Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3111 4.9 警告
Network
アルバネットワークス株式会社 ArubaOS アルバネットワークス株式会社のArubaOSにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-44874 2026-05-18 11:24 2026-05-12 Show GitHub Exploit DB Packet Storm
3112 9.1 緊急
Network
OPNsense project OPNsense OPNsenseにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-45158 2026-05-18 11:24 2026-05-13 Show GitHub Exploit DB Packet Storm
3113 5.3 警告
Network
Apache Software Foundation Apache Commons Configuration Apache Software FoundationのApache Commons Configurationにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-45205 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3114 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-4524 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3115 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-4527 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3116 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6063 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3117 5.4 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6073 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3118 5.4 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6335 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3119 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-6883 2026-05-18 11:24 2026-05-14 Show GitHub Exploit DB Packet Storm
3120 9.8 緊急
Network
libexpat project libexpat libexpat projectのlibexpatにおけるエントロピー不足に関する脆弱性 CWE-331
エントロピー不足
CVE-2026-7210 2026-05-18 11:24 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2361 - - - Out of bounds write in openSeaChest’s --showSupportedFormats in Seagate’s openSeaChest v25.05.3 on all supported platforms allows for writing 1 extra byte outside of allocated memory which sets a val… CWE-787
 Out-of-bounds Write
CVE-2026-10719 2026-06-5 00:35 2026-06-3 Show GitHub Exploit DB Packet Storm
2362 7.8 HIGH
Local
- - A network man-in-the-middle between nats-sync and the BOSH director can steal the director credentials (Basic auth header or UAA client secret) and can tamper with the VM list that is written into th… CWE-295
Improper Certificate Validation 
CVE-2026-41859 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2363 8.2 HIGH
Local
- - PackagePersister.validate_tgz builds "tar -tf #{tgz} 2>&1" where tgz = File.join(release_dir, 'packages', "#{name}.tgz") and name = package_meta['name'] comes directly from release.MF inside the uplo… CWE-78
OS Command 
CVE-2026-41011 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2364 7.5 HIGH
Network
- - Weak Randomness / Insecure Cryptographic Primitive (CWE-338) in Get-RandomPassword in BOSH-Ecosystem / windows-utilities-release allows a network attacker to estimate VM boot time and reconstruct a s… CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-41858 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2365 8.8 HIGH
Local
- - CWE-326 in BOSH allows a local attacker to steal Basic-auth credentials or redirect UAA token requests via MITM. HttpRequestHelper#create_async_endpoint and #send_http_get_request_synchronous hard-co… CWE-326
Inadequate Encryption Strength
CVE-2026-41860 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2366 6.7 MEDIUM
Local
- - A flaw was found in NetworkManager. This local privilege escalation vulnerability exists in NetworkManager's dhclient backend when processing malformed Manufacturer Usage Description (MUD) URLs. A lo… CWE-78
OS Command 
CVE-2026-10805 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2367 8.2 HIGH
Local
- - ReleaseJob#unpack builds job_dir = File.join(@release_dir, 'jobs', name) and job_tgz = File.join(@release_dir, 'jobs', "#{name}.tgz") where name returns @job_meta['name'], a value taken verbatim from… CWE-78
OS Command 
CVE-2026-41010 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2368 7.2 HIGH
Network
- - A flaw was found in the OpenShift Cloud Credential Operator Mint-mode IAM policies for AWS. Operator credentials are provisioned with account-wide scope for destructive actions rather than being rest… CWE-250
 Execution with Unnecessary Privileges
CVE-2026-10843 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2369 9.6 CRITICAL
Adjacent
- - OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting un… CWE-77
Command Injection
CVE-2026-8037 2026-06-5 00:35 2026-06-4 Show GitHub Exploit DB Packet Storm
2370 6.5 MEDIUM
Adjacent
- - Dräger Infinity M300 patient worn monitors with software version VG2.3.1 and earlier contain a network-based denial of service vulnerability that allows network-adjacent attackers to repeatedly trigg… CWE-400
 Uncontrolled Resource Consumption
CVE-2019-25721 2026-06-5 00:29 2026-06-3 Show GitHub Exploit DB Packet Storm