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
1634 7.5 重要
Network
アルバネットワークス株式会社 SD-WAN
ArubaOS
アルバネットワークス株式会社のArubaOS等の複数製品における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-23826 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
1635 7.5 重要
Network
アルバネットワークス株式会社 SD-WAN
ArubaOS
アルバネットワークス株式会社のArubaOS等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-23827 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
1636 7.5 重要
Network
Fleet Device Management fleet Fleet Device Managementのfleetにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-23998 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1637 5.3 警告
Network
Fleet Device Management fleet Fleet Device Managementのfleetにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-24000 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1638 7.5 重要
Network
strapi strapi strapiにおける複数の脆弱性 CWE-200
CWE-22
CWE-943
CVE-2026-27886 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1639 6.5 警告
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-28376 2026-05-18 12:07 2026-05-13 Show GitHub Exploit DB Packet Storm
1640 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-2900 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319111 8.8 HIGH
Network
pligg pligg_cms Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_config.php?action=save&var_id=32 CWE-352
 Origin Validation Error
CVE-2024-42617 2024-08-21 22:09 2024-08-21 Show GitHub Exploit DB Packet Storm
319112 8.8 HIGH
Network
pligg pligg_cms Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_editor.php CWE-352
 Origin Validation Error
CVE-2024-42621 2024-08-21 21:50 2024-08-21 Show GitHub Exploit DB Packet Storm
319113 7.5 HIGH
Network
floraison fugit fugit contains time tools for flor and the floraison group. The fugit "natural" parser, that turns "every wednesday at 5pm" into "0 17 * * 3", accepted any length of input and went on attempting to p… NVD-CWE-noinfo
CVE-2024-43380 2024-08-21 21:38 2024-08-20 Show GitHub Exploit DB Packet Storm
319114 3.1 LOW
Network
trufflesecurity trufflehog TruffleHog is a secrets scanning tool. Prior to v3.81.9, this vulnerability allows a malicious actor to craft data in a way that, when scanned by specific detectors, could trigger the detector to mak… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-43379 2024-08-21 21:37 2024-08-20 Show GitHub Exploit DB Packet Storm
319115 9.8 CRITICAL
Network
jielink\+_jsotc2016_project jielink\+_jsotc2016 A vulnerability has been found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805 and classified as problematic. Affected by this vulnerability is an unknown functionali… NVD-CWE-Other
CVE-2024-7921 2024-08-21 21:34 2024-08-19 Show GitHub Exploit DB Packet Storm
319116 9.8 CRITICAL
Network
microcks microcks In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access. NVD-CWE-noinfo
CVE-2024-44076 2024-08-21 21:33 2024-08-19 Show GitHub Exploit DB Packet Storm
319117 9.8 CRITICAL
Network
jielink\+_jsotc2016_project jielink\+_jsotc2016 A vulnerability, which was classified as problematic, was found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805. Affected is an unknown function of the file /Report/P… NVD-CWE-Other
CVE-2024-7920 2024-08-21 21:31 2024-08-19 Show GitHub Exploit DB Packet Storm
319118 9.8 CRITICAL
Network
- - The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider plugin is vulnerable to PHP Object Injection via de… - CVE-2024-5335 2024-08-21 21:30 2024-08-21 Show GitHub Exploit DB Packet Storm
319119 - - - In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix command stats access after free Command may fail while driver is reloading and can't accept FW commands till comman… - CVE-2022-48884 2024-08-21 21:30 2024-08-21 Show GitHub Exploit DB Packet Storm
319120 - - - In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: IPoIB, Block PKEY interfaces with less rx queues than parent A user is able to configure an arbitrary number of rx que… - CVE-2022-48883 2024-08-21 21:30 2024-08-21 Show GitHub Exploit DB Packet Storm