Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 9.1 緊急
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-23500 2026-05-7 12:06 2026-04-17 Show GitHub Exploit DB Packet Storm
3552 5.3 警告
Local
FreeType Project FreeType FreeType ProjectのFreeTypeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-23865 2026-05-7 12:06 2026-03-2 Show GitHub Exploit DB Packet Storm
3553 6.5 警告
Network
Linux Foundation tekton pipelines Linux Foundationのtekton pipelinesにおける不正な正規表現に関する脆弱性 CWE-185
不正な正規表現
CVE-2026-25542 2026-05-7 12:06 2026-04-21 Show GitHub Exploit DB Packet Storm
3554 6.5 警告
Adjacent
FRRouting Project FRRouting FRRouting ProjectのFRRoutingにおける複数の脆弱性 CWE-125
CWE-190
CVE-2026-28532 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
3555 8.8 重要
Network
CloudARK KubePlus CloudARKのKubePlusにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-29955 2026-05-7 12:06 2026-04-13 Show GitHub Exploit DB Packet Storm
3556 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける領域間での誤ったリソース移動に関する脆弱性 CWE-669
領域間での誤ったリソース移動
CVE-2026-31431 2026-05-7 12:06 2026-04-22 Show GitHub Exploit DB Packet Storm
3557 5.3 警告
Network
レッドハット
kernel.org
util-linux
Red Hat Hardened Images
kernel.org等の複数ベンダの製品における代替名による認証回避に関する脆弱性 CWE-289
代替名による認証回避
CVE-2026-3184 2026-05-7 12:06 2026-04-3 Show GitHub Exploit DB Packet Storm
3558 5.5 警告
Local
Electron electron Electronのelectronにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34764 2026-05-7 12:06 2026-04-6 Show GitHub Exploit DB Packet Storm
3559 10 緊急
Network
traefik traefik traefikにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-35051 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
3560 7.1 重要
Network
デル iDRAC10 Firmware デルのiDRAC10 Firmwareにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-35155 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1031 4.3 MEDIUM
Network
- - A security vulnerability has been detected in Dolibarr ERP CRM up to 23.0.1. Impacted is the function checkUserAccessToObject of the file htdocs/holiday/class/api_holidays.class.php of the component … Update CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-10215 2026-06-4 04:16 2026-06-1 Show GitHub Exploit DB Packet Storm
1032 8.8 HIGH
Network
- - A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetProtocolFilter of the file /goform/formSetProtocolFilter. Such manipulation of the argument protocol_na… Update CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-10122 2026-06-4 04:16 2026-05-31 Show GitHub Exploit DB Packet Storm
1033 4.3 MEDIUM
Network
- - A vulnerability was identified in Open5GS up to 2.7.7. This affects an unknown part in the library lib/sbi/nnrf-handler.c of the component Shared NF-profile Parser. Such manipulation leads to denial … Update CWE-404
 Improper Resource Shutdown or Release
CVE-2026-10115 2026-06-4 04:16 2026-05-30 Show GitHub Exploit DB Packet Storm
1034 7.5 HIGH
Network
oracle database_server Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with n… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46835 2026-06-4 04:00 2026-05-29 Show GitHub Exploit DB Packet Storm
1035 7.5 HIGH
Network
oracle database_server Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with n… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46834 2026-06-4 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
1036 9.9 CRITICAL
Network
linuxfoundation cloudnativepg CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.29.1 and 1.28.3, the CloudNativePG metrics exporter opens its PostgreSQL connection as t… Update CWE-250
CWE-271
CWE-426
 Execution with Unnecessary Privileges
 Privilege Dropping / Lowering Errors
 Untrusted Search Path
CVE-2026-44477 2026-06-4 03:56 2026-05-29 Show GitHub Exploit DB Packet Storm
1037 8.0 HIGH
Network
microsoft sharepoint_server Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. Update CWE-78
OS Command 
CVE-2026-47294 2026-06-4 03:42 2026-06-2 Show GitHub Exploit DB Packet Storm
1038 6.3 MEDIUM
Network
vivotek fd8136_firmware A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via a crafted POST… Update CWE-121
Stack-based Buffer Overflow
CVE-2026-35717 2026-06-4 03:42 2026-06-2 Show GitHub Exploit DB Packet Storm
1039 7.3 HIGH
Network
vivotek fd8136_firmware Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code via the set_getparam.cgi component Update CWE-121
Stack-based Buffer Overflow
CVE-2026-30649 2026-06-4 03:41 2026-06-3 Show GitHub Exploit DB Packet Storm
1040 8.8 HIGH
Network
vivotek fd8136_firmware A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware version FD8136-VVTK-03… Update CWE-120
Classic Buffer Overflow
CVE-2026-30650 2026-06-4 03:41 2026-06-3 Show GitHub Exploit DB Packet Storm