Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2821 9.6 緊急
Network
langflow langflow langflowにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-42048 2026-05-15 11:00 2026-05-12 Show GitHub Exploit DB Packet Storm
2822 5.5 警告
Local
ImageMagick ImageMagick ImageMagickにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-42050 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
2823 8.1 重要
Network
- OpenC3のOpenC3 COSMOSにおける不要な特権による実行に関する脆弱性 CWE-250
不要な特権による実行
CVE-2026-42088 2026-05-15 11:00 2026-05-4 Show GitHub Exploit DB Packet Storm
2824 8.8 重要
Network
litellm litellm LiteLLMにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-42203 2026-05-15 11:00 2026-05-8 Show GitHub Exploit DB Packet Storm
2825 9.1 緊急
Network
axios project axios axios projectのaxiosにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42264 2026-05-15 11:00 2026-05-8 Show GitHub Exploit DB Packet Storm
2826 5.7 警告
Network
Kimai project kimai Kimai projectのKimaiにおけるCSV ファイル内の数式要素の中和に関する脆弱性 CWE-1236
CSV ファイル内の数式要素の不適切な中和
CVE-2026-42267 2026-05-15 11:00 2026-05-8 Show GitHub Exploit DB Packet Storm
2827 7.5 重要
Network
The Go Project Go The Go ProjectのGoにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-42499 2026-05-15 11:00 2026-05-7 Show GitHub Exploit DB Packet Storm
2828 7.5 重要
Network
The Go Project Go The Go ProjectのGoにおけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2026-42501 2026-05-15 11:00 2026-05-7 Show GitHub Exploit DB Packet Storm
2829 9.1 緊急
Network
Grav CMS grav Grav CMSのgravにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-42608 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
2830 5.4 警告
Network
Open edX openedx Open edXのopenedxにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42857 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2301 7.2 HIGH
Physics
qualcomm qca6391_firmware
qca6564au_firmware
qca6574_firmware
qca6574a_firmware
qca6574au_firmware
qca6584au_firmware
qca6595_firmware
qca6595au_firmware
qca6678aq_firmware
qca6688a…
Memory Corruption when processing display command line information due to improper initialization of a variable. CWE-121
Stack-based Buffer Overflow
CVE-2026-24085 2026-06-3 00:26 2026-06-2 Show GitHub Exploit DB Packet Storm
2302 7.2 HIGH
Physics
qualcomm ar8031_firmware
ar8035_firmware
cologne_firmware
cq7790_firmware
cq8725s_firmware
qpa1083bd_firmware
qpa1086bd_firmware
qrb5165n_firmware
qru1032_firmware
qualcomm_dragonwi…
Memory corruption while processing fastboot OEM commands. CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2026-24087 2026-06-3 00:26 2026-06-2 Show GitHub Exploit DB Packet Storm
2303 8.2 HIGH
Local
qualcomm ar9380_firmware
csr8811_firmware
fastconnect_6200_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
g1_gen_1_firmware
g2_gen_1_firmware
g3…
Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader. CWE-306
Missing Authentication for Critical Function
CVE-2026-24088 2026-06-3 00:26 2026-06-2 Show GitHub Exploit DB Packet Storm
2304 7.2 HIGH
Physics
qualcomm ar8031_firmware
ar8035_firmware
cologne_firmware
cq7790_firmware
cq8725s_firmware
qmp1000_firmware
qmp2001_firmware
qpa1083bd_firmware
qpa1086bd_firmware
qrb5165n_firmware<…
Memory corruption while processing fastboot commands with invalid input. CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2026-24089 2026-06-3 00:25 2026-06-2 Show GitHub Exploit DB Packet Storm
2305 7.1 HIGH
Local
qualcomm ar8031_firmware
ar8035_firmware
cologne_firmware
cq7790_firmware
cq8725s_firmware
sm6850_firmware
sm7435_firmware
sm7435p_firmware
sm7525_firmware
sm7550_firmware
sm7550…
Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. CWE-306
Missing Authentication for Critical Function
CVE-2026-24090 2026-06-3 00:25 2026-06-2 Show GitHub Exploit DB Packet Storm
2306 7.2 HIGH
Physics
qualcomm c-v2x_9150_firmware
cologne_firmware
cq7790_firmware
cq8725s_firmware
cq8750m_firmware
csra6620_firmware
csra6640_firmware
csrb31024_firmware
fastconnect_6200_firmware
fast…
Memory corruption while processing fastboot commands with improperly formatted input. CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2026-24091 2026-06-3 00:25 2026-06-2 Show GitHub Exploit DB Packet Storm
2307 7.2 HIGH
Physics
qualcomm ar8031_firmware
ar8035_firmware
cologne_firmware
cq7790_firmware
cq8725s_firmware
cq8750m_firmware
csra6620_firmware
csra6640_firmware
fastconnect_6200_firmware
fastconnect…
Memory Corruption when processing fastboot commands to set display mode. CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2026-24092 2026-06-3 00:25 2026-06-2 Show GitHub Exploit DB Packet Storm
2308 9.8 CRITICAL
Network
langflow langflow IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction. CWE-22
Path Traversal
CVE-2026-7524 2026-06-3 00:24 2026-05-27 Show GitHub Exploit DB Packet Storm
2309 7.8 HIGH
Local
qualcomm cologne_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
iqx5121_firmware
iqx7181_firmware
qca0000_firmware
sc8380xp_firmware
wcd9378c_firmware
wcd9380_firmware
Memory corruption while processing IOCTL calls for escape operations. CWE-125
Out-of-bounds Read
CVE-2026-25258 2026-06-3 00:23 2026-06-2 Show GitHub Exploit DB Packet Storm
2310 7.8 HIGH
Local
qualcomm cologne_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
iqx5121_firmware
iqx7181_firmware
qca0000_firmware
qcm5430_firmware
qcm6490_firm…
Memory corruption while processing multiple IOCTL command for escape operations. CWE-787
 Out-of-bounds Write
CVE-2026-25259 2026-06-3 00:22 2026-06-2 Show GitHub Exploit DB Packet Storm