|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 10, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2581 | 9.9 |
緊急
Network |
nginxui | Nginx UI | Nginx UI TeamのNginx UIにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-44015 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2582 | 7.1 |
重要
Network |
M2-Team | NanaZip | M2-TeamのNanaZipにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-44215 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2583 | 7.5 |
重要
Network |
vLLM | vLLM | vLLMにおける配列インデックスの検証に関する脆弱性 |
CWE-129
配列インデックスの不適切な検証 |
CVE-2026-44222 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2584 | 6.5 |
警告
Network |
vLLM | vLLM | vLLMにおける複数の脆弱性 |
CWE-131 CWE-704 |
CVE-2026-44223 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2585 | 8.8 |
重要
Network |
requarks | Wiki.js | requarksのWiki.jsにおける権限管理に関する脆弱性 |
CWE-269 CWE-noinfo |
CVE-2026-44224 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2586 | 6.5 |
警告
Network |
warpgate project | warpgate | Warpgate projectのWarpgateにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2026-44347 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2587 | 7.2 |
重要
Network |
WING FTP software | Wing FTP Server | WING FTP softwareのWing FTP Serverにおけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2026-44403 | 2026-05-18 12:12 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 2588 | 5.3 |
警告
Network |
Python Software Foundation | urllib3 | Python Software Foundationのurllib3における情報漏えいに関する脆弱性 |
CWE-200 CWE-noinfo |
CVE-2026-44431 | 2026-05-18 12:12 | 2026-05-13 | Show | GitHub Exploit DB Packet Storm |
| 2589 | 7.5 |
重要
Network |
Python Software Foundation | urllib3 | Python Software Foundationのurllib3における高圧縮データの処理 (データ増幅)に関する脆弱性 |
CWE-409
高圧縮データの不適切な処理 (データ増幅) |
CVE-2026-44432 | 2026-05-18 12:12 | 2026-05-13 | Show | GitHub Exploit DB Packet Storm |
| 2590 | 5.7 |
警告
Adjacent |
Frappe | ERPNext | FrappeのERPNextにおけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-44440 | 2026-05-18 12:12 | 2026-05-13 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 10, 2026, 5 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 311891 | - | - | - | In HWCSession::SetColorModeById of hwc_session.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional executio… | - | CVE-2018-9409 | 2024-11-21 05:35 | 2024-11-20 | Show | GitHub Exploit DB Packet Storm | |
| 311892 | 9.8 |
CRITICAL
Network |
tenda | ac6_firmware | Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function 'fromSetSysTime. |
CWE-120
Classic Buffer Overflow |
CVE-2024-52714 | 2024-11-21 05:35 | 2024-11-20 | Show | GitHub Exploit DB Packet Storm |
| 311893 | 7.5 |
HIGH
Network |
qualcomm |
315_5g_iot_modem_firmware apq8064au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024… |
Transient DOS while parsing ESP IE from beacon/probe response frame. |
CWE-125
Out-of-bounds Read |
CVE-2024-33014 | 2024-11-21 05:35 | 2024-08-6 | Show | GitHub Exploit DB Packet Storm |
| 311894 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: io_uring: check if we need to reschedule during overflow flush In terms of normal application usage, this list will always be emp… |
NVD-CWE-noinfo
|
CVE-2024-50060 | 2024-11-21 05:25 | 2024-10-22 | Show | GitHub Exploit DB Packet Storm |
| 311895 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Fix ERR_PTR dereference in uvc_v4l2.c Fix potential dereferencing of ERR_PTR() in find_format_by_pix() and uvc_… |
CWE-476
NULL Pointer Dereference |
CVE-2024-50056 | 2024-11-21 05:18 | 2024-10-22 | Show | GitHub Exploit DB Packet Storm |
| 311896 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: ntfs3: Change to non-blocking allocation in ntfs_d_hash d_hash is done while under "rcu-walk" and should not sleep. __get_name() … |
NVD-CWE-noinfo
|
CVE-2024-50065 | 2024-11-21 05:07 | 2024-10-22 | Show | GitHub Exploit DB Packet Storm |
| 311897 | 7.5 |
HIGH
Network |
qualcomm |
ar8035_firmware csr8811_firmware fastconnect_6200_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware flight_rb5_5g_platform_firmware immersive… |
Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report. |
CWE-125
Out-of-bounds Read |
CVE-2024-33015 | 2024-11-21 04:57 | 2024-08-6 | Show | GitHub Exploit DB Packet Storm |
| 311898 | 7.5 |
HIGH
Network |
qualcomm |
csr8811_firmware fastconnect_6800_firmware fastconnect_6900_firmware fastconnect_7800_firmware flight_rb5_5g_platform_firmware immersive_home_214_platform_firmware immersive_home_21… |
Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. |
CWE-125
Out-of-bounds Read |
CVE-2024-33025 | 2024-11-21 04:53 | 2024-08-6 | Show | GitHub Exploit DB Packet Storm |
| 311899 | 7.5 |
HIGH
Network |
qualcomm |
ar8035_firmware csr8811_firmware fastconnect_6700_firmware fastconnect_6800_firmware fastconnect_6900_firmware fastconnect_7800_firmware flight_rb5_5g_platform_firmware immersive… |
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length. |
CWE-190
Integer Overflow or Wraparound |
CVE-2024-33024 | 2024-11-21 04:42 | 2024-08-6 | Show | GitHub Exploit DB Packet Storm |
| 311900 | 7.5 |
HIGH
Network |
qualcomm |
ar8035_firmware csr8811_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware immersive_home_214_platform_firmware immersive_home_216_platform_firmw… |
Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. |
CWE-125
Out-of-bounds Read |
CVE-2024-33018 | 2024-11-21 04:40 | 2024-08-6 | Show | GitHub Exploit DB Packet Storm |