Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3131 7.5 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-14870 2026-05-18 12:08 2026-05-14 Show GitHub Exploit DB Packet Storm
3132 5.6 警告
Network
デル elastic cloud storage
Dell ObjectScale
デルのelastic cloud storage等の複数製品における認証回避の脆弱性 CWE-302
認証回避の脆弱性
CVE-2025-43992 2026-05-18 12:08 2026-05-11 Show GitHub Exploit DB Packet Storm
3133 6.7 警告
Local
フォーティネット FortiAP-U
FortiAP
FortiAP-W2
フォーティネットのFortiAP-U等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-53680 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
3134 7.2 重要
Network
フォーティネット FortiMail フォーティネットのFortiMailにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-53681 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
3135 8.8 重要
Network
フォーティネット FortiOS フォーティネットのFortiOSにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2025-53844 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
3136 6.7 警告
Local
フォーティネット FortiAP
FortiAP-W2
フォーティネットのFortiAP-W2等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-53870 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
3137 5.3 警告
Network
strapi strapi strapiにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-64526 2026-05-18 12:08 2026-05-14 Show GitHub Exploit DB Packet Storm
3138 5.3 警告
Network
フォーティネット FortiManager
FortiAnalyzer
フォーティネットのFortiAnalyzer等の複数製品における潜在的に危険な関数の使用に関する脆弱性 CWE-676
潜在的に危険な関数の使用
CVE-2025-67604 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
3139 7.5 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-1184 2026-05-18 12:08 2026-05-14 Show GitHub Exploit DB Packet Storm
3140 8.1 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるビジネスロジックエラーに関する脆弱性 CWE-840
ビジネスロジックエラー
CVE-2026-1322 2026-05-18 12:08 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2221 5.3 MEDIUM
Network
- - transmission through 4.1.1 was found to have a clickjacking weakness in the browser-facing WebUI and RPC response paths. CWE-113
HTTP Response Splitting
CVE-2026-38978 2026-06-6 03:17 2026-06-3 Show GitHub Exploit DB Packet Storm
2222 7.5 HIGH
Network
- - Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UP… CWE-20
 Improper Input Validation 
CVE-2026-37460 2026-06-6 03:17 2026-06-3 Show GitHub Exploit DB Packet Storm
2223 5.9 MEDIUM
Network
- - On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features enabled, EOS may exhibit unexpected behavior in specific cases. Physical interface flaps and certain a… CWE-672
 Operation on a Resource after Expiration or Release
CVE-2026-2379 2026-06-6 03:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2224 7.5 HIGH
Network
solarwinds serv-u SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication using Content-Encoding: deflate. Mitigation steps are provided to secure custo… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-28318 2026-06-6 03:17 2026-06-5 Show GitHub Exploit DB Packet Storm
2225 7.3 HIGH
Network
- - A vulnerability was found in code-projects Vehicle Management System 1.0. This impacts an unknown function of the file newdriver.php of the component New Driver Registration Form. Performing a manipu… CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-11344 2026-06-6 03:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2226 7.3 HIGH
Network
- - A vulnerability has been found in code-projects Hotel and Tourism Reservation System 1.0. This affects an unknown function of the file /details.php. Such manipulation of the argument room leads to sq… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11342 2026-06-6 03:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2227 6.3 MEDIUM
Network
- - A flaw has been found in D-Link DWR-M920 up to 1.1.50. The impacted element is the function sub_412DA0 of the file /boafrm/formIMEISetup. This manipulation of the argument IMEI_value causes os comman… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-11341 2026-06-6 03:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2228 - - - OpenAI Atlas before 1.2025.288.15 exposed privileged browser APIs to web content on *.openai.com origins. A cross-site scripting vulnerability in forum.openai.com could be used to access these functi… CWE-284
Improper Access Control
CVE-2026-11326 2026-06-6 03:17 2026-06-5 Show GitHub Exploit DB Packet Storm
2229 6.5 MEDIUM
Network
- - Out of bounds read in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High) CWE-125
Out-of-bounds Read
CVE-2026-10985 2026-06-6 03:16 2026-06-5 Show GitHub Exploit DB Packet Storm
2230 5.4 MEDIUM
Network
- - Inappropriate implementation in Accessibility in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity:… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-10984 2026-06-6 03:16 2026-06-5 Show GitHub Exploit DB Packet Storm