Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
321 7.8 重要
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における不適切な権限設定に関する脆弱性 CWE-266
不適切な権限設定
CVE-2025-32747 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
322 7.5 重要
Network
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-32749 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
323 5.5 警告
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における重要な情報のセキュアでない格納に関する脆弱性 CWE-922
重要な情報のセキュアでない格納
CVE-2025-32751 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
324 5.5 警告
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における暗号アルゴリズムの使用に関する脆弱性 CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2025-46371 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
325 6.5 警告
Network
Splunk Splunk AI Toolkit SplunkのSplunk AI Toolkitにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-20238 2026-05-28 14:33 2026-05-20 Show GitHub Exploit DB Packet Storm
326 7.5 重要
Network
NVIDIA NVIDIA TensorRT NVIDIAのNVIDIA TensorRTにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-24188 2026-05-28 14:33 2026-05-20 Show GitHub Exploit DB Packet Storm
327 5.3 警告
Network
Dropbox Erlang SAML library Lexi Wilson (arekinath)等の複数ベンダの製品におけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-28809 2026-05-28 14:33 2026-03-23 Show GitHub Exploit DB Packet Storm
328 9.1 緊急
Network
Nexent Nexent Nexentにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-31215 2026-05-28 14:33 2026-05-12 Show GitHub Exploit DB Packet Storm
329 9.1 緊急
Network
Nexent Nexent Nexentにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-31216 2026-05-28 14:33 2026-05-12 Show GitHub Exploit DB Packet Storm
330 9.8 緊急
Network
Nebuly OptiMate NebulyのOptiMateにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-31217 2026-05-28 14:33 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
318991 - - - A Stored Cross Site Scripting (XSS) vulnerability was found in "/smsa/add_class_submit.php" in Responsive School Management System v3.2.0, which allows remote attackers to execute arbitrary code via … - CVE-2024-41239 2024-08-9 01:15 2024-08-8 Show GitHub Exploit DB Packet Storm
318992 - - - Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one h… - CVE-2024-3659 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm
318993 7.8 HIGH
Local
enjayworld enjay_crm An issue in the Hardware info module of IT Solutions Enjay CRM OS v1.0 allows attackers to escape the restricted terminal environment and gain root-level privileges on the underlying system. NVD-CWE-noinfo
CVE-2024-41309 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm
318994 9.8 CRITICAL
Network
oretnom23 computer_laboratory_management_system SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection. CWE-89
SQL Injection
CVE-2024-34480 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm
318995 - - - There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute… - CVE-2024-42395 2024-08-9 00:35 2024-08-7 Show GitHub Exploit DB Packet Storm
318996 9.8 CRITICAL
Network
gl-inet mt6000_firmware
a1300_firmware
x300b_firmware
ax1800_firmware
axt1800_firmware
mt2500_firmware
mt3000_firmware
x3000_firmware
xe3000_firmware
xe300_firmware
e750_firmwar…
GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16, XE300 v4.3.16, E750 v4.3.12, AP1300/S1300 v4.3.13, XE3000/… CWE-78
OS Command 
CVE-2024-39228 2024-08-9 00:35 2024-08-7 Show GitHub Exploit DB Packet Storm
318997 9.8 CRITICAL
Network
gl-inet mt6000_firmware
a1300_firmware
x300b_firmware
ax1800_firmware
axt1800_firmware
mt2500_firmware
mt3000_firmware
x3000_firmware
xe3000_firmware
xe300_firmware
e750_firmwar…
GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16, XE300 v4.3.16, E750 v4.3.12, AP1300/S1300 v4.3.13, and XE3… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-39225 2024-08-9 00:35 2024-08-7 Show GitHub Exploit DB Packet Storm
318998 - - - An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a local attacker to perform a Password Brute Forcing attack due to improper re… - CVE-2024-38888 2024-08-9 00:35 2024-08-3 Show GitHub Exploit DB Packet Storm
318999 7.5 HIGH
Network
janobe school_attendence_monitoring_system
school_event_management_system
paypal
credit_card
debit_card_payment
SQL injection vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could exploit this vulnerability by sending a specially crafted query to the server and re… CWE-89
SQL Injection
CVE-2024-33964 2024-08-9 00:29 2024-08-6 Show GitHub Exploit DB Packet Storm
319000 7.5 HIGH
Network
janobe school_attendence_monitoring_system
school_event_management_system
paypal
credit_card
debit_card_payment
SQL injection vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could exploit this vulnerability by sending a specially crafted query to the server and re… CWE-89
SQL Injection
CVE-2024-33963 2024-08-9 00:29 2024-08-6 Show GitHub Exploit DB Packet Storm