Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 6.2 警告
Local
アップル tvOS
iOS
watchOS
visionos
iPadOS
アップルのiPadOS等の複数製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-43666 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3552 7.5 重要
Network
アップル tvOS
iOS
watchOS
visionos
iPadOS
アップルのiPadOS等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-43668 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3553 5.5 警告
Local
jqlang jq jqlangのjqにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-43894 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3554 4.4 警告
Local
jqlang jq jqlangのjqにおける複数の脆弱性 CWE-158
CWE-20
CVE-2026-43895 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3555 5.5 警告
Local
jqlang jq jqlangのjqにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-43896 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3556 8.1 重要
Network
Daniel Garcia Vaultwarden Daniel GarciaのVaultwardenにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-43913 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3557 9.8 緊急
Network
Daniel Garcia Vaultwarden Daniel GarciaのVaultwardenにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-43914 2026-05-15 10:58 2026-05-11 Show GitHub Exploit DB Packet Storm
3558 8.1 重要
Network
Pocket ID Pocket ID Pocket IDにおける複数の脆弱性 CWE-285
CWE-613
CVE-2026-43983 2026-05-15 10:58 2026-05-12 Show GitHub Exploit DB Packet Storm
3559 7.5 重要
Network
protobufjs project protobufjs protobufjs projectのprotobufjsにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-44289 2026-05-15 10:58 2026-05-13 Show GitHub Exploit DB Packet Storm
3560 7.5 重要
Network
protobufjs project protobufjs protobufjs projectのprotobufjsにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-44290 2026-05-15 10:58 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312671 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nilfs2: propagate directory read errors from nilfs_find_entry() Syzbot reported that a task hang occurs in vcs_open() during a fu… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2024-50202 2024-11-20 01:12 2024-11-8 Show GitHub Exploit DB Packet Storm
312672 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/radeon: Fix encoder->possible_clones Include the encoder itself in its possible_clones bitmask. In the past nothing validated… NVD-CWE-noinfo
CVE-2024-50201 2024-11-20 01:08 2024-11-8 Show GitHub Exploit DB Packet Storm
312673 4.8 MEDIUM
Network
open-emr openemr A stored cross-site scripting (XSS) vulnerability exists in openemr/openemr version 7.0.1. An attacker can inject malicious payloads into the 'inputBody' field in the Secure Messaging feature, which … CWE-79
Cross-site Scripting
CVE-2024-0875 2024-11-20 01:03 2024-11-15 Show GitHub Exploit DB Packet Storm
312674 7.5 HIGH
Network
schneider-electric powerlogic_pm5341_firmware
powerlogic_pm5340_firmware
powerlogic_pm5320_firmware
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in… CWE-400
 Uncontrolled Resource Consumption
CVE-2024-9409 2024-11-20 00:59 2024-11-13 Show GitHub Exploit DB Packet Storm
312675 4.8 MEDIUM
Network
vektor-inc vk_all_in_one_expansion_unit Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100.1.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of th… CWE-79
Cross-site Scripting
CVE-2024-52268 2024-11-20 00:57 2024-11-13 Show GitHub Exploit DB Packet Storm
312676 4.8 MEDIUM
Network
pimcore pimcore A stored Cross-site Scripting (XSS) vulnerability exists in the Conditions tab of Pricing Rules in pimcore/pimcore versions 10.5.19. The vulnerability is present in the From and To fields of the Date… CWE-79
Cross-site Scripting
CVE-2023-2332 2024-11-20 00:55 2024-11-15 Show GitHub Exploit DB Packet Storm
312677 5.4 MEDIUM
Network
royal-elementor-addons royal_elementor_addons The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions up to, and including, 1.7.1001 due to insu… CWE-79
Cross-site Scripting
CVE-2024-9668 2024-11-20 00:55 2024-11-13 Show GitHub Exploit DB Packet Storm
312678 5.5 MEDIUM
Local
gpac gpac A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del function in filter_core/filter.c at line 38. This vulnerability can lead to a double-… CWE-416
 Use After Free
CVE-2023-4679 2024-11-20 00:54 2024-11-15 Show GitHub Exploit DB Packet Storm
312679 5.9 MEDIUM
Network
phpipam phpipam phpIPAM version 1.5.1 contains a vulnerability where an attacker can bypass the IP block mechanism to brute force passwords for users by using the 'X-Forwarded-For' header. The issue lies in the 'get… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-0787 2024-11-20 00:53 2024-11-15 Show GitHub Exploit DB Packet Storm
312680 5.4 MEDIUM
Network
royal-elementor-addons royal_elementor_addons The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps widget in all versions up to, and including, 1.7.1001 due to insufficien… CWE-79
Cross-site Scripting
CVE-2024-9059 2024-11-20 00:53 2024-11-13 Show GitHub Exploit DB Packet Storm