Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2821 7.1 重要
Network
M2-Team NanaZip M2-TeamのNanaZipにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-44215 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2822 7.5 重要
Network
vLLM vLLM vLLMにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-44222 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2823 6.5 警告
Network
vLLM vLLM vLLMにおける複数の脆弱性 CWE-131
CWE-704
CVE-2026-44223 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2824 8.8 重要
Network
requarks Wiki.js requarksのWiki.jsにおける権限管理に関する脆弱性 CWE-269
CWE-noinfo
CVE-2026-44224 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2825 6.5 警告
Network
warpgate project warpgate Warpgate projectのWarpgateにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-44347 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2826 7.2 重要
Network
WING FTP software Wing FTP Server WING FTP softwareのWing FTP Serverにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44403 2026-05-18 12:12 2026-05-12 Show GitHub Exploit DB Packet Storm
2827 5.3 警告
Network
Python Software Foundation urllib3 Python Software Foundationのurllib3における情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-44431 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
2828 7.5 重要
Network
Python Software Foundation urllib3 Python Software Foundationのurllib3における高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-44432 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
2829 5.7 警告
Adjacent
Frappe ERPNext FrappeのERPNextにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-44440 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
2830 4.3 警告
Network
Frappe ERPNext FrappeのERPNextにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44441 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312031 3.1 LOW
Adjacent
redhat enterprise_virtualization_manager In RHEV-M VDC 2.2.0, it was found that the SSL certificate was not verified when using the client-side Red Hat Enterprise Virtualization Manager interface (a Windows Presentation Foundation (WPF) XAM… CWE-295
Improper Certificate Validation 
CVE-2009-3552 2024-11-21 10:07 2019-11-9 Show GitHub Exploit DB Packet Storm
312032 - vmware hyperic_hq The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3 allows local users to obtain the database password by listing the process and its arguments. CWE-200
Information Exposure
CVE-2009-2899 2024-11-21 10:06 2012-12-6 Show GitHub Exploit DB Packet Storm
312033 - symantec altiris_deployment_solution
altiris_notification_server
management_platform
The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution 6.9.x, Notification Server 6.0.x, and Symantec Management Platform 7.0.x expos… NVD-CWE-Other
CVE-2009-3028 2024-11-21 10:06 2011-03-8 Show GitHub Exploit DB Packet Storm
312034 6.1 MEDIUM
Network
mantisbt mantisbt MantisBT 1.2.x before 1.2.2 insecurely handles attachments and MIME types. Arbitrary inline attachment rendering could lead to cross-domain scripting or other browser attacks. CWE-79
Cross-site Scripting
CVE-2009-2802 2024-11-21 10:05 2019-11-9 Show GitHub Exploit DB Packet Storm
312035 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.29 and 7.1 before 7.0.0.7 allows remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2009-2748 2024-11-21 10:05 2011-10-30 Show GitHub Exploit DB Packet Storm
312036 - ibm websphere_application_server The Java Naming and Directory Interface (JNDI) implementation in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.39, 6.1 before 6.1.0.29, and 7.0 before 7.0.0.7 does not properly restrict acc… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2747 2024-11-21 10:05 2011-10-30 Show GitHub Exploit DB Packet Storm
312037 - apache tomcat Cross-site scripting (XSS) vulnerability in jsp/cal/cal2.jsp in the calendar application in the examples web application in Apache Tomcat on Red Hat Enterprise Linux 5, Desktop Workstation 5, and Lin… CWE-79
Cross-site Scripting
CVE-2009-2696 2024-11-21 10:05 2010-08-6 Show GitHub Exploit DB Packet Storm
312038 4.3 MEDIUM
Network
apple safari Apple Safari before 9.1 allows remote attackers to spoof the user interface via a web page that places text in a crafted context, leading to unintended use of that text within a Safari dialog. CWE-19
 Data Processing Errors
CVE-2009-2197 2024-11-21 10:04 2016-03-24 Show GitHub Exploit DB Packet Storm
312039 - apple airport_express_base_station_firmware
airport_extreme_base_station_firmware
airport_express
airport_extreme
time_capsule
The ICMPv6 implementation on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 does not limit the rate of (1) Router Advertisement and … CWE-399
 Resource Management Errors
CVE-2009-2189 2024-11-21 10:04 2010-12-22 Show GitHub Exploit DB Packet Storm
312040 8.1 HIGH
Network
mantisbt mantisbt An issue was discovered in MantisBT before 2.24.5. It associates a unique cookie string with each user. This string is not reset upon logout (i.e., the user session is still considered valid and acti… CWE-613
 Insufficient Session Expiration
CVE-2009-20001 2024-11-21 10:03 2021-03-8 Show GitHub Exploit DB Packet Storm