Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241 7.5 重要
Network
FRRouting Project FRRouting FRRouting ProjectのFRRoutingにおける境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-37457 2026-06-3 17:02 2026-05-1 Show GitHub Exploit DB Packet Storm
242 7.2 重要
Network
devcode openstamanager DevcodeのOpenSTAManagerにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 New CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-38751 2026-06-3 17:02 2026-05-4 Show GitHub Exploit DB Packet Storm
243 5.5 警告
Local
GPAC GPAC GPACにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-39103 2026-06-3 17:02 2026-05-5 Show GitHub Exploit DB Packet Storm
244 6.1 警告
Network
heartcombo devise heartcomboのdeviseにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-40295 2026-06-3 17:02 2026-05-22 Show GitHub Exploit DB Packet Storm
245 5.5 警告
Local
BentoML BentoML BentoMLにおけるリンク解釈に関する脆弱性 New CWE-59
リンク解釈の問題
CVE-2026-40610 2026-06-3 17:02 2026-05-22 Show GitHub Exploit DB Packet Storm
246 4.3 警告
Network
Apache Software Foundation Apache ActiveMQ Artemis
Apache Artemis
Apache Software FoundationのApache ActiveMQ Artemis等の複数製品における不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-40914 2026-06-3 17:02 2026-05-28 Show GitHub Exploit DB Packet Storm
247 7.1 重要
Adjacent
free5gc free5gc free5GCにおけるセキュリティチェックに関する脆弱性 New CWE-358
不適切に実装されたセキュリティチェック
CVE-2026-42081 2026-06-3 17:02 2026-05-27 Show GitHub Exploit DB Packet Storm
248 5.4 警告
Network
Elasticsearch B.V. Kibana Elasticsearch B.V.のKibanaにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42401 2026-06-3 17:01 2026-05-28 Show GitHub Exploit DB Packet Storm
249 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおけるリソースのロックに関する脆弱性 New CWE-667
不適切なロック
CVE-2026-43061 2026-06-3 17:01 2026-05-5 Show GitHub Exploit DB Packet Storm
250 7.1 重要
Adjacent
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-43062 2026-06-3 17:01 2026-05-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310801 5.3 MEDIUM
Network
- - A vulnerability in the Transport Layer Security (TLS) protocol implementation of Cisco AsyncOS software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attac… CWE-407
 Inefficient Algorithmic Complexity
CVE-2020-3548 2024-11-19 02:11 2024-11-19 Show GitHub Exploit DB Packet Storm
310802 6.3 MEDIUM
Network
- - A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authori… CWE-285
Improper Authorization
CVE-2020-3539 2024-11-19 02:11 2024-11-19 Show GitHub Exploit DB Packet Storm
310803 - - - There exists a stored XSS Vulnerability in Kubeflow Pipeline View web UI. The Kubeflow Web UI allows to create new pipelines. When creating a new pipeline, it is possible to add a description. The de… - CVE-2024-9526 2024-11-19 02:11 2024-11-18 Show GitHub Exploit DB Packet Storm
310804 - - - Execution with Unnecessary Privileges, : Improper Protection of Alternate Path vulnerability in TR7 Application Security Platform (ASP) allows Privilege Escalation, -Privilege Abuse.This issue affect… CWE-250
CWE-424
 Execution with Unnecessary Privileges
 Improper Protection of Alternate Path
CVE-2024-8781 2024-11-19 02:11 2024-11-18 Show GitHub Exploit DB Packet Storm
310805 - - - An IDOR (Insecure Direct Object Reference) vulnerability has been discovered in AbsysNet, affecting version 2.3.1. This vulnerability could allow a remote attacker to obtain the session of an unauthe… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-11318 2024-11-19 02:11 2024-11-18 Show GitHub Exploit DB Packet Storm
310806 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Egebilgi Software Website Template allows SQL Injection.This issue affects Website Template: befo… CWE-89
SQL Injection
CVE-2024-3370 2024-11-19 02:11 2024-11-18 Show GitHub Exploit DB Packet Storm
310807 - - - Firebase JavaScript SDK utilizes a "FIREBASE_DEFAULTS" cookie to store configuration data, including an "_authTokenSyncURL" field used for session synchronization. If this cookie field is preset via… - CVE-2024-11023 2024-11-19 02:11 2024-11-18 Show GitHub Exploit DB Packet Storm
310808 - - - A vulnerability in the web-based management interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition, Cisco Unified Communicat… - CVE-2020-3532 2024-11-19 02:11 2024-11-19 Show GitHub Exploit DB Packet Storm
310809 6.1 MEDIUM
Network
- - A vulnerability in the web-based management interface of Cisco Small Business RV042 Dual WAN VPN Routers and Cisco Small Business RV042G Dual Gigabit WAN VPN Routers could allow an unauthen… CWE-79
Cross-site Scripting
CVE-2020-3431 2024-11-19 02:11 2024-11-19 Show GitHub Exploit DB Packet Storm
310810 - - - A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could a… CWE-79
Cross-site Scripting
CVE-2020-3420 2024-11-19 02:11 2024-11-19 Show GitHub Exploit DB Packet Storm