Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2961 5.3 警告
Network
libxls project libxls libxls projectのlibxlsにおける初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-26825 2026-06-8 11:48 2026-06-3 Show GitHub Exploit DB Packet Storm
2962 7.5 重要
Network
SolarWinds Web Help Desk SolarWindsのWeb Help Deskにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-28299 2026-06-8 11:47 2026-06-2 Show GitHub Exploit DB Packet Storm
2963 7.5 重要
Network
SolarWinds Serv-U SolarWindsのServ-Uにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-28318 2026-06-8 11:47 2026-06-4 Show GitHub Exploit DB Packet Storm
2964 7.1 重要
Network
librechat librechat LibreChatにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-31942 2026-06-8 11:47 2026-06-2 Show GitHub Exploit DB Packet Storm
2965 9.6 緊急
Network
librechat librechat LibreChatにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-32625 2026-06-8 11:47 2026-06-2 Show GitHub Exploit DB Packet Storm
2966 4.7 警告
Network
Shopify React Router ShopifyのReact Routerにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-33245 2026-06-8 11:47 2026-06-2 Show GitHub Exploit DB Packet Storm
2967 7.5 重要
Network
Python Software Foundation Python Python Software FoundationのPythonにおける複数の脆弱性 CWE-116
CWE-20
CVE-2026-3644 2026-06-8 11:47 2026-03-16 Show GitHub Exploit DB Packet Storm
2968 6.1 警告
Network
Shopify React Router ShopifyのReact Routerにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-40181 2026-06-8 11:47 2026-06-2 Show GitHub Exploit DB Packet Storm
2969 7.8 重要
Local
Linaro OP-TEE Trusted OS LinaroのOP-TEE Trusted OSにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40290 2026-06-8 11:47 2026-06-3 Show GitHub Exploit DB Packet Storm
2970 7.7 重要
Network
lfprojects mlflow lfprojectsのmlflowにおける送信データへの重要な情報の挿入に関する脆弱性 CWE-201
送信データへの重要な情報の挿入
CVE-2026-4035 2026-06-8 11:47 2026-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344601 - novell client Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, which allows users with physical access to read the current clipboard contents by p… NVD-CWE-Other
CVE-2006-2612 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344602 - mozilla
netscape
firefox
mozilla_suite
navigator
Mozilla Suite 1.7.13, Mozilla Firefox 1.5.0.3 and possibly other versions before before 1.8.0, and Netscape 7.2 and 8.1, and possibly other versions and products, allows remote user-assisted attacker… CWE-200
Information Exposure
CVE-2006-2613 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344603 - russcom_network russcom.ping ping.php in Russcom.Ping allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter. NVD-CWE-Other
CVE-2006-2615 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344604 - alstrasoft webhost_directory SQL injection vulnerability in the search script in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to execute arbitrary SQL commands via the u… NVD-CWE-Other
CVE-2006-2616 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344605 - alstrasoft webhost_directory (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to obtain the installation path via an invalid entry in the Username field on the login page, w… NVD-CWE-Other
CVE-2006-2617 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344606 - alstrasoft webhost_directory Cross-site scripting (XSS) vulnerability in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, might allow remote attackers to inject arbitrary web script or HTML via the… CWE-79
Cross-site Scripting
CVE-2006-2618 2018-10-19 01:40 2006-05-26 Show GitHub Exploit DB Packet Storm
344607 - symantec client_security
norton_antivirus
Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitrary code via unknown attack vectors. NVD-CWE-Other
CVE-2006-2630 2018-10-19 01:40 2006-05-28 Show GitHub Exploit DB Packet Storm
344608 - dokeos open_source_learning_and_knowledge_management_tool PHP remote file inclusion vulnerability in authldap.php in Dokeos 1.6.4 allows remote attackers to execute arbitrary PHP code via a URL in the includePath parameter. NVD-CWE-Other
CVE-2006-2285 2018-10-19 01:39 2006-05-10 Show GitHub Exploit DB Packet Storm
344609 - vision_source vision_source_cms Multiple cross-site scripting (XSS) vulnerabilities in Vision Source 0.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the fields in a user's profile. NVD-CWE-Other
CVE-2006-2287 2018-10-19 01:39 2006-05-10 Show GitHub Exploit DB Packet Storm
344610 - microsoft infotech_storage_system_library Heap-based buffer overflow in Microsoft Infotech Storage System Library (itss.dll) allows user-assisted attackers to execute arbitrary code via a crafted CHM / ITS file that triggers the overflow whi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-2297 2018-10-19 01:39 2006-05-10 Show GitHub Exploit DB Packet Storm