Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2121 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-45339 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2122 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45345 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2123 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-45346 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2124 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45347 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2125 7.1 重要
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45349 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2126 7.1 重要
Network
openwebui open webui openwebuiのopen webuiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45350 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2127 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-45351 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2128 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45365 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2129 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45385 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
2130 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45386 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319061 9.8 CRITICAL
Network
oretnom23 food_ordering_management_system A vulnerability was found in SourceCodester Food Ordering Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /routers/add-ticket.php. T… CWE-89
SQL Injection
CVE-2024-8415 2024-09-7 01:40 2024-09-5 Show GitHub Exploit DB Packet Storm
319062 9.8 CRITICAL
Network
oretnom23 food_ordering_management_system A vulnerability was found in SourceCodester Food Ordering Management System 1.0. It has been classified as critical. This affects an unknown part of the file /routers/ticket-status.php. The manipulat… CWE-89
SQL Injection
CVE-2024-8416 2024-09-7 01:38 2024-09-5 Show GitHub Exploit DB Packet Storm
319063 6.2 MEDIUM
Local
huawei emui
harmonyos
Permission verification vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect availability NVD-CWE-noinfo
CVE-2023-7265 2024-09-7 01:38 2024-08-8 Show GitHub Exploit DB Packet Storm
319064 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: xen: privcmd: Switch from mutex to spinlock for irqfds irqfd_wakeup() gets EPOLLHUP, when it is called by eventfd_release() by wa… CWE-667
 Improper Locking
CVE-2024-44957 2024-09-7 01:37 2024-09-5 Show GitHub Exploit DB Packet Storm
319065 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/xe/preempt_fence: enlarge the fence critical section It is really easy to introduce subtle deadlocks in preempt_fence_work_fu… CWE-667
 Improper Locking
CVE-2024-44956 2024-09-7 01:37 2024-09-5 Show GitHub Exploit DB Packet Storm
319066 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leaks and crashes while performing a soft reset The second tagged commit introduced a UAF, as it removed restori… CWE-416
CWE-401
 Use After Free
 Missing Release of Memory after Effective Lifetime
CVE-2024-44964 2024-09-7 01:36 2024-09-5 Show GitHub Exploit DB Packet Storm
319067 9.1 CRITICAL
Network
bitapps bit_form Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bit Apps Bit Form Pro allows File Manipulation.This issue affects Bit Form Pro: from n/a through 2.6.4. CWE-22
Path Traversal
CVE-2024-43248 2024-09-7 01:32 2024-08-20 Show GitHub Exploit DB Packet Storm
319068 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bonding: fix null pointer deref in bond_ipsec_offload_ok We must check if there is an active slave before dereferencing the point… CWE-476
 NULL Pointer Dereference
CVE-2024-44990 2024-09-7 01:31 2024-09-5 Show GitHub Exploit DB Packet Storm
319069 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bonding: fix xfrm real_dev null pointer dereference We shouldn't set real_dev to NULL because packets can be in transit and xfrm … CWE-476
 NULL Pointer Dereference
CVE-2024-44989 2024-09-7 01:31 2024-09-5 Show GitHub Exploit DB Packet Storm
319070 5.9 MEDIUM
Network
dlink dns-320_firmware A vulnerability, which was classified as problematic, has been found in D-Link DNS-320 2.02b01. Affected by this issue is some unknown functionality of the file /cgi-bin/widget_api.cgi of the compone… NVD-CWE-noinfo
CVE-2024-8460 2024-09-7 01:30 2024-09-5 Show GitHub Exploit DB Packet Storm