Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
301 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 New CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-53806 2026-06-15 11:15 2026-06-11 Show GitHub Exploit DB Packet Storm
302 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-53807 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
303 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-53808 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
304 3.8
Local
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-53809 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
305 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-53810 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
306 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおけるスプーフィングによる認証回避に関する脆弱性 New CWE-290
スプーフィングによる認証回避
CVE-2026-53811 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
307 7.7 重要
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 New CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-53812 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
308 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおける制御されていない検索パスの要素に関する脆弱性 New CWE-427
制御されていない検索パスの要素
CVE-2026-53813 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
309 8.3 重要
Network
OpenClaw OpenClaw OpenClawにおける不適切な権限設定に関する脆弱性 New CWE-266
不適切な権限設定
CVE-2026-53814 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
310 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-53815 2026-06-15 11:14 2026-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255471 8.1 HIGH
Network
drupal drupal In Drupal versions 8.4.x versions before 8.4.5 when using node access controls with a multilingual site, Drupal marks the untranslated version of a node as the default fallback for access queries. Th… NVD-CWE-noinfo
CVE-2017-6930 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255472 6.1 MEDIUM
Network
drupal
debian
drupal
debian_linux
A jQuery cross site scripting vulnerability is present when making Ajax requests to untrusted domains. This vulnerability is mitigated by the fact that it requires contributed or custom modules in or… CWE-79
Cross-site Scripting
CVE-2017-6929 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255473 5.3 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal core 7.x versions before 7.57 when using Drupal's private file system, Drupal will check to make sure a user has access to a file before allowing the user to view or download it. This check fa… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-6928 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255474 6.1 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal 8.4.x versions before 8.4.5 and Drupal 7.x versions before 7.57 has a Drupal.checkPlain() JavaScript function which is used to escape potentially dangerous text before outputting it to HTML (a… CWE-79
Cross-site Scripting
CVE-2017-6927 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255475 8.1 HIGH
Network
drupal drupal In Drupal versions 8.4.x versions before 8.4.5 users with permission to post comments are able to view content and comments they do not have access to, and are also able to add comments to this conte… CWE-200
Information Exposure
CVE-2017-6926 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255476 6.4 MEDIUM
Local
cisco umbrella The Cisco Umbrella Virtual Appliance Version 2.0.3 and prior contained an undocumented encrypted remote support tunnel (SSH) which auto initiated from the customer's appliance to Cisco's SSH Hubs in … NVD-CWE-noinfo
CVE-2017-6679 2024-11-21 12:30 2017-12-2 Show GitHub Exploit DB Packet Storm
255477 6.5 MEDIUM
Network
cisco sf302-08pp_firmware
sf302-08mpp_firmware
sg300-10pp_firmware
sg300-10mpp_firmware
sf300-24pp_firmware
sf300-48pp_firmware
sg300-28pp_firmware
sf300-08_firmware
sf300-48p_firmw…
A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker to cause a reload of the affected switch, resulting… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6720 2024-11-21 12:30 2017-09-21 Show GitHub Exploit DB Packet Storm
255478 6.7 MEDIUM
Local
cisco ios_xe A vulnerability in the USB-modem code of Cisco IOS XE Software running on Cisco ASR 920 Series Aggregation Services Routers could allow an authenticated, local attacker to inject and execute arbitrar… CWE-78
OS Command 
CVE-2017-6796 2024-11-21 12:30 2017-09-8 Show GitHub Exploit DB Packet Storm
255479 4.4 MEDIUM
Local
cisco ios_xe A vulnerability in the USB-modem code of Cisco IOS XE Software running on Cisco ASR 920 Series Aggregation Services Routers could allow an authenticated, local attacker to overwrite arbitrary files o… CWE-20
 Improper Input Validation 
CVE-2017-6795 2024-11-21 12:30 2017-09-8 Show GitHub Exploit DB Packet Storm
255480 6.5 MEDIUM
Network
cisco prime_collaboration_provisioning A vulnerability in the Inventory Management feature of Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to view sensitive information on the system. The vulne… CWE-200
Information Exposure
CVE-2017-6793 2024-11-21 12:30 2017-09-8 Show GitHub Exploit DB Packet Storm