Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2001 9.1 緊急
Network
OPNsense project OPNsense OPNsenseにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-45158 2026-05-18 11:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2002 5.3 警告
Network
Apache Software Foundation Apache Commons Configuration Apache Software FoundationのApache Commons Configurationにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-45205 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2003 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-4524 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2004 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-4527 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2005 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6063 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2006 5.4 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6073 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2007 5.4 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6335 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2008 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-6883 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
2009 9.8 緊急
Network
libexpat project libexpat libexpat projectのlibexpatにおけるエントロピー不足に関する脆弱性 CWE-331
エントロピー不足
CVE-2026-7210 2026-05-18 11:24 2026-05-11 Show GitHub Exploit DB Packet Storm
2010 8.8 重要
Adjacent
ZyXEL WRE6505 ファームウェア ZyXELのWRE6505 ファームウェアにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-7256 2026-05-18 11:24 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
318921 - - - The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page. - CVE-2024-6792 2024-09-6 15:15 2024-09-6 Show GitHub Exploit DB Packet Storm
318922 7.5 HIGH
Network
nescalante urlregex A vulnerability was found in nescalante urlregex up to 0.5.0 and classified as problematic. This issue affects some unknown processing of the file index.js of the component Backtracking. The manipula… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2020-36830 2024-09-6 06:47 2024-09-3 Show GitHub Exploit DB Packet Storm
318923 7.8 HIGH
Local
qualcomm ar8035_firmware
csra6620_firmware
csra6640_firmware
fastconnect_6200_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
flight_rb5_5g_firmware…
Memory corruption while processing IOCTL call for getting group info. CWE-416
 Use After Free
CVE-2024-38402 2024-09-6 06:43 2024-09-2 Show GitHub Exploit DB Packet Storm
318924 9.8 CRITICAL
Network
rubrik cloud_data_management An incorrect access control vulnerability in Rubrik CDM versions prior to 9.1.2-p1, 9.0.3-p6 and 8.1.3-p12, allows an attacker with network access to execute arbitrary code. NVD-CWE-Other
CVE-2024-36068 2024-09-6 05:27 2024-08-28 Show GitHub Exploit DB Packet Storm
318925 7.8 HIGH
Local
adobe
microsoft
acrobat_reader
edge
Acrobat Reader versions 127.0.2651.105 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2024-41879 2024-09-6 04:58 2024-08-26 Show GitHub Exploit DB Packet Storm
318926 4.7 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net/tcp: Disable TCP-AO static key after RCU grace period The lifetime of TCP-AO static_key is the same as the last tcp_ao_info. … NVD-CWE-noinfo
CVE-2024-43887 2024-09-6 04:43 2024-08-26 Show GitHub Exploit DB Packet Storm
318927 4.9 MEDIUM
Network
dell path_to_powerprotect Dell Path to PowerProtect, versions 1.1, 1.2, contains an Exposure of Private Personal Information to an Unauthorized Actor vulnerability. A remote high privileged attacker could potentially exploit … NVD-CWE-noinfo
CVE-2024-37136 2024-09-6 04:01 2024-09-3 Show GitHub Exploit DB Packet Storm
318928 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tracing: Fix overflow in get_free_elt() "tracing_map->next_elt" in get_free_elt() is at risk of overflowing. Once it overflows, … CWE-190
 Integer Overflow or Wraparound
CVE-2024-43890 2024-09-6 03:48 2024-08-26 Show GitHub Exploit DB Packet Storm
318929 4.7 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tracing: Have format file honor EVENT_FILE_FL_FREED When eventfs was introduced, special care had to be done to coordinate the fr… CWE-416
 Use After Free
CVE-2024-43891 2024-09-6 03:46 2024-08-26 Show GitHub Exploit DB Packet Storm
318930 7.5 HIGH
Network
blood_bank_system_project blood_bank_system A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file /login.php of the component Login Page. The manipulati… CWE-89
SQL Injection
CVE-2024-8173 2024-09-6 03:39 2024-08-27 Show GitHub Exploit DB Packet Storm